Senior GRC Analyst — NIS2 & ISMS Risk Champion

EG Group

Horwich

Hybrid

GBP 60,000 - 85,000

Full time

2 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Hybrid working
Discretionary bonus
Generous annual leave
Free secure on-site parking
Wellbeing facilities
Annual leave buy back

Job summary

Cumberland Farms is seeking an experienced Senior GRC Analyst to join our Information Security team. You will support governance, risk and compliance, focusing on NIS2 audit readiness, risk assessments, ISMS, and policy governance.

This hands-on role requires delivering audit-ready outcomes and collaborating with multiple stakeholders across the business. You will work independently, manage competing priorities, and drive structured information security activities, with opportunities for growth

Qualifications

  • Significant practical experience in Information Security Governance, Risk and Compliance at Senior Analyst, Consultant, or equivalent level.
  • Experience supporting regulatory, certification, or external security audit readiness, including evidence coordination and remediation management.
  • Hands‑on experience with ISO 27001‑aligned ISMS and policy/control governance.
  • Experience conducting project and technology security risk assessments and assessing control design/effectiveness.

Responsibilities

  • Coordinate NIS2 audit readiness by coordinating evidence and remediation activity.
  • Conduct security risk assessments across projects, systems and technology changes.
  • Maintain and improve ISMS aligned to ISO 27001.
  • Review and update information security policies and control frameworks.
  • Assess design and operation of security controls and track improvements.
  • Maintain the cyber risk register with up-to-date records.
  • Coordinate audit findings, remediation activity and third‑party assessments.
  • Produce GRC reporting for senior stakeholders.

Skills

GRC governance
Regulatory compliance
NIS2
ISO 27001
Risk assessments
Stakeholder management
Auditing
Policy governance

Education

CISM
CRISC
CISSP
ISO 27001 Lead Implementer
ISO 27001 Lead Auditor

Tools

GRC platforms

Job description

Cumberland Farms is seeking an experienced Senior GRC Analyst to join our Information Security team. You will support governance, risk and compliance, focusing on NIS2 audit readiness, risk assessments, ISMS, and policy governance.

This hands-on role requires delivering audit-ready outcomes and collaborating with multiple stakeholders across the business. You will work independently, manage competing priorities, and drive structured information security activities, with opportunities for growth

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior GRC Analyst — Hybrid, NIS2 & ISO27001 Focus
Senior GRC Analyst — Hybrid, NIS2 & ISO27001 Focus

Euro Garages • Horwich

On-site
GBP 70,000 - 90,000
Discretionary bonus
Hybrid working
Cycle to Work
+2
Senior GRC Analyst
Senior GRC Analyst

EG Group • Horwich

Hybrid
GBP 60,000 - 85,000
Hybrid working
Discretionary bonus
Generous annual leave
+3
Senior GRC Analyst
Senior GRC Analyst

Broster Buchanan • Bolton

On-site
GBP 111,000 - 166,000
Senior GRC Analyst
Senior GRC Analyst

Euro Garages • Horwich

On-site
GBP 70,000 - 90,000
Discretionary bonus
Hybrid working
Cycle to Work
+2
Senior GRC Analyst - AI-Driven Risk & Compliance
Senior GRC Analyst - AI-Driven Risk & Compliance

Recruitment • Greater London

On-site
GBP 75,000 - 110,000
Senior GRC Analyst — Risk, Compliance & SOC 2 Expert
Senior GRC Analyst — Risk, Compliance & SOC 2 Expert

Preply • Greater London

On-site
GBP 90,000 - 130,000
Equity
Health insurance
Self-development budget
Senior IT GRC Analyst: ISO 27001, SOX, PCI
Senior IT GRC Analyst: ISO 27001, SOX, PCI

Crane NXT • United Kingdom

On-site
GBP 75,000 - 95,000
GRC Senior Analyst
GRC Senior Analyst

Recruitment • Greater London

On-site
GBP 75,000 - 110,000
Senior GRC & Cyber Security Consultant
Senior GRC & Cyber Security Consultant

FSP Consulting Services Limited • England

Hybrid
GBP 60,000 - 80,000
Collaborative environment
Hybrid working options
Industry-leading coaching and mentoring
+1
ISMS & GRC Analyst — Security Compliance & Risk
ISMS & GRC Analyst — Security Compliance & Risk

Clue Software • West of England

On-site
GBP 65,000 - 90,000