Job Search and Career Advice Platform

Enable job alerts via email!

Senior GRC Consultant (UK) - Dionach by Nomios

Nomios group.

Glasgow

Hybrid

GBP 55,000 - 75,000

Full time

30+ days ago

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Job summary

A leading information security firm seeks a Senior GRC Consultant based in Glasgow, offering a hybrid work environment. The role involves conducting ISO 27001 audits and managing compliance projects. Ideal candidates will possess ISO 27001 Lead Auditor qualification and significant experience in information security management. This position provides opportunities for professional development in a supportive atmosphere focused on innovation and client security.

Benefits

Hybrid Working
Professional Growth opportunities
Private health insurance
Employee benefits and discount platform

Qualifications

  • Recognized ISO 27001 Lead Auditor qualification required.
  • Significant experience in auditing ISO 27001 compliance.
  • Strong knowledge of regulatory frameworks and excellent communication skills.

Responsibilities

  • Contributing to information security consultancy and strategy.
  • Conducting ISO 27001 audits and assessments.
  • Delivering GRC projects on time and managing compliance programmes.

Skills

ISO 27001 Lead Auditor qualification
Auditing ISO 27001 based Information Security Management Systems
Consulting and implementing Information Security Management Systems
Knowledge of regulatory frameworks such as GDPR
Verbal communication skills
Report writing skills
Project management experience
Outstanding interpersonal skills

Tools

GRC cloud-based systems
Job description
Senior GRC Consultant (UK) – Dionach by Nomios

3 days ago Be among the first 25 applicants.

Job Description

The role offers flexibility to work remotely, alongside office work and visits to client sites in Glasgow.

Why join Dionach by Nomios?

Since being acquired by Nomios in late 2024, Dionach by Nomios has continued its dynamic growth as a leading information security company. Specializing in penetration testing and information assurance services, we offer an incredible opportunity to be part of an experienced team, build your skills, and grow professionally.

Dionach by Nomios holds impressive certifications, including CREST, Cyber Scheme, CHECK, PCI QSA, SWIFT CSCF and ISO 27001. With our focus on enhancing customers' security and fostering team development, you are joining a company that prioritizes both your growth and the safety of our clients.

We're in an exciting phase of expansion and are looking for self‑motivated individuals ready to thrive in a fun, flexible environment. At Dionach by Nomios, your contributions will have a genuine impact on the business, and you'll find opportunities for both interesting work and career development.

Benefits
  • Hybrid Working: Flexibility to work remotely or use our UK offices around client visits.
  • Professional Growth: Access to training labs, certification sponsorship, and time for skill development.
  • Well‑being Focus: Private health insurance, eye care plan, income protection, EAP scheme, and well‑being platform.
  • Additional Perks: Employee benefits and discount platform.
Our Commitment to Diversity and Inclusion

At Dionach by Nomios, we believe that diversity fuels innovation. We're dedicated to creating an inclusive workplace where everyone feels valued and respected. We welcome applications from all backgrounds, perspectives, and experiences, and we're committed to being an equal opportunity employer. We do not discriminate based on race, religion, gender, age, disability, or any other legally protected status.

We encourage candidates from underrepresented groups to apply and are committed to providing a supportive and accessible environment for all our employees. If you require accommodations during the application process, let us know, and we'll work to meet your needs.

Job requirements

As a Senior GRC Consultant within our highly skilled Cyber Security Team you will be responsible for contributing to our information security consultancy, with opportunities to work on information security assessments within sizeable projects, conduct ISO 27001 audits, help implement aspects of ISO 27001, and engage in risk management. There is also potential for growth into such diverse fields as PCI DSS, privacy, and business continuity.

Essential experience and skills
  • Recognized ISO 27001 Lead Auditor qualification.
  • Significant experience in auditing ISO 27001 based Information Security Management Systems.
  • Significant experience in consulting and implementing Information Security Management Systems.
  • Strong knowledge of regulatory frameworks such as the GDPR.
  • Significant previous IT experience.
  • Ability to assess the impact of regulatory changes and advise clients on best practices.
  • Experience as the lead auditor or consultant and working in teams.
  • Outstanding verbal communication skills.
  • Excellent report writing skills with the ability to explain information security risks to non‑technical senior stakeholders.
  • Proven project management experience in executing GRC projects within complex organizations.
  • Ability to handle multiple projects and deadlines, ensuring timely delivery of compliance programmes.
Desirable qualifications and experience
  • Experience of AI governance and auditing or implementing an ISO 42001 AIMS.
  • Information security qualifications such as CISSP, CISA, or CISM.
  • Familiarity with GRC cloud‑based systems.
  • Experience of PCI DSS or a PCI QSA.
  • Experience auditing SWIFT CSCF.
  • Developing and providing training.
  • Writing policies and technical documents.
  • Managing a team or leading teams.

If you are keen to join a growing company and feel you will be a great candidate for this role, please do apply!

Seniority level: Mid‑Senior level. Employment type: Full‑time. Job function: Consulting, Information Technology and Sales. Industries: Computer and Network Security.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.