Global Web Index

Global Web Index

London

Information Security Governance, Risk and Compliance Specialist

Full-Time£71,000 - 82,000 per yearevvelsi günUnited Kingdom
IT

Job Description

Salary: £71,000 - 82,000 per year

Requirements:
  • We are looking for someone with in-depth, practical experience obtaining and maintaining ISO 27001 certification, with solid knowledge of frameworks such as NIST.
  • We typically expect 3–5 years in an information security compliance role, though we will consider other experience levels.
  • We need proven ability to develop and maintain security policies and procedures aligned with industry best practice.
  • We are looking for experience conducting vendor security assessments and managing client security onboarding requirements while balancing risk against commercial objectives.
  • We value hands-on experience building or maintaining a security trust portal, with familiarity with tools such as Drata or Vanta as a plus.
  • We are looking for knowledge of SaaS and AI environments, including experience implementing and managing cloud security best practices.
  • We need strong communication skills with the ability to translate complex GRC topics into clear internal guidance.
Responsibilities:
  • We own and maintain our ISO 27001 certification and compliance across relevant security frameworks.
  • We develop, implement, and maintain information security policies and procedures aligned with industry best practices.
  • We lead vendor risk management and client security assessments, including responding to client security questionnaires and onboarding requirements.
  • We build and maintain our security trust portal, showcasing our credentials to clients and stakeholders using tools such as Drata or Vanta.
  • We drive security awareness across the business through training programmes and internal communications that promote a strong GRC culture.
  • We work closely with our Legal, Information Security, Product, and Technology teams to strengthen our compliance posture and security-conscious culture.
Technologies:
  • AI
  • Cloud
  • Support
  • Security

More:

We are GWI, and we are looking for an Information Security GRC Specialist to join our Legal team in London. This is a permanent, mid-senior role with a hybrid working pattern of 2 days per week in the office. We offer meaningful work, visible impact, and a culture that empowers you to do your best. Our benefits include 25 days annual leave plus holiday office closures, health and wellbeing support, competitive salary, 4% pension matching, flexitime, early Friday finishes, hybrid and remote options, a work-from-home budget, accredited learning, leadership development, global career mobility, and a range of community and impact initiatives. We are a company that values thinking big, asking why, and showing respect, and we are committed to diversity, equity, inclusion, and belonging across our workplace.

last updated 34 week of 2026

Interested in this role?

Submit your application now

How to Apply

Ready to apply for this position? Here's what you need:

  • An updated resume highlighting relevant experience
  • A compelling cover letter (if required)
  • Portfolio or work samples (for relevant positions)

About Global Web Index

Global Web Index

Global Web Index

London

IT

Skills & Technologies

RustAIUI

Inferred from job description

Salary Insight

£76,500

This role

£55,000

UK median

This salary is 39% above the UK median for UK tech roles55,000/yr).

Based on 2024–2025 UK technology sector benchmarks

Explore More UK Opportunities

Thousands of tech jobs across the United Kingdom