Information Security GRC Officer Cardiff

Hays Specialist Recruitment

Information Security Officer – GRC Focused

Key Responsibilities

  • Develop IT risk frameworks and perform assessments.
  • Ensure regulatory compliance (e.g., GDPR, ISO 27001).
  • Maintain an Incident Response Plan and coordinate rapid incident resolution (e.g., cybersecurity breaches, data loss).
  • Establish a Vendor Risk Management program to assess third-party compliance.
  • Oversee security measures, incident responses, and network security enhancements, including Fortinet solutions.

Skills and Expertise

  • Experience in a similar role.
  • Strong knowledge of regulatory requirements (e.g., GDPR, ISO 27001, Data Protection Act 2018), including DPIAs.
  • Familiarity with frameworks such as Cyber Essentials or ISO 27005.
  • Proficiency with MS 365, Intune, VMWare, and Fortinet technologies.
  • Certifications such as CRISC, CISA, CISM, ISO 27001 Lead Auditor (beneficial, not essential).

Job Facilities/Benefits

  • 50,000 – 60,000 annual salary
  • Hybrid working (3 days on-site in Cardiff, flexible)
  • 28 days annual leave + bank holidays
  • Industry-leading training
  • Employee Assistance Program (24/7 confidential helpline)
  • High street retail discount scheme
  • Staff benefits, wellbeing, and recognition platform
  • Free on-site parking
  • Friendly and supportive work environment

To apply for this job please visit www.hays.co.uk.

Posting date:
17 December 2024
Salary:
£50,000.0 to £60,000.0 per year
Additional salary information:
Up to £60K + Benefits
Hours:
Full time
Closing date:
16 January 2025
Location:
Cardiff, Cardiff, CF20 1AL
Company:
Hays Specialist Recruitment
Job type:
Permanent
Job reference:
4641276_1734453625