Senior Security Analyst - GRC
- london, england, United Kingdom
- Permanent·Hybrid
- Full time
- £70 - £100 Per Hour
Job Description
London City | Hybrid (2 days onsite) | International Consultancy | Permanent
Ready to shape the future of GRC?
We're partnering with an innovative international consultancy that's redefining how Governance, Risk & Compliance is delivered. Rather than treating GRC as a compliance exercise, they're embedding continuous assurance, automation and AI into the heart of security and business decision-making.
This is an opportunity for a Senior GRC Analyst who wants to move beyond traditional frameworks and play a key role in modernising security governance across both internal technology platforms and a diverse client portfolio.
What You'll Be Doing
You'll work closely with technical teams, business stakeholders and clients to build practical, risk-based security programmes that genuinely add value.
Key responsibilities include:
- Leading governance, risk and compliance initiatives across multiple environments
- Implementing and maturing security frameworks including ISO 27001, NIST, CIS Controls and SOC 2
- Delivering internal and client-facing GRC projects from gap analysis through to audit readiness
- Conducting risk assessments, internal audits and compliance reviews
- Developing meaningful security metrics and reporting that support business decisions
- Driving automation and AI initiatives to improve assurance and reduce manual effort
- Enhancing third-party risk management, security policies and awareness programmes
- Influencing stakeholders across both technical and executive audiences
What We're Looking For
You'll already have solid experience working in Information Security Governance, Risk & Compliance and enjoy partnering with both technical and business teams.
You'll ideally bring:
- Strong experience within a Senior GRC, Risk or Compliance role
- Practical implementation experience with ISO 27001, CIS Controls, NIST or similar frameworks
- Experience supporting audits and compliance programmes
- A strong understanding of modern IT infrastructure, cloud technologies and security principles
- Excellent stakeholder management and communication skills
- A pragmatic, risk-based approach to governance
- An interest in automation, AI and the future of GRC
Why Join?
This isn't a traditional compliance role.
You'll join a forward-thinking organisation that's investing heavily in the future of Governance, Risk & Compliance, giving you the opportunity to influence strategy, modernise assurance practices and work with cutting-edge technologies including AI and automation.
You'll be trusted to challenge the status quo, work closely with senior leadership and make a genuine impact across both internal operations and client engagements.
What's on Offer
- Hybrid working – 2 days per week in London City
- Opportunity to shape a modern GRC function
- Exposure to a broad range of technologies and industries
- Collaborative, innovative culture
- Career progression within a growing international consultancy


