CrawlJobs Logo

Governance, Risk & Compliance Manager

jobs.360resourcing.co.uk Logo

360 Resourcing Solutions

Location Icon

Location:
United Kingdom , Manchester

Category Icon
Category:

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

This role leads the organization’s governance, risk, and resilience agenda, ensuring robust frameworks for compliance, risk management, and business continuity. It combines strategic oversight with hands-on delivery across three core areas: Risk Management, Business Continuity, and Corporate Secretariat Duties.

Job Responsibility:

  • Promote and embed risk management best practice across the organisation
  • Mature the enterprise risk programme, including emerging risk identification and development of risk profiles
  • Provide risk insights and recommendations to support strategic decision-making
  • Maintain and enhance risk data within the Governance, Risk & Compliance (GRC) platform
  • Oversee risk and governance registers at corporate and functional levels
  • Conduct policy reviews, manage approval workflows, and ensure timely publication
  • Develop and maintain compliance policies including conflicts of interest and anti‑bribery and corruption
  • Support development of compliance training aligned to regulatory requirements
  • Lead the enterprise business continuity programme
  • Work with business units and IT to develop and maintain recovery plans aligned to ISO standards
  • Conduct risk assessments and Business Impact Analyses (BIAs) to identify vulnerabilities and critical processes
  • Coordinate the testing of continuity and recovery plans and report outcomes to senior leadership
  • Collaborate with IT compliance to ensure disaster recovery solutions align with enterprise continuity objectives
  • Manage and coordinate the governance calendar and deadlines
  • Provide expert guidance on governance frameworks, compliance obligations, and best practice
  • Produce high‑quality governance materials, including agendas, board packs, minutes, and action logs
  • Ensure timely statutory and regulatory filings, including modern slavery statements
  • Support governance reporting, including the annual integrity statement
  • Work with the standards and assurance team for administrative support
  • Follow all internal policies, procedures, and regulatory requirements
  • Maintain departmental processes, procedures, and standards
  • Complete mandatory training and support staff inductions where required
  • Protect personal data and comply with information security procedures
  • Ensure adherence to compliance areas including ISO, PCI DSS, GDPR, Human Rights, Health and Safety, and Anti‑Bribery and Corruption
  • Support Environmental, Social and Governance (ESG) principles including sustainability, resource efficiency, and inclusion

Requirements:

  • Demonstrated experience in risk management, governance frameworks, and compliance processes
  • Familiarity with assurance, audit standards, and regulatory best practice
  • Proven experience in disaster recovery and business continuity in complex, multi‑entity environments
  • Exceptional written and verbal communication skills
  • Strong organisational and time‑management abilities with experience managing multiple priorities
  • Skilled in stakeholder engagement and workshop facilitation
  • Proficient in Microsoft Office
  • Ability to work independently and collaboratively across diverse teams and locations
  • Willingness to travel within the UK
What we offer:
  • Refer a friend for £1000 bonus which is unlimited
  • Generous holiday entitlement
  • Day off for your birthday
  • Staff Awards
  • Hotel and airline discounts
  • Employee Assistance Programme

Additional Information:

Job Posted:
January 21, 2026

Work Type:
On-site work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Governance, Risk & Compliance Manager

Risk Manager, Model Validation & Governance

Solaris is a tech company with a full German banking license. Our Banking-as-a-S...
Location
Location
Germany , Berlin
Salary
Salary:
Not provided
solarisbank.com Logo
Solarisbank
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • More than 3 years of relevant work experience in Risk Management within a banking/financial institution
  • Solid economic, business, accounting, mathematical, or statistical knowledge
  • Good understanding of regulatory validation requirements, banking law, and regulatory standards
  • Uncompromising integrity and a strong ethical compass
  • Analytical with exceptional attention to detail
  • Ability and willingness to defend your position and analytical findings against resistance
  • Strong communication and presentation skills, capable of explaining complex topics to diverse audiences
  • Proven ability to manage relationships with various stakeholders, including senior management and regulators
  • Good written and spoken English proficiency is required, proficiency in German is desirable
Job Responsibility
Job Responsibility
  • Manage and carry out all independent model validation activities in line with regulations (MaRisk, CRR, KWG)
  • Collaborate with the senior manager and act as a Subject Matter Expert (SME) for regulatory requirements, liaising with model developers, auditors, and regulators
  • Develop and maintain the overall model validation framework in line with our risk strategy and risk management requirements
  • Validate methodologies used for credit risk application, behavioral models, ICAAP, and ILAAP, including proposals for measures to deal with known limitations and restrictions of the measures and procedures
  • Governance and monitoring of overall model performance
  • Prepare comprehensive model risk reports and present them to senior leadership and key stakeholders upon request
  • Support the senior manager to coordinate and participate in meetings with internal/external auditors, regulators, and other third-party stakeholders upon request
What we offer
What we offer
  • Home office budget
  • Learning & development budget of €1000 per year and a transparent growth framework to support your career goals
  • Competitive salary and a variable remuneration program
  • Monthly meal allowance
  • Deutschland ticket subsidy
  • 28 vacation days, increasing by 2 days after 2 years and 3 days after 3 years with Solaris
  • Opportunity to work abroad for up to 12 weeks per year
Read More
Arrow Right

Technology Risk Governance Manager

Help us deliver a better tomorrow. Australia Post is delivering for all Australi...
Location
Location
Australia , Richmond
Salary
Salary:
Not provided
auspost.com.au Logo
Australia Post
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Strong background in Technology Risk and IT Governance within large, complex organisations
  • Proven experience in risk management supporting technology or digital functions
  • Expertise in technology, digital and information governance, security risk, and operational frameworks such as ISO27001/2, ITIL, E8, NIST, and COBIT
  • Familiarity with APRA CPS 230/234, ISO 31000, or similar standards
  • Ability to translate and present complex technical and operational information into simple business language to engage business stakeholders
  • Demonstrated ability to influence, challenge, and engage senior business and technology leaders
  • Maintaining strong objective relationships beyond span of control
  • Excellent analytical, problem-solving, and communication skills
Job Responsibility
Job Responsibility
  • Support the proactive identification, assessment, and facilitate mitigation of technology risks across operational environments and transformation programs
  • Plan and execute regular and ad-hoc reviews into areas of significant technology risks to the organisation, including deep dives, and facilitating commercial solutions for any issues that may arise
  • Partner with delivery teams, architects, and operational leaders to integrate risk management into business-as-usual processes and project lifecycles
  • Maintain a current risk register reflecting emerging threats, system dependencies, and control effectiveness
  • Facilitate regular risk and control assessments and timely remediation of identified gaps
  • Support the Technology & Cyber Controls Assurance function in undertaking reviews against the minimum policy, standard and control requirements
  • Undertake targeted reviews of the effectiveness of key Technology controls and provide reporting & insights
  • Develop and implement risk management processes, libraries and documentation that will help improve transparency and management of enterprise and business unit technology risks and associated compliance and operational requirements
  • Provide risk advisory support for technology operations and systems within transformation projects
  • Review and challenge technology designs, change management processes, and vendor engagements from a risk perspective
What we offer
What we offer
  • Career Development: opportunities for professional growth and development
  • Work-Life Balance: flexible working arrangements
  • Employee Wellbeing: resources and support to ensure a healthy and safe work environment
  • Fulltime
Read More
Arrow Right

Senior Governance, Risk and Compliance Analyst - Governance

Come join the company that is reinventing cloud security and empowering business...
Location
Location
Netherlands
Salary
Salary:
Not provided
wiz.io Logo
Wiz
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years of experience in one or more of the Governance, Risk, and Compliance domains
  • Passion for security and keeping Wiz safe
  • Ability to collaborate with technical and non-technical teams alike to further oversight responsibilities of Security
  • Deep knowledge of one or more industry frameworks such as ISO 27001, ISO 27017, SOC 2, PCI DSS, NIST CSF, etc. and baseline knowledge of others
  • Ability to assist with security compliance assessments to ensure compliance with internal and external requirements (ISO, NIST, CIS, etc.)
  • Experience working in a fast-paced tech environment both independently, and collaboratively within a team environment
  • Ability to build strong relationships across teams and functions in a global workplace
  • Applicants must have the legal right to work in the country where the position is based, without the need for visa sponsorship
Job Responsibility
Job Responsibility
  • Design and update policies, procedures, and controls to drive confidentiality, integrity, and availability across the Wiz environment
  • Continuously improve processes, tools, and procedures for audit and compliance management
  • Collaborate and work cross-functionally across the company to address governance and compliance needs and to support the Wiz Control Framework, partnering with Engineering, Product, Sales, Legal, HR, and other teams
  • Proactively improvement control design and performance to address a changing risk landscape
  • Deliver timely audits through working with internal and external auditors
  • Help customer-facing teams respond to information security requirements and questionnaires
  • Assist with third party risk management reviews, assessing vendor’s security, compliance, and privacy posture
  • Participate in team project management, including documentation, project planning, task management, and prioritization
  • Participate in recurring annual core audits (e.g., SOC 2, ISO, PCI)
  • Maintain awareness of security and regulatory trends, perform research and analysis on new certifications, and help Wiz pursue new international compliance initiatives
Read More
Arrow Right

Security Governance Risk & Compliance (GRC) Analyst

Here at Virtru you’ll help build a cutting edge security compliance program alig...
Location
Location
United States , Washington, DC
Salary
Salary:
130000.00 - 180000.00 USD / Year
virtru.com Logo
Virtru
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Minimum of 5+ years of information security, IT audit and/or IT Risk Management, or GRC Analyst/Engineer experience
  • Deep understanding of at least few of the following: CMMC, NIST 800-53 & 800-171, FedRAMP, SOC 2, PCI, and/or other global privacy compliance frameworks
  • Technical acumen. Strong understanding of modern cloud technologies (AWS, GCP, Azure, etc.) and familiarity with GRC tools (Hyperproof, Vanta, Drata, etc) and SIEM tools (Datadog, Splunk)
  • You’re a relationship builder and have worked with both business and technical risk and understand how to translate risk to various levels of the organization
  • Have experience training and coaching teams to become better security and privacy practitioners
  • Like working on an autonomous agile team
  • Ability to resolve conflicts and drive issues to completion
  • Work independently with little or no supervision while maintaining a high level of efficiency
  • Hands on experience deploying and managing vulnerability scanning/cloud security posture management tools (Wiz, Prismacloud, etc.) to meet security compliance requirements
  • Real-world IR experience participating on security On-Call teams
Job Responsibility
Job Responsibility
  • Manage and implement complex controls frameworks for large systems, consisting of Cloud infrastructure and Software as a Service (SaaS) services (GCP, AWS, GitHub, Okta, etc)
  • Design and develop automation solutions for evidence collection across Cloud infrastructure, endpoints, and SaaS services
  • Conduct risk assessments across business units and processes. Identify risk findings and recommend remediation and risk mitigation strategies
  • Assist or implement automated controls to support risk mitigation efforts across various business units with stakeholders
  • Incorporate CMMC certification into Virtru’s slate of compliance assessments and ongoing monitoring activities (FedRAMP, SOC 2, PCI)
  • Facilitate the third-party vendor on-boarding and annual review process by evaluating the security of current and prospective partners
  • Participate in incident response (IR) activities, providing risk analysis and remediation support as needed
  • Enhance the team with your individualism, spirit, and love of learning
What we offer
What we offer
  • A Flexible PTO policy
  • A $1,500 annual Learning & Development Stipend
  • Frequent company-sponsored team celebrations
  • Access to an Employee Assistance Program
  • Access to Headspace, a mental health app
  • A flat 3% contribution to your retirement account
  • A high degree of flexibility
  • Competitive compensation
  • Generous parental, medical, and bereavement policies
  • 401K contribution and stock options
  • Fulltime
Read More
Arrow Right

Director - Governance, Risk and Compliance

We are a fast-growing fintech company seeking a proactive and highly organized G...
Location
Location
United States , New York
Salary
Salary:
175000.00 - 200000.00 USD / Year
clearstreet.io Logo
Clear Street
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 7+ years of experience in GRC, security compliance, risk management, or related functions
  • Strong understanding of common security frameworks (SOC 2, ISO 27001, NIST CSF, PCI-DSS)
  • Experience managing audits end-to-end
  • Demonstrated ability to build and maintain governance processes and cross-functional compliance programs
  • Excellent documentation, communication, and stakeholder-management skills
  • Experience in technology, fintech, financial services, or other highly regulated industries
Job Responsibility
Job Responsibility
  • Develop, maintain, and manage the company’s security and compliance policy framework
  • Ensure policies are current, properly communicated, approved, and effectively implemented across the organization
  • Oversee periodic reviews of all internal policies
  • Educate teams on policy requirements and drive adherence
  • Build, implement, and continuously refine the company’s cyber security risk management framework
  • Lead risk identification, assessment, scoring, and periodic re-evaluations
  • Maintain the corporate risk register
  • Manage all internal and external audits including SOC 2, ISO 27001, regulatory exams, and customer due-diligence requests
  • Coordinate and prepare audit evidence
  • Serve as the primary liaison with external auditors, security assessors, and regulatory bodies
What we offer
What we offer
  • Competitive compensation packages
  • Company equity
  • 401k matching
  • Gender-neutral parental leave
  • Full medical, dental and vision insurance
  • Lunch stipends
  • Fully stocked kitchens
  • Happy hours
  • Fulltime
Read More
Arrow Right

Governance and Conduct Risk Manager

The Governance and Conduct Risk Manager will be responsible for developing, impl...
Location
Location
United Arab Emirates , Dubai
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in Finance, Business Administration, Law, Economics, or a related field
  • Master's degree or relevant professional certifications (e.g., FRM, PRM, CAMS, ICA qualifications) are a plus
  • Understanding of banking regulations, corporate governance principles, and conduct risk expectations
  • Excellent analytical and problem-solving abilities
  • Exceptional verbal and written communication skills
  • Strong ability to build relationships and collaborate effectively across all levels of the organization
  • Ability to think strategically and translate regulatory requirements into practical business solutions
  • Proven ability to manage multiple projects simultaneously
  • Unquestionable integrity and ethical standards
  • Proficient in Microsoft Office Suite
Job Responsibility
Job Responsibility
  • Design, develop, and implement the bank's governance and conduct risk framework
  • Ensure framework integrates with enterprise risk management framework
  • Develop and maintain robust control environment for governance and conduct risks
  • Conduct regular risk assessments
  • Analyze emerging regulatory requirements and industry trends
  • Facilitate workshops with business units
  • Establish and monitor key risk indicators and key performance indicators
  • Develop comprehensive reports for senior management and Board of Directors
  • Oversee tracking and resolution of governance and conduct risk issues
  • Provide expert advice to business units on governance and conduct risk matters
  • Fulltime
Read More
Arrow Right

Sr. Director, Cybersecurity Governance, Risk & Compliance

The Sr. Director of Cybersecurity Governance, Risk Management, and Compliance (G...
Location
Location
United States
Salary
Salary:
173500.00 - 419500.00 USD / Year
https://www.hpe.com/ Logo
Hewlett Packard Enterprise
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree or higher in Information Technology, Cybersecurity, Computer Science, or a related field
  • Minimum of 10 years of experience in cybersecurity and/or IT Risk, with at least 5 years focus on GRC
  • Proven track record in a senior leadership role within a large organization
  • Experience in developing and implementing cybersecurity strategies
  • Strong knowledge of relevant regulations and standards, such as GDPR, NIST CSF, and ISO 27001
  • Exceptional leadership and management skills
  • Strong analytical and problem-solving abilities
  • Excellent communication and interpersonal skills
  • Ability to work collaboratively across departments and build consensus
  • Proficient in cybersecurity technologies and tools.
Job Responsibility
Job Responsibility
  • Define and execute a comprehensive cybersecurity GRC strategy that aligns with business objectives and legal/regulatory requirements
  • Partner with cross-functional teams, including Legal, IT, Audit, and Business Units, to integrate security and compliance requirements into business processes
  • Recruit, mentor, and develop a high-performing team of GRC professionals
  • Develop and maintain the cybersecurity governance framework, ensuring it aligns with the organization's overall business objectives
  • Create policies, procedures, and guidelines that support the cybersecurity strategy
  • Ensure compliance with industry standards, regulations, and best practices
  • Identify, assess, and prioritize cybersecurity risks facing the organization
  • Develop risk mitigation strategies and allocate resources to address key risk areas
  • Collaborate with other departments to integrate risk management practices across the organization
  • Monitor and report on the effectiveness of risk management strategies
What we offer
What we offer
  • Comprehensive suite of benefits supporting physical, financial, and emotional wellbeing
  • Career development programs to help achieve career goals
  • Inclusive work environment valuing diverse backgrounds.
  • Fulltime
Read More
Arrow Right

Third Party Compliance Risk Management Senior Analyst

Serves as a Third Party Compliance Risk Management Senior Analyst for Independen...
Location
Location
United Kingdom , Belfast
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Knowledge of Compliance laws, rules, regulations, risks and typologies
  • Excellent written and verbal communication skills
  • Must be a self-starter, flexible, innovative and adaptive
  • Strong interpersonal skills with the ability to work collaboratively and with people at all levels of the organization
  • Work collaboratively with regional and global partners in other functional units
  • ability to navigate a complex organization
  • Excellent project management and organizational skills and capability to handle multiple projects at one time
  • Proficient in MS Office applications (Excel, Word, PowerPoint)
  • Knowledge in area of focus
  • Bachelor's degree
Job Responsibility
Job Responsibility
  • Assessment of Third Party Compliance (ATPC) tool & process owner & subject matter experts (for new relationships & annual assessments)
  • Ongoing buildout of Third Party Compliance Risk Program including strategy, design and ongoing governance for current and post-target state. Includes appropriate tagging and control coverage in MCA
  • Provide guidance and documentation for expectations of PFICRM including tools to support credible challenge requirements
  • Reporting/metrics build out, including identification of areas of high compliance risk and/or weaknesses of quality execution of the ATPC
  • Engage with Compliance Programs for consistency with ATPC future state design under Consent Order
  • Participating in the design, development, delivery and maintenance of best-in-class Compliance, programs, policies and practices for ICRM
  • Analyzing comparative data and preparing regional and global reports related to compliance risk assessments, and monitoring of compliance related issues
  • Reviewing materials to ensure compliance with various regulatory and legal requirements. Identifying and addressing potential risks
  • Investigating and assisting in responses to compliance risk issues. Investigating regulatory inquiries, preparing required documentation, making recommendations to senior management on how to proceed, and preparing responses for the regulatory inquiries
  • Monitoring adherence to Citi’s Compliance Risk Policies and relevant procedures
What we offer
What we offer
  • Generous holiday allowance starting at 27 days plus bank holidays
  • increasing with tenure
  • A discretional annual performance related bonus
  • Private medical insurance packages to suit your personal circumstances
  • Employee Assistance Program
  • Pension Plan
  • Paid Parental Leave
  • Special discounts for employees, family, and friends
  • Access to an array of learning and development resources
  • Fulltime
Read More
Arrow Right