GRC Analyst (Contract) - Governance, Risk and ComplianceDay Rate: £400 per dayEngagement: Outside IR35Location: UK (Flexible Working)Duration: Initial... Read more
GRC Analyst (Contract) - Governance, Risk and Compliance
Day Rate: £400 per day
Engagement: Outside IR35
Location: UK (Flexible Working)
Duration: Initial 6 months with strong extension potential
The Opportunity
Were supporting a well-established manufacturing organisation embarking on a significant cyber governance, risk and compliance maturity programme. As part of this journey, were looking for an experienced GRC Analyst to take ownership of the cyber risk function and help establish a more structured, repeatable, and measurable approach to risk management across the business.
This is a hands-on role for someone who enjoys building capability from the ground up, influencing stakeholders, and embedding risk management processes that deliver real business value.
Responsibilities
* Own and maintain the cyber and technology risk registers.
* Develop and mature risk management processes, methodologies and reporting.
* Facilitate risk identification, assessment, treatment and monitoring activities across the organisation.
* Support the implementation and ongoing management of a Cyber Assessment Framework (CAF)-aligned control environment.
* Track remediation activities and challenge stakeholders to ensure risks are effectively addressed.
* Produce meaningful risk reporting, dashboards and metrics for senior leadership.
* Work closely with security, technology and business teams to embed risk-based decision-making.
* Support policy, governance and controls reviews to ensure alignment with organisational objectives.
* Assist with internal audits, control assessments and assurance activities.
* Drive continual improvements in governance, risk and compliance maturity.
Experience Required
* Proven experience in a Cyber Security GRC, Risk Analyst, Security Assurance or Governance role.
* Strong understanding of cyber risk management principles and risk register ownership.
* Experience supporting or implementing recognised frameworks such as CAF, NIST CSF, ISO 27001 or CIS Controls.
* Ability to perform risk assessments and translate technical risks into business-focused language.
* Experience developing reporting, dashboards and risk metrics for stakeholders.
* Strong stakeholder management skills with the confidence to challenge and influence.
* Ability to work independently and operate in a fast-paced delivery environment.
Desirable
* Experience within manufacturing, engineering or complex enterprise environments.
* Knowledge of security assurance, control testing or audit activities.
* Relevant certifications such as ISO 27001, CRISC, CISM, CISA, CISSP or equivalent.
Whats on Offer?
* £400 per day
* Outside IR35
* Flexible and hybrid working options
* High-impact role with significant autonomy
* Opportunity to build and shape a growing risk function
* Long-term programme with strong extension potential
GCS is acting as an Employment Business in relation to this vacancy.
Read lessUnited KingdomContractRemote
All your saved jobs are no longer available or you've already applied.
for the following search criteria