An application made for this job — a tailored resume and cover letter that speak straight to the posting.
air-recruitment is seeking a Senior Cyber GRC Specialist – Technical Controls for a London-based hybrid role with a leading global investment manager. You will bridge governance, risk and compliance with hands-on security controls across networks, OS, cloud, IAM and Secure DevOps.
The role requires deep knowledge of NIST and ISO 27001, experience in regulated finance, and the ability to translate cyber risks into business impact.
Senior Cyber GRC Specialist – Technical Controls
London / Hybrid
Up to £120,000
Are you an experienced Cyber GRC professional with a genuinely strong understanding of cyber engineering and technical security controls?
We’re working with a major global investment management organisation looking for a Senior Cyber GRC Specialist.
This is not a purely policy, audit or compliance-focused position. To be considered, you must combine substantial Cyber GRC experience with the technical knowledge to understand and challenge controls across networks, operating systems, cloud security, IAM and Secure DevOps.
You may have started your career in cyber engineering, infrastructure security, security operations or cloud security before moving into GRC, cyber risk or controls. Alternatively, you may already be working in a technically focused Cyber GRC position within financial services or another highly regulated organisation.
This is a highly visible opportunity to help strengthen cybersecurity governance, risk management and regulatory compliance across a complex international business.
You’ll need:
A CISSP or similar recognised cybersecurity qualification would be highly beneficial.
This position would suit a Cyber GRC, Cyber Risk or Security Controls specialist who has retained strong technical knowledge—or a cybersecurity engineer who has developed substantial experience across governance, risk, controls and regulation.
If you combine strong Cyber GRC expertise with a genuine understanding of cyber engineering and technical security controls, we’d love to hear from you.