Why This Role Stands Out
This hybrid role offers a fantastic opportunity to shape and implement critical governance and compliance frameworks within a respected technology provider, fostering your career growth and professional development. You'll thrive here if you're a proactive risk manager eager to ensure robust compliance and contribute to a secure IT infrastructure for vital public sector partners. Apply now to make a significant impact and benefit from structured career coaching and a comprehensive package.
Quick Overview
Seniority
Mid Senior
Employment type
Full Time
Work mode
Hybrid
Location
Swindon, Wiltshire, United Kingdom
Posted
3 weeks ago
SwiftGDPRStakeholder Management
Job Description
Governance, Risk and Compliance (GRC) Manager
The GRC Manager will take ownership of developing, implementing, and maintaining the organisation's governance, risk management, and compliance frameworks. You will ensure operational activities align with legal requirements, regulatory standards, and internal policies, while proactively identifying and mitigating enterprise risks.
About the ClientOur client is a highly respected technology and secure managed services provider, specialising in delivering resilient, high-assurance IT infrastructure and security solutions to defense and public sector partners. They pride themselves on fostering continuous professional development through structured career coaching, tailored training pathways, and comprehensive benefit packages.
Role SummaryThe GRC Manager will take ownership of developing, implementing, and maintaining the organisation's governance, risk management, and compliance frameworks. You will ensure operational activities align with legal requirements, regulatory standards, and internal policies, while proactively identifying and mitigating enterprise risks.
Key Responsibilities
Required Skills and Experience
EssentialExperience:
The GRC Manager will take ownership of developing, implementing, and maintaining the organisation's governance, risk management, and compliance frameworks. You will ensure operational activities align with legal requirements, regulatory standards, and internal policies, while proactively identifying and mitigating enterprise risks.
About the ClientOur client is a highly respected technology and secure managed services provider, specialising in delivering resilient, high-assurance IT infrastructure and security solutions to defense and public sector partners. They pride themselves on fostering continuous professional development through structured career coaching, tailored training pathways, and comprehensive benefit packages.
Role SummaryThe GRC Manager will take ownership of developing, implementing, and maintaining the organisation's governance, risk management, and compliance frameworks. You will ensure operational activities align with legal requirements, regulatory standards, and internal policies, while proactively identifying and mitigating enterprise risks.
Key Responsibilities
- Develop, implement, and manage the overarching GRC strategy, policies, and procedural frameworks.
- Conduct enterprise risk assessments and maintain the organisation's central risk register.
- Monitor operational, regulatory, cybersecurity, financial, and third-party risks.
- Ensure full compliance with relevant statutory regulations, legal standards, and framework requirements.
- Coordinate internal and external audit activities, managing the swift remediation of findings.
- Establish compliance monitoring mechanisms and present regular reporting to senior leadership.
- Collaborate with internal business units to design and embed effective risk mitigation controls.
- Monitor regulatory developments and assess their potential operational impact.
- Support business continuity, disaster recovery, and information security governance initiatives.
- Oversee third-party/vendor risk evaluations and perform required due diligence.Lead organisation-wide training programmes to promote a strong security and compliance culture.
Required Skills and Experience
EssentialExperience:
- Minimum of 5 years demonstrable experience within GRC, Information Security, Audit, or Risk disciplines.
- Core Knowledge: Thorough understanding of enterprise risk management frameworks and internal audit processes.
- Data Protection: Proven hands-on experience with GDPR compliance (including ROPA, LIA, and DPIA requirements).
- Communication: Excellent analytical, problem-solving, and senior stakeholder management abilities.
- Technical Aptitude: Experience utilising modern GRC software platforms and risk mapping tools.
- Exposure to Defence Cyber Certification (DCC), Cyber Essentials (CE), or Cyber Essentials Plus (CE+).
- Familiarity with Secure by Design (SbD) principles and JSP 453 assurance activities.
- Understanding of vendor risk management, SOC2, or NIS2 directives.
- Previous experience performing duties as a Crypto Custodian or Alternate Custodian.
- Relevant industry certifications such as CISA, CRISC, CISM, or CISSP.
Similar jobs
- AS
Assistant Compliance Technologist
NewASOS
London🇬🇧On-site16 hours agoAuditingComplianceDue Diligence+2Administrative - A&
Fleet Compliance Manager
NewAdler & Allan
Manchester🇬🇧On-site15 hours agoContinuous ImprovementLogistics - AB
Head of Compliance
NewAlexander Bonhill
Channel Isles🇬🇧Hybrid7 hours agoFinance - SM
Security & Compliance Manager
NewSRT Marine Systems plc
Bristol, Somerset🇬🇧Hybrid12 hours agoAdministrative - KU
QSHE Compliance Manager
NewKuehne+Nagel
Bicester, Oxfordshire🇬🇧Hybrid12 hours agoFinance - IG
Compliance Assistant
NewIPS Group
City, London🇬🇧Hybrid12 hours agoAdministrative