Information Security / GRC Manager
Location: Dublin or Reading (Hybrid)
Duration: Initial 6 Months
Contract Type: Inside IR35 Day Rate
Travel: Ad-hoc to Dublin HQ
We are seeking an experienced Information Security / GRC Manager to lead security assurance, risk management, third‑party oversight, and compliance activities. Reporting to the Interim CISO, you’ll combine strategic governance with hands‑on execution, driving security maturity across programmes, suppliers, and internal teams
.This role requires someone confident operating independently, engaging senior stakeholders, and ensuring security controls are embedded across a fast‑moving technology landscape
.
What You’ll
- DoLead security assurance across major programmes, ensuring controls are embedded and validat
- edOversee third‑party security risk management, assessments, tooling, and governance foru
- msDrive Secure by Design and Privacy by Design across delivery tea
- msManage penetration testing cycles, remediation tracking, and readiness for go‑li
- veLead organisation‑wide security awareness and training programm
- esGovern risk reduction initiatives including PAM, DLP, and emerging tech such as AI/Copil
- otOwn audit engagement, evidence preparation, and closure of findin
- gsMaintain and evolve security policies, standards, and framewor
- ksAct as a trusted advisor, responding to frequent ad‑hoc security queries with pragmatic guidan
ce
What You’ll Br
- ingProven experience in Information Security with strong GRC leaders
- hipExpertise in security assurance, third‑party risk, audit, and policy framewo
- rksStrong understanding of cloud security, data protection, and emerging ri
- sksExperience with ISO 27001 / NIST‑aligned contr
- olsConfident stakeholder engagement across senior business and technology lead
- ersExcellent communication, organisation, and leadership ski
lls
Success Looks
- LikeSecurity controls embedded across all strategic initiat
- ivesReduced organisational risk posture and clear roadmap execu
- tionTimely closure of audit find
- ingsHigh compliance with training and awareness
- KPIsScalable, effective third‑party risk manage
- mentStrong confidence in the GRC function from senior stakehol
ders