Jobs
>
London

    GRC Specialist - London, United Kingdom - DS Smith

    Default job background
    Full time
    Description
    Here at DS Smith, we are looking for a passionate and enthusiastic Governance, Risk and Compliance (GRC) Specialist to join our Digital Security Team.

    The role will involve Digital Security and Information & Technology (I&T) Governance, Risk and Compliance (GRC) awareness, culture, simulations, supplier security assurance, policies, standards, and risk management.

    Reporting to the I&T Governance and Risk Lead, the GRC specialist will support:

  • Digital security awareness and culture activities including driving ethical phishing and e-learning campaigns.
  • Specification and facilitation of cyber scenario simulations.
  • Supplier security assurance activities.
  • Provision of digital security and technology risk advice and guidance.
  • Facilitate and support IT risk management processes and continuous improvement.
  • The GRC Specialist will address tasks as assigned by the GRC team and take ownership of aspects of the risk process, supplier review and awareness campaigns, including monitoring and insights driven by analysis of related data and MI. You will have experience of delivering and working within digital security control frameworks such as ISO27001, NIST CSF and CIS.

    As the successful candidate, you will demonstrate strong analytical and problem-solving skills, and the ability to communicate and present information in multiple ways, e.g., written, verbal, preparation of presentations, a career goal in the field of digital security and technology risk management. You will develop, roll-out and manage digital security awareness campaigns across the not just the DS Smith Digital Security team but also the wider business, which includes ethical phishing support and administration.

    The GRC Specialist will build effective working relationships across I&T, business stakeholders and external stakeholders as the SME and specialist within GRC. This role may include periodic planned travel, 'on-site' visits in support of the business engagement outlined.

    About you

  • Knowledge and experience working with information security standards and frameworks such as ISO, NIST, ISF SOGP, Cyber Essentials, etc.
  • Ability to communicate clearly and effectively across all management levels of the company, particularly when articulating complex IT concepts to non-IT stakeholders.
  • Knowledge and experience managing and executing risk and control processes in line with industry good practice.
  • Experience tracking internal and external audit actions, and support stakeholder liaison to drive actions to closure.
  • Effective time management skills and ability to juggle several tasks and conflicting priorities
  • Tertiary academic or vocational qualification in a relevant field, or equivalent work experience/professional accreditations
  • Professional certifications such as CISSP, CISA, CRISC would be advantageous
  • Benefits

  • Competitive salary
  • Company bonus
  • Pension scheme
  • Life assurance
  • Income protection
  • 25 days holiday plus bank holidays
  • Electric Car/Bike Scheme

  • TrueLayer

    Grc Specialist

    3 weeks ago


    TrueLayer London, United Kingdom

    **Who we are**: · At TrueLayer, we're creating a payments network that better connects banks, businesses and everybody. And we're going big. We're taking on cards with a payment method that's actually designed for the online, on-demand world we live in. Removing friction from the ...


  • Adecco UK London, United Kingdom

    **Job Title**:Information Security GRC Specialist · **Pay Rate**:Competitive · **Duration**:Permanent · **Location**:London - Aldgate · **Shift Patterns**:35 hrs a week, flexible with hours, flexible with the day's in the office. · **WFH / WFO / Hybrid**:40% in the office for the ...

  • Morgan Philips Group SA

    GRC specialist

    1 week ago


    Morgan Philips Group SA London, United Kingdom £70,000 - £85,000

    GRC specialist (Governance, Risk Compliance) · I am working with a professional services client based in Central London who is looking for a GRC specialist to join their global team with the governance, risk and compliance team. This is a fast paced environment where you will be ...


  • Huxley London, United Kingdom

    Location: London, England, United Kingdom · My client within the financial services industry is currently looking for a GRC security specialist to support the Security Governance Team for the implementation of DORA. · Responsibilities: · Solid understanding of various differe ...


  • Huxley London, United Kingdom Freelance

    GRC Security Specialist6 Month Contract Financial Services £600 p/d Inside IR35 Hybrid 2 days London office My client within the financial services industry is currently looking for a GRC security specialist to support the Security Governance Team for the implementation of DORA. ...


  • Lawrence Harvey London, United Kingdom

    Cyber Security GRC Specialist · Salary - £130-150k % BonusnLocation – London (2/3 days per week in office) · I'm currently working with one of the fastest growing and most established Crypto Trading and Market-Making firms worldwide, who are looking to hire a Cyber Security GRC S ...


  • Lawrence Harvey london, United Kingdom

    Job DescriptionCyber Security GRC Specialist · Salary - £130-150k % Bonus · Location – London (2/3 days per week in office) · I'm currently working with one of the fastest growing and most established Crypto Trading and Market-Making firms worldwide, who are looking to hire a Cyb ...


  • Lawrence Harvey london, United Kingdom

    Cyber Security GRC Specialist · Salary - £130-150k % Bonus · Location – London (2/3 days per week in office) · I'm currently working with one of the fastest growing and most established Crypto Trading and Market-Making firms worldwide, who are looking to hire a Cyber Security GRC ...


  • Lawrence Harvey Greater London, United Kingdom

    Cyber Security GRC Specialist · Salary - £130-150k % Bonus · Location – London (2/3 days per week in office) · I'm currently working with one of the fastest growing and most established Crypto Trading and Market-Making firms worldwide, who are looking to hire a Cyber Secur ...


  • Lawrence Harvey London, United Kingdom

    Location – London (2/3 days per week in office) · I'm currently working with one of the fastest growing and most established Crypto Trading and Market-Making firms worldwide, who are looking to hire a Cyber Security GRC Specialist to set out and establish their Information Securi ...


  • TÜV Rheinland Group London, United Kingdom

    **General information**: · - Location · - London · - Type of contract · - Permanent · Full Time · - Occupational field · - IT · - Job-ID · - 9556 · **Job Summary**: · **Associate GRC Consultant** · We are seeking a technically driven and self-starting graduate to come and join ou ...


  • Comtecs Ltd London, United Kingdom

    Information Security Engineer / Information Security SME (Subject Matter Expert) required by global law firm. You will act as the Technical Subject Matter Expert working between the Information Security Team and the IT Teams, specifically Networks and CloudServer Infrastructure. ...


  • Comtecs Ltd London, United Kingdom

    Information Security Engineer / Information Security SME - Network Security, Perimeter Defences, Palo Alto Firewalls, Azure / AWS Cloud, SIEM, DLP, IPS/IDS, WAF; NIST, CSA, HIPAA; CISM, CISSP. Permanent, London/Remote (Hybrid, 3/2). £75k - £80k +Bonus +Benefits · Information Secu ...


  • Gresham Hunt London, United Kingdom

    **Data Privacy Consultant**: · - Role: OneTrust Implementation Specialist · - Rate: Up to £400/day - Outside IR35 · - Length: 2-3 month rolling · - Location: Remote · Gresham Hunt are currently working with a specialist Privacy Consulting firm who are seeking multiple, experience ...


  • Direct Line Group London, United Kingdom

    At Direct Line Group, insurance is just the start. Combining decades of industry experience with talented people in every field from data, technology, customer care and auto repair, to HR, finance and procurement, we're a customer-obsessed market powerhouse. And we all work toget ...


  • Kramer Westfield London, United Kingdom

    **Application Support / IT Support Specialist** · **Providing IT/Application Support to International Customers** · **London with Extensive Homeworking** · **(One day per week in the office)** · **c£35,000 - £50,000 + Bonus + Stock + Bens** · Our client is an established software ...

  • Trustpilot

    Head of Grc

    3 weeks ago


    Trustpilot London, United Kingdom

    **We're a leading online reviews platform, free and open to all. Our mission is to be a universal symbol of trust. We are well on our way - but there's still an exciting journey ahead of us. Do you want to join us?**: · We are seeking a GRC Specialist, working in our InfoSec Team ...

  • Kyndryl

    Security Consultant

    3 weeks ago


    Kyndryl London, United Kingdom

    Who We Are · At Kyndryl, we design, build, manage and modernize the mission-critical technology systems that the world depends on every day. So why work at Kyndryl? We are always moving forward - always pushing ourselves to go further in our efforts to build a more equitable, inc ...


  • INTEC SELECT LIMITED London, United Kingdom

    Senior ServiceNow Developer £700 - £800 - Outside IR35 - 6 Months · A global, British FTSE250 financial company are looking to recruit a Senior ServiceNow Developer to join and support on their ServiceNow roadmap. This is an exciting time to join and be part of a leading organisa ...


  • ACA Group London, United Kingdom

    **Date**:May 16, 2024 · **Location**: London, United Kingdom, GB · **Company**:ACA Group · **The Opportunity**: The Client Success Associate is responsible for supporting Account Executives in maintaining strong, long-term relationships with clients, ensuring client satisfaction, ...