Enable job alerts via email!

Security Engineer (Grc)

Buscojobs

Greater London

On-site

USD 110,000

Full time

3 days ago
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

An established industry player is seeking a GRC Analyst with a strong technical background to enhance their governance and compliance frameworks. This role offers the opportunity to work in a supportive environment, leveraging your expertise to make impactful decisions. With a focus on real-world risk management, you will collaborate with a leading Managed Security Service Provider to drive outcomes across the organization. If you're ready to elevate your career in a mature setting where your insights matter, this is the perfect opportunity for you.

Qualifications

  • 3+ years of hands-on experience in IT, cybersecurity, or infrastructure.
  • Experience in GRC roles, ideally in healthcare or public sector.

Responsibilities

  • Execute and advise on governance and compliance processes.
  • Drive outcomes across the business with mentorship support.

Skills

Governance, Risk & Compliance
IT Security
Cybersecurity
ISO 27001
NIST
APRA CPS 234
ISO 31000
Risk management tools

Education

CISSP
CISM
CRISC
CISA

Tools

GRC platforms
Audit preparation tools

Job description

We’re not just looking for a checkbox-ticker. We’re searching for a GRC Analyst with a technical background who understands how real-world risk impacts infrastructure, operations, and people — and knows how to do something about it.

You’ve likely come from a Security Engineering or Senior platform and System roles and moved into GRC because you understand that governance and compliance are only as good as the way they’re executed. That’s exactly the mindset we’re after.

In this role, you’ll be working with a well-established set of processes and frameworks — no building from scratch here. Your job is to execute, advise, and drive outcomes across the business. You’ll also have direct support and mentorship from one of the market-leading Managed Security Service Providers , giving you access to deep industry expertise, guidance, and tooling.

What you'll bring :

  • Strong grounding in Governance, Risk & Compliance
  • Technical background in IT, cybersecurity, or infrastructure - Minimum of 3 years hands-on experience.
  • Hands-on knowledge of frameworks like ISO 27001, NIST, APRA CPS 234, ISO 31000
  • Familiarity with GRC platforms , risk management tools, and audit preparation
  • 2–4 years’ experience in a GRC role, ideally in healthcare or the public sector
  • Certifications such as CISSP, CISM, CRISC, or CISA are highly desirable

What to know upfront :

The salary is circa $110k . We know it won’t suit everyone — but for the right person, this is a chance to work in a mature, well-supported environment where your voice matters and your technical insight will drive genuine impact. As you mature the environment, the role will mature too leading to leadership for the successful candidate!

If you're ready to bring your skills into a space where they’ll be backed, valued, and make a difference — let’s talk - Hit apply now!

Seniority level

Associate

Employment type

Full-time

Job function

Analyst and Engineering

IT Services and IT Consulting, Computer and Network Security, and Security and Investigations

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.