A well-established organisation is looking for a Cyber Security Manager to lead governance, risk and compliance activity across its cyber security function. This role suits a hands-on GRC professional who can balance policy and framework work with day-to-day stakeholder engagement.
What you'll be doing
- Own and maintain the cyber security governance framework, policies and standards
- Lead risk assessments and track remediation of identified gaps through to closure
- Manage the compliance calendar, including internal reviews and external audit cycles
- Report on cyber security risk posture and GRC metrics to senior stakeholders
- Partner with IT, legal and business teams to embed security requirements into projects and change initiatives
- Support vendor and third-party risk assessments
What you'll bring
- Solid experience in a cyber security GRC, risk or audit-related role
- Active CISA certification is required
- Working knowledge of common security and risk frameworks
- Strong stakeholder management and communication skills, comfortable presenting to senior audiences
- Ability to work independently and manage competing priorities