Job Ref: RC9311

IT Security

IT Security

IT Security

IT Security GRC Manager

Salary: £Competitive + Great Benefits

Location: City of London

Job Type: Full Time

The Role:

IT Security GRC Manager / Associate is required by a prestigious financial services organisation based in the City of London (they operate a hybrid working model). Based within their central and global IT function who, with the help of their IT outsourcing partner, have progressively standardised the delivery of IT services to the business. You will report directly to the Head of IT Security, assisting with developing the GRC Framework, to include; performing technical risk assessments, raising exceptions and defining remediation plans with risk owners and supporting audits of the IT function (both internal and external) AND supporting a governance framework to encompass the activities of the wider Group IT team.

This role will entail a heavy element of stakeholder management where collaboration skills are key as you’ll be working closely with the Group IT team, 2nd and 3rd line teams, and the outsourced IT Infrastructure partner.

Key Responsibilities:

  • Supporting IT audits conducted by the Internal Audit function, being the first point of contact for audit activities within the IT team.
  • Supporting external audits, client due diligence activities and regulatory requests.
  • Assisting with the implementation of a governance framework and communication plan to the Group IT team.
  • Supporting formal reporting of governance activities.


  • Conducting technical risk assessments and working with 2nd line teams to communicate the associated risk to the business.
  • Assisting the risk owner with assessing risks and documenting remediation plans.
  • Supporting the overall IT risk management framework.


  • Supporting control compliance activities, e.g. annual review of controls, including assessing the maturity score.
  • Supporting the control improvement programme to increase maturity and the overall security posture.

Key Requirements:

  • 5+ years of Information Security Governance, Risk and Compliance experience.
  • Knowledge of information security risk management frameworks and compliance practices.
  • Experience of working with Internal and External audit teams.
  • Exposure to and understanding of IT Infrastructure and Business Applications areas.
  • Experience of analysing and communicating critical incidents.
  • Proven ability in working across multi-disciplinary and multi-cultural, diverse environments.
  • Industry recognised technical certifications such as ITIL, CISSP or similar.

This is a newly formed opportunity working within a diverse, highly sought-after and successful organisation that offers excellent career progression, employee wellbeing and unrivalled company benefits.

For a full consultation please send your CV to Arc IT Recruitment.


Your IT Security point of contact is:

Rebecca Collings

Executive Consultant

IT Security

Job Ref: RC9311

IT Security

IT Security GRC Manager

Application Form

Max. file size: 8 MB.