About the role

  • Cyber Security GRC Lead managing governance, risk, and compliance in a bank environment. Responsible for ensuring effective management of cyber security risks and regulatory compliance at the organization.

Responsibilities

  • Own and develop the security control assessment process, ensuring cyber risks are identified, assessed, and managed effectively.
  • Drive accountability for cyber risk mitigation and control compliance across the business.
  • Monitor emerging threats and adjust risk assessments and controls proactively.
  • Act as ISO 27001 Lead, maintaining and improving the ISMS and supporting audit readiness.
  • Lead and oversee security risk assessments, including third‑party due diligence.
  • Provide expert consultancy to projects, embedding security requirements from design through delivery.
  • Produce clear, meaningful cyber risk and compliance reporting for senior stakeholders.

Requirements

  • Extensive experience in cyber security, with a strong track record in GRC‑focused roles.
  • Deep understanding of risk management and how to build a strong risk culture.
  • Working knowledge of data protection law, ISO 27001, SOC 2, NIST, and SOX.
  • Confidence translating technical risk into clear business‑level insight.
  • Certification in at least one of: CRISC, CISM, CISSP, ISO 27001 Lead Implementor or ISO 27001 Lead Auditor.

Benefits

  • Private medical insurance
  • Enhanced family leave
  • Income protection
  • Pension

Job title

Cyber Security GRC Lead

Job type

Experience level

Senior

Salary

£67,000 - £75,000 per year

Degree requirement

Bachelor's Degree

Tech skills

Location requirements

Report this job

See something inaccurate? Let us know and we'll update the listing.

Report job