Senior GRC Specialist

1 day, 5 hours ago
Full-time
Senior
Cybersecurity
The Mill Adventure

The Mill Adventure

The Mill Adventure is a leading provider of a comprehensive gaming platform in the iGaming industry. They offer licenses, operations, and support for quick and successful deployment, allowing partners to focus on engaging their audience. With a commitm...

Hotels, Restaurants & Leisure
11-50
Founded 2019

Description

  • Assess the current security and compliance environment, identify gaps, and design a clear, actionable GRC roadmap aligned with business goals.
  • Partner with product and engineering teams during design phases to enable secure, pragmatic solutions that support business velocity.
  • Own and manage ISO 27001:2022 certification efforts, including continuous improvement and evidence management.
  • Drive compliance initiatives for PCI DSS and prepare the organisation’s posture for NIS2 requirements.
  • Select and implement appropriate risk management frameworks, own the risk register, and lead periodic risk assessments.
  • Translate complex technical risks into clear business impacts and actionable mitigation strategies for stakeholders and leadership.
  • Design, write, and enforce information security policies and standards while soliciting feedback to ensure they are practical and business-enabling.
  • Lead internal and external security audits, assessments, and regulatory inquiries and act as the subject matter expert for compliance matters.
  • Own and evolve the security awareness program by creating engaging, context-aware training for engineers, product teams, and business operations.

Requirements

  • 5–8+ years of dedicated experience in Cyber GRC, Information Security, or Technology Risk.
  • Demonstrated hands-on experience implementing and managing ISO 27001:2022 (mandatory).
  • Deep knowledge of PCI DSS and familiarity with NIS2 requirements (highly desirable).
  • Experience in iGaming is a strong plus; proven experience in similarly regulated, fast-paced sectors (fintech, SaaS, payments) is an acceptable substitute.
  • Proven track record of building or significantly maturing GRC functions from the ground up with strategic and autonomous execution.
  • Commercial awareness and an 'enabler' mindset that balances security with business needs and velocity.
  • Strong analytical skills, risk assessment experience, and high-quality documentation capabilities.
  • Excellent stakeholder management and communication skills, with the ability to explain complex security concepts to engineers and executives.
  • Mature judgment, emotional intelligence, integrity, ownership, and a collaborative approach to working with technical teams.

Benefits

  • Flexible working environment (remote, office-based, or mixed models).
  • Work equipment of your choice.
  • Private health insurance.
  • Learning budget for professional development.
  • Fitness benefit.
  • Parking/transport allowance or co-working allowance.
  • Company-wide and team-based get-togethers.
  • Opportunity to work with a highly skilled, tight-knit team and a transparent, accountability-driven company culture.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Security Architect (Florida) - Southeast region

GuidePoint Security 251-1K Internet Software & Services

Security Architect at GuidePoint Security supporting Account Executives in the Southeast to drive new business by providing technical security guidance, vendor evaluations, and pre-sales solution design for cybersecurity engagements.

Cybersecurity
21 hours, 18 minutes ago

Office 365 Managed Services Consultant

Planet Technologies 251-1K Internet Software & Services

Planet Technologies is seeking an Office 365 Managed Services Consultant to support public sector clients remotely across the Eastern U.S. by managing and improving Microsoft 365 and security environments.

Power BI
3 days, 11 hours ago

Head Of Security

LinkedIn 10K-50K Internet Software & Services

The Head of Security at a family office will oversee the protection of principals, their residences, family members, and assets across local and international settings.

3 days, 11 hours ago

Consulting Architect - Security

Elastic 1K-5K Internet Software & Services

Elastic is seeking a Consulting Architect to lead strategic design and hands-on implementation of Elastic Stack and Search AI solutions for global enterprise customers.

AWS Azure Cybersecurity Docker GCP Go JavaScript Kubernetes Linux Machine Learning Python SIEM Splunk
3 days, 13 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers