CrawlJobs Logo

Governance Risk and Compliance Lead

United Kingdom, London Employment contract 95000.00 GBP / Year · Job Posted June 10, 2026
Apply Position
Job Link Share

Requirements

  • Strong GRC background
  • Governance, Risk and Compliance background
  • Experience in conducting risk assessments
  • PCI DSS, ISO 27001, NIS 2 and the UK telecom Security Act
  • Good understanding of Telecom security threats
  • Excellent communication skills

What we offer

bonus

Looking for more opportunities?

Search for other job offers that match your skills and interests.

Similar Jobs for

Governance Risk and Compliance Lead

8 matching positions

Governance Risk and Compliance Risk Register Analyst

You will design and operationalise the governance layer around an enterprise ris...
Location
Location
United States , Remote
Salary
Salary:
70.00 - 80.00 USD / Hour
signifytechnology.com Logo
Signify Technology
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 8+ years designing enterprise risk registers and the frameworks around them
  • 8+ years building risk scoring and prioritisation models — likelihood and impact scales, scoring methodology, prioritisation logic
  • 8+ years designing and running governance processes and workflows
  • 8+ years leading stakeholder engagement and enablement across security, technology, and business
  • Demonstrated track record producing audit-ready documentation and handing over to internal teams
Job Responsibility
Job Responsibility
  • Define the end-to-end governance flow — how risks get raised, reviewed, accepted, mitigated, transferred, and reassessed over time
  • Set the accountability structure — who owns risks, who reviews them, which governance bodies hold which decisions
  • Build the escalation and reporting paths for high-risk and formally accepted items
  • Partner with stakeholders across business, technology, security, and governance functions to validate the framework in practice
  • Run working sessions to walk stakeholders through the register and the governance model
  • Help load the initial set of risks into the register
  • Produce audit-ready documentation covering register structure, scoring methodology, governance workflows, and decision rights
  • Run a structured knowledge transfer to the internal security team so the programme continues after the contract ends
  • Fulltime
Read More
Arrow Right

Lead Analyst, Business Continuity & Disaster Recovery (Governance, Risk and Compliance)

Own and drive Burlington’s enterprise Business Continuity and Disaster Recovery ...
Location
Location
United States , Edgewater Park
Salary
Salary:
95000.00 - 150000.00 USD / Year
Burlington
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in Computer Science, Information Technology, or related field
  • 7+ years of experience in Business Continuity and Disaster Recovery (BCDR)
  • Experience supporting or governing an enterprise-scale BCDR program
  • Strong experience with BIA, RTO/RPO definition, and application tiering
  • Experience leading disaster recovery testing (tabletop and failover)
  • Experience working across business, infrastructure, and application teams
  • Experience in hybrid (on-prem and cloud) environments
  • Experience with BCDR/GRC tools (e.g., SharePoint, Power Automate, ServiceNow, Archer)
  • Experience developing executive-level reporting and communicating risk and resilience topics to leadership
Job Responsibility
Job Responsibility
  • Lead enterprise-wide BIA to identify and prioritize critical business processes
  • Define recovery priorities and RTO/RPO targets based on operational and financial impact
  • Maintain enterprise application inventory and ensure alignment with BCDR scope
  • Define and enforce application tiering, including required RTO, RPO, and testing expectations
  • Assess and tier new applications as part of onboarding and change processes
  • Define and enforce BCDR standards, templates, and requirements for Business Continuity Plans (BCPs) and Disaster Recovery Plans (DRPs)
  • Guide business and IT teams in developing and maintaining their plans
  • Review plans for completeness, accuracy, and executability
  • Provide input on disaster recovery design (e.g., failover approaches, redundancy, dependencies) to ensure alignment with recovery requirements
  • Validate through testing that recovery capabilities meet defined RTO/RPO targets
What we offer
What we offer
  • Competitive wages
  • Flexible hours
  • Associate discount
  • Medical, dental and vision coverage including life and disability insurance
  • Paid time off
  • Paid holidays
  • 401(k) plan
  • Training and development opportunities
  • Fulltime
Read More
Arrow Right

Risk And Controls Oversight Senior Lead - Retail And Wealth Risk

As a Risk & Controls Oversight Lead - Retail & Wealth Risk, you’ll be responsibl...
Location
Location
United Kingdom , London; Northampton
Salary
Salary:
Not provided
barclays.co.uk Logo
Barclays
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Good understanding of Retail Banking Customer Journeys to identify and manage associated risks and controls
  • Ability to balance risk management with business goals when defining Risk Appetite, and effectively influencing or negotiating with stakeholders on risk acceptance
  • Be able to conduct active deep dives and Risk assessments for active Risk management
  • Well-versed in market trends, competitor activities, and the broader risk environment, with the ability to use this knowledge to enhance internal controls
  • Having gravitas and experience in influencing senior stakeholders including Managing Director level
  • Ability to design and implement the Risk strategy in line with the Overall Vision of BUK Customer and Digital function
  • Deep understanding of market trends, competitor activities, and the broader risk environment, using this knowledge to drive continuous improvements in internal controls
  • Subject Matter Expertise and experience of delivering transformation and change in Risk management
Job Responsibility
Job Responsibility
  • Overseeing risk and control across Retail customers being referred for Investment and Wealth products
  • ensuring that key risks are effectively identified, understood, and managed
  • maintaining a great focus on customer outcomes
  • helping to prevent issues such as mis-selling, poor advice, unresolved complaints, and inconsistent delivery of Consumer Duty expectations
  • assessing risks linked to product suitability and proposition design
  • ensuring products are appropriate for their target audience and deliver fair value
  • supporting the management of advice boundary and referral risks
  • ensuring clear and effective controls are in place across Barclays UK (BUK) – Prive Bank and Wealth Management (PBWM) interactions and that the distinction between guidance and advice is maintained
  • oversight of sales and distribution practices
  • monitoring risks related to incentivisation and ensuring consistency across digital, telephony, and branch channels
What we offer
What we offer
  • Hybrid working
  • flexible working arrangements
  • inclusion and opportunities
  • Wellness suite including gym and exercise studios
  • personal training sessions and massage therapy
  • cycle hire and parking areas
  • showering and changing facilities
  • CoSpace drop-in co-working space
  • Fulltime
Read More
Arrow Right

Risk and Controls Oversight Senior Lead - Third party and LRR Risk

Location
Location
United Kingdom , London; Northampton
Salary
Salary:
Not provided
barclays.co.uk Logo
Barclays
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Good understanding of Retail Banking Customer Journeys to identify and manage associated risks and controls
  • Proven experience in data analytics, data science, and driving automation and digitization within Risk Management processes
  • End-to-end third-party lifecycle risk management: onboarding, due diligence, ongoing monitoring, exit
  • Supplier dependency & concentration risk management (critical vendors, single points of failure)
  • Outsourcing / material service provider risk management and compliance with regulatory expectations
  • Fourth-party risk visibility (sub-contracting chains, hidden exposures)
  • Third-party performance & control assurance (SLAs, control attestations, audits)
  • Alignment of controls to LRR obligations and regulatory standards, ensuring correct applicability across journeys in Customer & Digital
  • Understanding of new LRRs impacting the business, with ability to work closely with Regulatory Engagement teams to ensure compliance
  • Ability to balance risk management with business goals when defining Risk Appetite, and effectively influencing or negotiating with stakeholders on risk acceptance
Job Responsibility
Job Responsibility
  • Develop and assess risk appetite, lead conversations on risk acceptance, ensure controls are designed and assessed properly, resolving any gaps and improving the control environment
  • Ensure ongoing monitoring of controls to keep the business audit ready, embed active risk management culture, assessing new business activities and leveraging tools KRIs and risk dashboards
  • Stay on top of market trends and emerging risks, driving continuous education based on internal and external themes and lessons learnt
  • Ensure compliance with relevant laws and regulations, preparing and enhancing governance papers and reports
  • Identify opportunities for data led controls monitoring and automation of controls
  • Ensure compliance with RCSA, Issue management and Risk events management process in line with Operational Risk framework
  • Fulltime
Read More
Arrow Right

Data Security Governance and Compliance Lead

Barclays is seeking a Data Security Governance & Compliance Lead to provide lead...
Location
Location
United Kingdom , Knutsford
Salary
Salary:
Not provided
barclays.co.uk Logo
Barclays
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Data Security Governance & Policy Leadership -Proven ability to define, own, and enforce enterprise‑wide data security policies, standards, and governance frameworks in a regulated environment, covering areas such as data classification, DLP, encryption, and access controls.
  • Regulatory & Risk Management Expertise- Deep understanding of data protection and security regulations (e.g. GDPR, banking regulatory standards) and the ability to demonstrate compliance through robust governance, metrics, and audit or regulator engagement.
  • Senior Stakeholder Influence & Leadership - Strong capability to influence senior executives and cross‑functional leaders (CISO, CDO, CTO, Privacy, Operations) and lead teams within a global, matrixed organisation, without relying solely on direct authority.
Job Responsibility
Job Responsibility
  • Collaboration with stakeholders to understand their security requirements in business processes and IT projects, to enhance overall risk management.
  • Execution of risk assessments to identify and prioritise potential cybersecurity threats that could impact the banks operations and data and guide the implementation of mitigation strategies and communicate findings to relevant findings to relevant senior stakeholders.
  • Collaboration with business units to develop and implement security policies and procedures for the banks operations aligned to the risk management framework.
  • Management of the implementation, testing and monitoring of security controls across the banks IT systems to ensure the effectiveness of controls and mitigation of risk.
  • Execution of training content and sessions to educate employees, enhance cybersecurity awareness and provide guidance on safe online practices.
  • Management of complex cybersecurity incidents by collaborating with IT teams and response experts to effectively resolve cases through analysis, expertise support and project supervision.
  • Identification of emerging cybersecurity trends, threats, and new technologies to address potential risks by advocating the adoption of new security solutions.
What we offer
What we offer
  • Competitive holiday allowance
  • Life assurance
  • Private medical care
  • Pension contribution
  • Fulltime
Read More
Arrow Right

Risk and Compliance Lead - VOIS

We are seeking a Risk and Compliance professional to strengthen the second line ...
Location
Location
India , Ahmedabad
Salary
Salary:
Not provided
vodafone.com Logo
Vodafone
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Experienced in risk management, compliance, or internal audit within large organisations or professional services environments
  • Knowledgeable in SOX, process controls, and compliance frameworks, ideally within telecoms, IT, or complex global environments
  • Comfortable working with multiple stakeholders across functions and geographies, building trusted and effective relationships
  • Analytical and detail‑focused, with the ability to identify control gaps and propose pragmatic mitigation actions
  • Confident in written and spoken English, with the ability to communicate clearly and constructively
Job Responsibility
Job Responsibility
  • Operate and continuously enhance the compliance framework across OneSCM and VPC, aligned to Vodafone’s three lines of defence model
  • Lead policy governance across Supply Chain Management, including lifecycle management, control testing of high‑risk policies, and ongoing monitoring
  • Develop and maintain the OneSCM process risk and control framework in collaboration with global process owners
  • Perform regular control testing, including SOX controls, and identify opportunities for improvement, automation, and digital enablement
  • Coordinate internal and external audit activities, track audit actions, and drive timely remediation in partnership with relevant stakeholders
  • Support supplier risk assessment processes in collaboration with Vodafone Group functions and local markets
  • Promote awareness and adoption of the Doing What’s Right (DWR) programme through training and communication initiatives
  • Drive continuous improvement and transformation of risk and compliance practices across locations
  • Fulltime
Read More
Arrow Right

General Counsel Risk and Compliance Lead

The General Counsel serves as the chief legal advisor to the organisation, overs...
Location
Location
United Kingdom , Caerphilly
Salary
Salary:
Not provided
phs.co.uk Logo
PHSGroup
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Qualified solicitor with a current practicing certificate
  • Extensive experience in corporate legal practice, risk, and compliance
  • Minimum 10 years’ experience in corporate legal practice, including leadership roles
  • Proven experience in risk management and regulatory compliance
  • Strong understanding of corporate governance frameworks
  • Understanding of trustee duties and pension regulatory frameworks
  • Experience of managing a small team of professional colleagues
  • Experience of managing Corporate Insurance policies and their renewals (desirable)
  • Prior experience or training in pension scheme governance (desirable)
Job Responsibility
Job Responsibility
  • Provide expert legal advice to the executive team and board on corporate, commercial, and regulatory matters
  • Draft, review, and negotiate contracts, agreements, and legal documents
  • Represent the company in legal proceedings and manage external counsel relationships
  • Lead the legal department, setting objectives and managing performance
  • Develop and implement a comprehensive enterprise risk management framework
  • Identify, assess, and mitigate legal and operational risks across the business
  • Advise on strategic decisions with potential legal or reputational impact
  • Monitor external factors (e.g. regulatory changes, litigation trends) that may affect risk exposure
  • Ensure compliance with all applicable laws, regulations, and internal policies
  • Oversee regulatory reporting and audit readiness
What we offer
What we offer
  • Company car or car allowance
  • Great opportunities to develop your career
  • 23 days holiday, increasing with length of service, plus bank holidays (31 days in total)
  • Buy / Sell holiday scheme
  • Amazing employee discounts with major supermarkets and retailers with phsPerks.com
  • Free Parking onsite so no parking costs
  • Community day off to work for a local community or charity
  • Access to Virtual GP for you and your family
  • Improved parental and paternity leave
  • A 24-hour wellbeing helpline
  • Fulltime
Read More
Arrow Right

Senior Governance, Risk & Compliance Lead

OnePlan is looking for a Senior Governance, Risk & Compliance Lead to own and op...
Location
Location
United States
Salary
Salary:
Not provided
oneplan.ai Logo
OnePlan Solutions
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 6+ years of experience in governance, risk and compliance, information security, or security compliance roles
  • Direct experience managing SOC 2 Type II and ISO 27001 audits and maintaining ongoing compliance programs
  • Strong understanding of NIST 800-53 and FedRAMP security requirements
  • Experience using compliance automation platforms such as Vanta or similar tools
  • Experience working in a cloud native SaaS environment, ideally within Azure
  • Strong documentation, audit management, and cross functional coordination skills
  • Ability to translate security and compliance requirements into practical operational processes
  • Experience leading or supporting FedRAMP readiness or authorization programs
Job Responsibility
Job Responsibility
  • Own and manage OnePlan’s governance, risk, and compliance program across security and privacy frameworks
  • Maintain the company’s compliance certifications including SOC 2 Type II, ISO 27001, and ISO 27701, ensuring ongoing audit readiness and successful surveillance audits and recertifications
  • Coordinate with external auditors and manage evidence collection, control validation, and supporting documentation
  • Maintain and update security policies, procedures, and internal documentation supporting compliance frameworks
  • Maintain the company risk register and drive risk identification, assessment, and remediation activities across the organization
  • Partner closely with Engineering and IT teams to implement and document security controls across the platform
  • Lead OnePlan’s FedRAMP Moderate readiness initiative, including NIST 800-53 gap assessments and remediation planning
  • Develop and maintain the System Security Plan (SSP) and associated FedRAMP documentation
  • Prepare the organization for 3PAO assessment and establish processes for ongoing continuous monitoring
  • Manage vendor risk assessments and third party security reviews
What we offer
What we offer
  • We offer comprehensive health, dental, and vision benefits, with additional insurance options
  • Employer RRSP and 401K matching programs
  • A fun, collaborative, and diverse environment with regular health and team challenges to keep things light and enjoyable
  • Fulltime
Read More
Arrow Right