GRC Lead

Precise Placements
Ec2A4Bt, United Kingdom
6 days ago
£80,000 – £95,000 pa

Salary

£80,000 – £95,000 pa

Job Type
Permanent
Work Pattern
Full-time
Work Location
On-site
Seniority
Lead
Education
Degree
Posted
14 Sep 2026 (6 days ago)

GRC Lead - ISO27001, ISO 27002, ISO 27005, ISO 31000 ISMS, Security Audits

Our leading global law firm client are actively looking to take on a new GRC Lead (ISO 27001, ISO 27002, ISO 27005, ISO 31000 ISMS, Security Audits) on a permanent basis, this person will be responsible for the management of ISMS globally across the firm which covers a broad range of security activities such as Policy Development, Risk Management, Internal & External audits & compliance etc.

To be considered for this GRC Lead (ISO 27001, ISO 27002, ISO 27005, ISO 31000 ISMS, Security Audits) role, it's ideal that you have:

  • Proven experience in a similar role
  • Preferable but not required law firm experience
  • Strong knowledge on ISO frameworks

Duties, Responsibilities & Person Specification

  • ISMS Management
  • Communicate to senior management on risks and requirements
  • Understand business objectives and support development of budget for information security objectives
  • Develop and maintain security compliance program
  • Provide support where necessary to local offices to update and maintain country specific IS documentation
  • Establish security metrics to assess effectiveness
  • Coordinate and maintain the management review process
  • Make written and oral reports to ISSC
  • Security Audits
  • Manage internal and external audits and certifications
  • Manage third party providers including security consultants and assessors
  • Security Awareness
  • Ownership of the Security Awareness Program and the Security Awareness Centre and support of Security Culture Change including owning and managing the quarterly phishing simulation campaigns and the third party relationship.
  • Improvement management
  • Manage identified improvements through to completion
  • Policy
  • Develop, maintain and publish security strategies, policies and procedures
  • Manage security policy and implementation
  • Support global IT departments on implementation of security policy and products

Related Jobs

View all jobs

Cyber Risk Lead

CPS Group London, United Kingdom
£80,000 – £90,000 pa

SAP Security & GRC Consultant

Elix Sourcing Solutions Rg20Fl, United Kingdom
£70,000 – £80,000 pa

Senior Information Security & GRC Specialist

Zachary Daniels Recruitment St Luke's, London, EC1V 3RQ, United Kingdom
£75,000 – £85,000 pa

Vulnerability Management Service Lead

Adecco Preston, United Kingdom
£70,000 – £75,000 pa

Compliance Enablement Technical Program Manager

Sophos Canada
CA$109,000 – CA$181,000 pa Remote

Cyber Security Strategy Manager - Consulting

Oliver James London, United Kingdom
£75,000 – £85,000 pa On-site

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.