GRC Manager

3 hours, 3 minutes ago
Full-time
Senior
Cybersecurity
Gearset

Gearset

Gearset provides a comprehensive DevOps solution for Salesforce, enabling seamless deployment, continuous delivery, automated testing, and backup management to enhance the efficiency and reliability of Salesforce development processes.

Internet Software & Services
51-250
Founded 2015
$55M raised

Description

  • Own and maintain security and compliance documentation, including policies, procedures, and support materials.
  • Support commercial teams in complex information security and compliance negotiations and respond to requests within required timescales.
  • Maintain ISO 27001 compliance and certification through continuous improvement activities.
  • Prepare for and support internal and external audits.
  • Own the internal Data Protection compliance program across global regulations including UK GDPR, EU GDPR, and CCPA.
  • Manage the third-party supplier risk program.
  • Review and respond to complex customer security and compliance requests.
  • Identify common deal blockers and standardise documentation and processes to improve efficiency.
  • Support compliance projects related to new regulations or standards such as NIST and FedRAMP.

Requirements

  • Experience in an information security or GRC role within a technology company.
  • ISO 27001 Lead Implementer or Lead Auditor certification.
  • In-depth knowledge of ISO 27001 standards and proven experience implementing and maintaining certification.
  • Knowledge of general compliance requirements such as Modern Slavery, AML, and Bribery.
  • Track record of owning compliance with global data protection laws including GDPR and CCPA.
  • Understanding of AWS cloud infrastructure and application security.
  • Technical mindset with the ability to adapt in a fast-changing, high-growth environment.
  • Excellent communication skills, strong attention to detail, and a customer-focused approach.
  • Degree in Computer Science, Information Security, Cybersecurity, or a related field such as Data Protection, Information Governance, or Risk (preferred).
  • Recognised Information Security qualification such as CISSP or CompTIA Security+ (preferred).
  • Exposure to regulations or frameworks such as NIST, HIPAA, FedRAMP, or DORA (preferred).
  • Knowledge of DevOps and DevSecOps (preferred).

Benefits

  • Remote full-time role working Monday to Friday within the UK.
  • Long Term Incentive scheme.
  • Personal development budget of up to £1,500 per year for courses, conferences, or other professional development.
  • Top-end hardware provided.
  • Free lunch when in the office.
  • BUPA healthcare.
  • Life insurance and critical illness cover.
  • Discounted gym membership plus a range of health and wellness benefits.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

GRC Analyst

Protera 251-1K IT Services

Protera Technologies is hiring a remote GRC Analyst in India to lead client-facing vulnerability management, reporting, and compliance support across cloud and enterprise environments.

AWS Azure Burp Suite Cybersecurity Encryption GCP Perl Power BI Python SAP Tableau
32 minutes ago

Sr. Lead Incident Response / Supervisor Level 5

WaveStrong, 51-250 Internet Software & Services

Sr. Lead Incident Response / Supervisor Level 5 professional role focused on protecting enterprise systems, data, and networks by leading complex security initiatives and improving cyber defense operations.

32 minutes ago

SOC Analyst-L2

Protera 251-1K IT Services

Protera Technologies is hiring a SOC Analyst to support 24/7 cybersecurity operations for SAP-centric cloud environments through monitoring, incident response, automation, and compliance reporting.

Cybersecurity Elasticsearch HIPAA Splunk
32 minutes ago

IT Support Level 3

Freelance Latin America 1-10 Professional Services

Experienced IT Support Level 3 role at Freelance Latin America providing advanced escalation support for client IT environments spanning Microsoft 365, Windows Server, networking, and security operations.

Active Directory AWS Azure DHCP DNS macOS PowerShell Windows Server
1 hour, 48 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers