- Company Name
- Logica Security
- Job Title
- Head of Security Governance, Risk and Compliance (GRC)
- Job Description
-
**Job Title**
Head of Security Governance, Risk and Compliance (GRC)
**Role Summary**
Lead the organization’s security governance, risk management, and compliance (GRC) function, embedding proportionate frameworks, policies, and processes that safeguard customers, assets, and reputation while ensuring compliance with UK and EU regulations and industry standards.
**Expectations**
- Safeguard customer and asset security and maintain regulatory compliance.
- Drive a culture of risk awareness and accountability across all business units.
- Deliver senior‑level risk and compliance reporting to executive management and the Board.
**Key Responsibilities**
- Develop, implement, and continuously improve governance frameworks, policies, and standards for information security, risk, and compliance.
- Lead enterprise‑wide risk management activities: risk identification, third‑party risk, assessment, control evaluation, and mitigation planning.
- Ensure adherence to PRA, FCA, GDPR, NIST CSF and other applicable regulations, maintaining readiness for internal and external audits.
- Monitor and review governance and compliance processes, adapting to regulatory updates and emerging risks.
- Build and maintain relationships with Legal, IT, Procurement, and business functions to embed risk‑based decision‑making.
- Provide expert advice, risk posture reports, and emerging issue briefings to senior management and the Board.
**Required Skills**
- Deep knowledge of UK and EU financial regulatory requirements.
- Proven experience designing and embedding proportionate governance and risk frameworks in a regulated environment.
- Strong stakeholder management and influence skills at Board and executive level.
- Excellent communication, leadership, and culture‑building capabilities.
**Required Education & Certifications**
- Bachelor’s degree in information security, risk management, or related field.
- Minimum 10 years of senior GRC leadership experience, preferably in financial services.
- Professional certifications: CISA, CISM, CISSP, or equivalent.
Birmingham, United kingdom
Hybrid
Senior
16-12-2025