All Jobs Vacancy

Cyber GRC Controls SME

Posted 1 day ago by Hays

My client is an instantly recognisable organisation seeking a Cyber GRC Controls SME to support a strategic cyber security controls and governance initiative.

This role requires expertise in enterprise cyber control framework design, control libraries, control taxonomy, control measurement, and framework mapping. You'll be responsible for assessing and enhancing security controls, supporting governance activities, and ensuring alignment to industry best practice.

Key Requirements

  • Strong background in cyber security, governance, risk and controls
  • Experience designing and enhancing enterprise security control frameworks
  • Proven experience developing and maintaining control libraries
  • Strong understanding of control taxonomy, control objectives and control effectiveness measures
  • Experience mapping controls to NIST CSF 2.0
  • Knowledge of NIST 800-53 and/or ISF Standards of Good Practice
  • Experience supporting audits, assurance reviews and regulatory requirements
  • Ability to identify control gaps, assess effectiveness and drive improvements
  • Excellent stakeholder management and communication skills

Nice to Have

  • CISSP, CISM or CRISC certification
  • Experience within large enterprise or regulated environments
  • Insurance sector experience
  • Immediate availability
Rate:
Not specified
Location:
London
IR35 Status:
Inside
Remote Status:
Hybrid
Industry:
Cybersecurity
Seniority Level:
Not Specified

Take-Home Pay

Not Available

Visit calculators for additional details

Create a free account to view the take-home pay for this contract

Share job