Contract Security Architect/Consultant (GRC)

Contract Security Architect/Consultant (GRC)

Posted 1 week ago by Exact IT Resources Ltd

Negotiable
Inside
Remote
Home Working United Kingdom

Summary: We are seeking a Contract Security Architect/Consultant (GRC) for an initial 3-month contract focused on developing and writing security policies, standards, and playbooks. The role involves collaboration with various teams and third-party suppliers to ensure compliance with industry best practices and regulatory requirements. This position is classified as inside IR35 and allows for home working.

Key Responsibilities:

  • Develop and write policies, standards, and playbooks for IT Security Service function.
  • Manage and mitigate risk exposure in line with Group policies and procedures.
  • Ensure security policies are embedded into every project.
  • Collaborate with teams and third-party suppliers to adhere to industry best practices.

Key Skills:

  • 5+ years of security architecture experience.
  • Relevant security certifications such as CISSP, CISM, or CISA.
  • Experience developing robust policies and standards in an enterprise environment.
  • Familiarity with security frameworks (NIST, ISO27001, COBIT).
  • Understanding of security tools like Firewalls and intrusion detection systems.
  • Experience in enterprise architecture frameworks.
  • Knowledge of NIS 2 Directive.
  • Experience working with Senior Stakeholders and third-party suppliers.
  • Ability to present policies to technical and policy review committees.

Salary (Rate): undetermined

City: undetermined

Country: United Kingdom

Working Arrangements: remote

IR35 Status: inside IR35

Seniority Level: undetermined

Industry: IT

Detailed Description From Employer:

Contract Security Architect/Consultant (GRC) Inside IR35 Home Working

Inside IR35

Home Working

We are seeking a Contract Security Architect/Consultant (GRC) for an initial 3-month contract with our client. You will be responsible for developing and writing policies, standards and playbooks across the IT Security Service function to manage and mitigate risk exposure in line with Group policies and procedures, the IT division framework, industry standards and regulatory requirements.

Working closely with other teams and 3rd party suppliers you will ensure that security policies, standards and playbooks are developed which will seamlessly be Embedded into every project going forward and that industry best practices are adhered to.

Key skills to include:

  • 5+ years of security architecture experience.
  • Possess relevant security certifications such as CISSP, CISM, or CISA.
  • Proven experience of developing robust policies and standards in an enterprise level environment as part of an Information Security Management system.
  • Experience with security frameworks (NIST, ISO27001, COBIT).
  • Experience and understanding of security tools like Firewalls, intrusion detection/prevention systems, and encryption technologies.
  • Experience in enterprise architecture frameworks.
  • Experience working with NIS 2 Directive.
  • Experience of working with Senior Stakeholders, Technical Design Authorities, BAU & 3rd party suppliers.
  • Ability to present policies and standards to technical and policy review committees for approval.