Open roleExternal
Security Engineer (GRC)
- bristol, south west england, BS1 4BN, United Kingdom
- Permanent·Hybrid
- Full time
- £62,000 - £62,000 Per Annum
Job Description
About the Role
Our client is seeking a dedicated Security Engineer with a focus on Governance, Risk, and Compliance (GRC) to join their team in Bristol . This role is essential for ensuring that our client adheres to industry regulations and internal security policies, thereby minimizing risk and maintaining trust. Working in a hybrid model, you will bridge the gap between technical security controls and corporate governance frameworks, contributing to a robust security posture.
Key Responsibilities
- Develop, implement, and maintain GRC policies, standards, and procedures.
- Conduct risk assessments and manage the remediation of identified security risks.
- Oversee compliance with relevant regulations and standards (e.g., ISO 27001, GDPR, PCI DSS).
- Manage security audits, both internal and external, ensuring successful outcomes.
- Develop and deliver GRC-related training and awareness programs.
- Act as a liaison between IT security, legal, and business units on GRC matters.
Requirements
- Bachelor's degree in Information Security, Computer Science, or a related field.
- 3-5 years of experience in GRC, IT audit, or information security management.
- Strong understanding of cybersecurity frameworks, risk management methodologies, and compliance regulations.
- Experience with GRC tools and platforms.
- Excellent analytical, documentation, and reporting skills.
- Professional certifications like CISA, CRISC, or CISSP are highly valued.
Benefits
- Competitive salary and benefits package.
- Hybrid working environment balancing office and remote work.
- Opportunity to shape the GRC function within the organization.
- Support for professional development and certifications.
- Collaborative team culture focused on risk mitigation.


