Security Consultant – GRC (Governance, Risk, Compliance)

Certain Advantage
Great Lea Common, Berkshire
9 months ago
Applications closed

Related Jobs

View all jobs
Spotlight

Senior Data Engineer

Lab 1 London, Greater London, United Kingdom
£85,000 – £125,000 pa Hybrid

Cyber Security Consultant

Circle Recruitment Reading, United Kingdom
£55,000 – £65,000 pa Remote

Senior Cyber Risk & Security Consultant - Consulting

Oliver James London, United Kingdom
£55,000 – £60,000 pa

Cyber Security Governance Consultant

83zero London, City And County Of the City Of London, United Kingdom
£80,000 – £100,000 pa Hybrid Clearance Required

GRC Consutlant

Forward Role Trafford Park, M17 1PB, United Kingdom
£32,000 – £37,000 pa

Senior ServiceNow Engineer - GRC/IRM

Deerfoot Recruitment Solutions Ec2Y9Ag, EC2Y 9AG, United Kingdom
£100,000 – £120,000 pa

Security Testing Analyst

Oscar Technology London, United Kingdom
£30,000 – £35,000 pa
Posted
5 Nov 2025 (9 months ago)

Security Consultant – GRC (Governance, Risk & Compliance)
Location: Reading (Remote role with once or twice per month on-site) 
Rate: Negotiable (DOE)
Contract: Until May 2026

An excellent opportunity has arisen for an experienced Security Consultant (GRC) to join a global technology organisation that’s expanding its EMEA cyber security consulting practice and investing heavily in a new Centre of Excellence.

This is a hands-on consulting position delivering Governance, Risk and Compliance (GRC) projects for major enterprise clients — including risk management, cloud security governance, and compliance frameworks such as ISO27001, NIST CSF, CIS Top 18 and COBIT.

You’ll play a key role in engaging with senior stakeholders, assessing cyber maturity, and driving best-practice improvements across a range of industries.

Key Responsibilities
Deliver Cyber GRC consulting engagements end-to-end — from scoping and planning through to delivery and close-out.
Provide advisory services covering areas such as Information Security Governance, Risk Management, Compliance, Business Continuity, and Cloud Security.
Translate complex security and compliance requirements into actionable business solutions.
Build trusted relationships with clients at both technical and senior management levels.Skills & Experience Required
4+ years’ experience in a professional consulting role, ideally within enterprise IT security, governance, or risk management.
Proven delivery experience using frameworks such as ISO27001, NIST CSF, CIS, COBIT, or equivalent.
Strong client-facing skills, with the ability to communicate technical concepts to non-technical audiences.
Relevant industry certifications such as CISSP, CISA, CRISC, CISM, or CISMP.
Excellent communication skills and fluency in English.Desirable
Degree in a related discipline (e.g. Information Security, IT, Risk Management).
Exposure across multiple industry sectors.
Additional certifications such as CCSP, CCSE, or CCAK, or knowledge of DORA / NIS2.
Fluency in another European language (French, German, etc.) would be advantageous.This is a fantastic opportunity to work with a leading global organisation on large-scale, complex cyber security programmes. You’ll collaborate with some of the best in the business and gain exposure to major international clients — ideal for someone who enjoys client-facing work and wants to deepen their expertise in GRC consulting.

Interested? 

Please apply now with your updated CV and reach out to Tom Johnson at Certain Advantage - Ref: 79546

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.