Ethical Hacker jobs in London
- air-recruitmentLondon
- To be considered, you must combine substantial Cyber GRC experience with the technical knowledge to understand and challenge controls across networks, operating…
- DeloitteLondon
- Lead and supported implementation, configuration, and management of SA Identity Access Governance (IAG) solutions to ensure compliance and secure access.
- View all Deloitte jobs - London jobs - Enterprise Architect jobs in London
- Salary Search: Contract - SAP S/4 HANA Security and GRC Consultant salaries in London
- See popular questions & answers about Deloitte
- DeloitteLondon
- In IT Audit, we help organisations identify and manage technology risks that could impact financial reporting and business performance.
- View all Deloitte jobs - London jobs - IT Auditor jobs in London
- Salary Search: IT Audit salaries in London
- See popular questions & answers about Deloitte
- Deloitte’s dynamic and innovative internal audit team provides clients with expert advice on some of the most challenging and complex engagements in the…
- We provide independent assurance by assessing the risks and underlying processes, providing conclusions as to which risks are being managed and mitigated in…
- JPMorganChaseLondon
- Embrace the challenge of securing institutional blockchain infrastructure at scale, delivering intelligence-driven operational excellence across on-chain…
View similar jobs with this employerEYLondon SE1 2AF- Employee discount
- This role will see you take a key position in delivering EY’s services, leading and managing engagements and client delivery.
- Janus HendersonLondon EC2M
- Company pension
- Canteen
- Engineers satisfy them through standard paths, without informal interpretation or repeated meetings.
- Risk, Infosec, and Internal Audit recognise their…
- M GroupLondon
- Referral programme
- Annual leave
- Employee discount
- Employee assistance programme
- Company pension
- Enhanced maternity leave
- As a Senior OT Security Compliance Consultant, you'll help organisations strengthen the security and resilience of their operational technology (OT) and…
- Pwc UKLondon WC2N
- You will design how security operates across complex environments—from classified cloud platforms to operational military systems—ensuring alignment with MOD…
- View all Pwc UK jobs - London jobs - Assurance Manager jobs in London
- Salary Search: Senior Manager - Security Architecture & Assurance salaries in London
- See popular questions & answers about Pwc UK
- Pwc UKLondon WC2N
- You will design how security operates across complex environments—from classified cloud platforms to operational military systems—ensuring alignment with MOD…
- View all Pwc UK jobs - London jobs - Assurance Manager jobs in London
- Salary Search: Senior Manager - Security Architecture & Assurance salaries in London
- See popular questions & answers about Pwc UK
- Pwc UKLondon WC2N
- You’ll lead digital audit engagements, assess IT risks and controls, and provide constructive challenge to management.
- View all Pwc UK jobs - London jobs - Senior Auditor jobs in London
- Salary Search: FS Digital Audit - Senior Manager salaries in London
- See popular questions & answers about Pwc UK
- AvanadeLondon
- Avanade is looking for an experienced Digital Identity Architect.
- This is predominantly a delivery-focused role with the opportunity to support on pre-sales…
- View all Avanade jobs - London jobs - Identity Architect jobs in London
- Salary Search: ICOE Digital Identity Security Architect salaries in London
- See popular questions & answers about Avanade
- You will deliver EY’s cybersecurity offerings, support new client pursuits, and collaborate with colleagues across the UK and globally to develop innovative…
- View all EY jobs - London jobs - Cybersecurity Consultant jobs in London
- Salary Search: Senior Consultant, Cybersecurity, Identity TC, UKI salaries in London
- See popular questions & answers about EY
- EY is seeking experienced team members who can review, design and deliver Cyber Identity and Access Management (IAM) services.
- Ideally, you’ll also have.
- View all EY jobs - London jobs - CyberSecurity Specialist jobs in London
- Salary Search: Manager, Cyber Security, Identity , TC UKI salaries in London
- See popular questions & answers about EY
- DeloitteLondon
- We provide independent assurance by assessing the risks and underlying processes, providing conclusions as to which risks are being managed and mitigated in…
- View all Deloitte jobs - London jobs - Assurance Manager jobs in London
- Salary Search: Manager, Digital Regulation Assurance salaries in London
- See popular questions & answers about Deloitte
Senior Cyber GRC Specialist – Technical Controls
Senior Cyber GRC Specialist – Technical Controls
Job details
Full job description
Senior Cyber GRC Specialist – Technical Controls
London / Hybrid
Up to £120,000
Are you an experienced Cyber GRC professional with a genuinely strong understanding of cyber engineering and technical security controls?
We’re working with a major global investment management organisation looking for a Senior Cyber GRC Specialist.
This is not a purely policy, audit or compliance-focused position. To be considered, you must combine substantial Cyber GRC experience with the technical knowledge to understand and challenge controls across networks, operating systems, cloud security, IAM and Secure DevOps.
You may have started your career in cyber engineering, infrastructure security, security operations or cloud security before moving into GRC, cyber risk or controls. Alternatively, you may already be working in a technically focused Cyber GRC position within financial services or another highly regulated organisation.
This is a highly visible opportunity to help strengthen cybersecurity governance, risk management and regulatory compliance across a complex international business.
THE ROLE
Working closely with Technology, Enterprise Risk, Legal, Compliance and Internal Audit, you will:
* Develop and maintain comprehensive cybersecurity policies, standards and procedures
* Ensure security policies align with regulatory requirements and recognised industry frameworks
* Integrate effective security practices and controls across technical and non-technical departments
* Conduct cyber risk assessments to identify vulnerabilities and emerging threats
* Help develop, implement and monitor appropriate risk-mitigation strategies
* Design and evaluate control metrics to assess the effectiveness of cybersecurity measures
* Embed cyber risk within wider enterprise risk registers and board-level reporting
* Monitor compliance with internal policies, regulatory requirements and industry standards
* Produce clear compliance reports and updates for senior management
* Monitor regulatory developments and create appropriate compliance roadmaps
* Support cybersecurity awareness and training across the organisation
* Participate in incident response and post-incident reviews
* Help develop and implement corrective measures following security incidents
* Provide credible cybersecurity guidance to stakeholders across the business
ABOUT YOU
You’ll need:
* Strong professional experience across cybersecurity governance, risk and compliance
* A solid technical cybersecurity or cyber engineering background
* Deep knowledge of cybersecurity principles and recognised frameworks, including NIST and ISO 27001
* Experience within financial services or another highly regulated environment
* Knowledge of relevant financial-services regulations, ideally including FCA requirements and DORA
* Strong understanding of network security principles and controls, including firewalls, IDS/IPS, TCP/IP, DHCP and DNS
* Experience of security across Windows, UNIX/Linux and ideally Mac environments
* Knowledge of operating-system access rights, secure configuration and security best practice
* Strong understanding of cloud security across IaaS, PaaS and SaaS environments
* Knowledge of public, private and hybrid cloud deployment models
* A thorough understanding of IAM, SSO, MFA and role-based access control
* Understanding of Secure DevOps and CI/CD pipeline governance
* The ability to translate technical cyber risks into clear business and regulatory implications
* Strong stakeholder-management skills, with the credibility to work across Technology, Risk, Legal, Compliance, Audit and senior leadership
A CISSP or similar recognised cybersecurity qualification would be highly beneficial.
This position would suit a Cyber GRC, Cyber Risk or Security Controls specialist who has retained strong technical knowledge—or a cybersecurity engineer who has developed substantial experience across governance, risk, controls and regulation.
If you combine strong Cyber GRC expertise with a genuine understanding of cyber engineering and technical security controls, we’d love to hear from you.
Please get in touch quoting job reference AP1203.
Please also visit www.air-recruitment.com
INDLP
Pay: £100,000.00-£120,000.00 per year
Work Location: Hybrid remote in London