← Back to Jobs
Full time
Technology
Governance and Compliance Manager
Bulb ResourcingSwindon, Wiltshire🇬🇧United KingdomPosted 14 Aug 2026
Quick Overview
Work Type
Hybrid
Schedule
Full Time
Level
Mid Senior
Job Description
Governance, Risk and Compliance (GRC) Manager
The GRC Manager will take ownership of developing, implementing, and maintaining the organisation's governance, risk management, and compliance frameworks. You will ensure operational activities align with legal requirements, regulatory standards, and internal policies, while proactively identifying and mitigating enterprise risks.
About the ClientOur client is a highly respected technology and secure managed services provider, specialising in delivering resilient, high-assurance IT infrastructure and security solutions to defense and public sector partners. They pride themselves on fostering continuous professional development through structured career coaching, tailored training pathways, and comprehensive benefit packages.
Role SummaryThe GRC Manager will take ownership of developing, implementing, and maintaining the organisation's governance, risk management, and compliance frameworks. You will ensure operational activities align with legal requirements, regulatory standards, and internal policies, while proactively identifying and mitigating enterprise risks.
Key Responsibilities
Required Skills and Experience
EssentialExperience:
The GRC Manager will take ownership of developing, implementing, and maintaining the organisation's governance, risk management, and compliance frameworks. You will ensure operational activities align with legal requirements, regulatory standards, and internal policies, while proactively identifying and mitigating enterprise risks.
About the ClientOur client is a highly respected technology and secure managed services provider, specialising in delivering resilient, high-assurance IT infrastructure and security solutions to defense and public sector partners. They pride themselves on fostering continuous professional development through structured career coaching, tailored training pathways, and comprehensive benefit packages.
Role SummaryThe GRC Manager will take ownership of developing, implementing, and maintaining the organisation's governance, risk management, and compliance frameworks. You will ensure operational activities align with legal requirements, regulatory standards, and internal policies, while proactively identifying and mitigating enterprise risks.
Key Responsibilities
- Develop, implement, and manage the overarching GRC strategy, policies, and procedural frameworks.
- Conduct enterprise risk assessments and maintain the organisation's central risk register.
- Monitor operational, regulatory, cybersecurity, financial, and third-party risks.
- Ensure full compliance with relevant statutory regulations, legal standards, and framework requirements.
- Coordinate internal and external audit activities, managing the swift remediation of findings.
- Establish compliance monitoring mechanisms and present regular reporting to senior leadership.
- Collaborate with internal business units to design and embed effective risk mitigation controls.
- Monitor regulatory developments and assess their potential operational impact.
- Support business continuity, disaster recovery, and information security governance initiatives.
- Oversee third-party/vendor risk evaluations and perform required due diligence.Lead organisation-wide training programmes to promote a strong security and compliance culture.
Required Skills and Experience
EssentialExperience:
- Minimum of 5 years demonstrable experience within GRC, Information Security, Audit, or Risk disciplines.
- Core Knowledge: Thorough understanding of enterprise risk management frameworks and internal audit processes.
- Data Protection: Proven hands-on experience with GDPR compliance (including ROPA, LIA, and DPIA requirements).
- Communication: Excellent analytical, problem-solving, and senior stakeholder management abilities.
- Technical Aptitude: Experience utilising modern GRC software platforms and risk mapping tools.
- Exposure to Defence Cyber Certification (DCC), Cyber Essentials (CE), or Cyber Essentials Plus (CE+).
- Familiarity with Secure by Design (SbD) principles and JSP 453 assurance activities.
- Understanding of vendor risk management, SOC2, or NIS2 directives.
- Previous experience performing duties as a Crypto Custodian or Alternate Custodian.
- Relevant industry certifications such as CISA, CRISC, CISM, or CISSP.
Skills
Swift
GDPR
Stakeholder Management
Similar jobs
Compliance Analyst
IPS Group · United Kingdom
6 hours agoCompliance Manager
Morson Edge · Leeds, United Kingdom
9 hours ago£45k/yrCompliance Officer
CV Screen Ltd · High Wycombe, United Kingdom
10 hours ago£50k/yrRail Competency and Compliance Manager
Speedy Hire · Newton-le-willows, United Kingdom
10 hours agoRegulatory Compliance Manager
Whiteoak Associates · Newcastle Upon Tyne, United Kingdom
11 hours ago£65k - £85k/yrData Privacy Specialist
Graff Search · london, United Kingdom
2 days ago