Information Security Governance Risk and Compliance Manager
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
Here at Pinsent Masons we bring together the best people to get the job done. We’re naturally curious, constantly learning, listening, and growing. We’ll truly value your ideas. You’ll be joining an award-winning, hardworking and commercially minded team, where you’ll have the opportunity to work with leading experts and form meaningful relationships, while making a difference. You’ll get the opportunity to be involved in varied and challenging work. Working in an open and supportive environment, to deliver outstanding results. Our people are our success, and we work as one team.
We are recruiting an Information Security Governance, Risk & Compliance (GRC) Manager to lead and shape the firm’s GRC function, ensuring an integrated approach to governance, risk, assurance and compliance aligned to business and regulatory priorities.
Successful applicants will be given the opportunity to take on a highly visible leadership role, influencing strategic decision making, and supporting Board-level reporting while remaining hands-on across key initiatives.
This role can be based out of either our London or Birmingham Offices. Our standard working hours are 9.30am-5.30pm, and we operate a 3 days in the office, 2 days from home working model, however as an inclusive employer, we are willing to consider any flexible working requests.
Requirements
Do you have experience in Information security?, * Proven experience leading governance, risk and compliance (GRC) activity within a complex or regulated environment (legal sector experience advantageous).
- Demonstrable experience operating at senior level, including deputising for a CISO or equivalent and contributing to Board-level reporting.
- Strong experience of delivering or leading programmes/projects, including participation in project steercos and governance forums.
- Experience owning and delivering certification outcomes (e.g. ISO 27001 and Cyber Essentials Plus or similar), with accountability for audit readiness and compliance delivery.
- Ability to define and implement GRC strategy, governance frameworks and operating models aligned to business priorities.
- Experience leading digitised, data-driven and automated audit and assurance programmes, with AI-first thinking.
- Broad technology or information security understanding, with the credibility to support higher-level decision making.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on indeed.comGood distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
Should AI be Regulated? The Arguments For and Against
Panel Discussion: Responsible AI in Practice - Real-World Examples and Challenges
Coffee with Developers - Maria Apazoglou - Making AI understandable for all in production