GRC Analyst - Governance Risk and Compliance

GCS Recruitment Specialists

United States

Hybrid

USD 48,000 - 64,000

Full time

5 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Outside IR35
Flexible working
Hybrid working
High autonomy

Job summary

GCS Recruitment Specialists is helping a UK manufacturer recruit a GRC Analyst (Contract) to lead cyber risk governance initiatives on a significant maturity programme. You will own risk registers, develop repeatable processes and deliver measurable risk reporting to senior leadership.

This hands-on role requires strong stakeholder management, knowledge of CAF/NIST/ISO controls and the ability to translate technical risk into business terms. Flexible/hybrid UK working is offered.

Qualifications

  • Experience in a Cyber Security GRC, Risk Analyst, Security Assurance or Governance role.
  • Ability to translate complex cyber risks into business terms.
  • Experience developing risk metrics and reporting for senior stakeholders.
  • Strong stakeholder management and independent working style.

Responsibilities

  • Own and maintain cyber and technology risk registers.
  • Develop and mature risk management processes and reporting.
  • Facilitate risk identification, assessment, treatment and monitoring.
  • Support CAF-aligned control environment and remediation tracking.
  • Produce risk reports, dashboards and metrics for leadership.
  • Embed risk-based decision-making across security, tech and business teams.
  • Assist with audits, control assessments and assurance activities.
  • Drive improvements in GRC maturity across the organisation.

Skills

GRC
Cyber security
Risk assessment
Stakeholder management
Reporting dashboards
Independent工作

Education

ISO 27001
CRISC
CISM
CISA
CISSP

Tools

CAF framework
NIST CSF
ISO 27001 controls

Job description

GRC Analyst (Contract) - Governance, Risk and Compliance

Day Rate: £400 per day

Engagement: Outside IR35

Location: UK (Flexible Working)

Duration: Initial 6 months with strong extension potential

The Opportunity

Were supporting a well-established manufacturing organisation embarking on a significant cyber governance, risk and compliance maturity programme. As part of this journey, were looking for an experienced GRC Analyst to take ownership of the cyber risk function and help establish a more structured, repeatable, and measurable approach to risk management across the business.

This is a hands-on role for someone who enjoys building capability from the ground up, influencing stakeholders, and embedding risk management processes that deliver real business value.

Responsibilities
  • Own and maintain the cyber and technology risk registers.
  • Develop and mature risk management processes, methodologies and reporting.
  • Facilitate risk identification, assessment, treatment and monitoring activities across the organisation.
  • Support the implementation and ongoing management of a Cyber Assessment Framework (CAF)-aligned control environment.
  • Track remediation activities and challenge stakeholders to ensure risks are effectively addressed.
  • Produce meaningful risk reporting, dashboards and metrics for senior leadership.
  • Work closely with security, technology and business teams to embed risk-based decision-making.
  • Support policy, governance and controls reviews to ensure alignment with organisational objectives.
  • Assist with internal audits, control assessments and assurance activities.
  • Drive continual improvements in governance, risk and compliance maturity.
Experience Required
  • Proven experience in a Cyber Security GRC, Risk Analyst, Security Assurance or Governance role.
  • Strong understanding of cyber risk management principles and risk register ownership.
  • Experience supporting or implementing recognised frameworks such as CAF, NIST CSF, ISO 27001 or CIS Controls.
  • Ability to perform risk assessments and translate technical risks into business-focused language.
  • Experience developing reporting, dashboards and risk metrics for stakeholders.
  • Strong stakeholder management skills with the confidence to challenge and influence.
  • Ability to work independently and operate in a fast-paced delivery environment.
Desirable
  • Experience within manufacturing, engineering or complex enterprise environments.
  • Knowledge of security assurance, control testing or audit activities.
  • Relevant certifications such as ISO 27001, CRISC, CISM, CISA, CISSP or equivalent.
Whats on Offer?
  • £400 per day
  • Outside IR35
  • Flexible and hybrid working options
  • High-impact role with significant autonomy
  • Opportunity to build and shape a growing risk function
  • Long-term programme with strong extension potential
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cyber GRC Analyst: Build & Own Risk Programme (Contract)
Cyber GRC Analyst: Build & Own Risk Programme (Contract)

GCS Recruitment Specialists • United States

Hybrid
USD 48,000 - 64,000
Outside IR35
Flexible working
Hybrid working
+1
GRC Analyst
GRC Analyst

The Emery Company, LLC • Houston (TX)

On-site
USD 85,000 - 110,000
GRC (Governance, Risk, and Compliance) Consultant
GRC (Governance, Risk, and Compliance) Consultant

Zoho • United States

Remote
USD 120,000 - 180,000
IT GRC Lead Analyst
IT GRC Lead Analyst

Westfield Insurance • Westfield Center (OH)

On-site
USD 90,000 - 120,000
Senior GRC Analyst
Senior GRC Analyst

Averity • New York (NY)

On-site
USD 90,000 - 140,000
Manager, Information Security Governance, Risk & Compliance (GRC)
Manager, Information Security Governance, Risk & Compliance (GRC)

Burtch Works • United States

Remote
USD 140,000 - 170,000
Health and wellness benefits
Remote, US-based work
Senior Cybersecurity GRC Analyst
Senior Cybersecurity GRC Analyst

Eliassen Group • King of Prussia (PA)

On-site
USD 80,000 - 105,000
GRC Analyst
GRC Analyst

Golden Technology • North Carolina

On-site
USD 120,000 - 160,000
IT GRC Analyst
IT GRC Analyst

Medasource • Town of Texas (WI), Northern (KY)

On-site
USD 76,000 - 110,000
Cyber Security Analyst
Cyber Security Analyst

System One • United States

Remote
USD 73,000 - 98,000