
Manager, Governance Risk & Compliance (GRC)
Perceptive Inc.
full-time
Posted on:
Location Type: Hybrid
Location: London • United Kingdom
Visit company websiteExplore more
Tech Stack
About the role
- The Manager, Governance Risk & Compliance (GRC) is responsible for developing, implementing and maintaining governance, risk and compliance frameworks.
- Managing a small team and ensuring adherence to ISO 27001 standards.
- Managing internal and external audits and reviews contractual agreements (MSAs).
- Maintain and enhance the organization’s Information Security Management System (ISMS).
- Develop and update security policies, standards, and procedures.
- Identify, assess, and monitor information security risks.
- Plan and execute internal audits for ISO 27001 and coordinate external certification audits.
- Prepare regular compliance and risk reports for senior management.
Requirements
- Proven experience of leading and mentoring colleagues.
- Experience of regulated environments (GxP, Financial, etc…).
- Professional certifications such as ISO 27001 Lead Implementer/Auditor, CISM, CRISC, or similar.
- Strong understanding of ISO 27001, risk management frameworks, and audit processes.
- Experience reviewing contracts and MSAs for security compliance.
- Background in IT security governance within a global organization.
- Knowledge and understanding of regulations and frameworks relating data protection and cyber security (GDPR, SOC 2, NIS2, etc.).
- Experience with GRC tools and platforms.
- Bachelor’s degree or Engineering in IT/computer science/electronics.
- English: Fluent.
Benefits
- 25 days’ holiday (with the option to buy more)
- Health Cash Plan
- Optional private health, dental insurance, and health screens
- Cycle to work scheme
- Generous pension scheme with up to 10% employer contribution
- Life assurance
- Season ticket loan
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
ISO 27001risk management frameworksaudit processesinformation security management system (ISMS)security policiessecurity complianceGRC toolsdata protection regulationscyber security frameworkscontract review
Soft Skills
leadershipmentoringcommunicationteam managementreporting
Certifications
ISO 27001 Lead ImplementerISO 27001 AuditorCISMCRISC