This job is no longer available
This job expired on 25/09/2026. It no longer accepts applications.
Director of Governance, Risk & Compliance (GRC)
THAMES 360 · London
Job description
About the role
We are building a Governance, Risk & Compliance (GRC) practice and a Compliance-as-a-Service offering. As the GRC Director you will lead client‑facing delivery, support senior leadership and help organisations improve their governance and resilience.
Key responsibilities
- Lead client compliance programmes, audits, risk registers and remediation initiatives.
- Deliver Cyber Essentials, Cyber Essentials Plus and UK GDPR assessments.
- Present findings and recommendations to senior stakeholders and board members.
- Offload senior leadership workload by managing day‑to‑day GRC delivery.
- Support the growth of virtual CISO and broader compliance services.
Required profile
- Proven experience in GRC, information security, audit or risk management.
- Strong knowledge of Cyber Essentials/Plus and UK GDPR.
- Excellent report writing and client‑facing communication skills.
- Ability to translate technical risk into clear business impact.
- Trustworthy, curious communicator with strong client credibility.
- Relevant certifications (ISO 27001, CISSP, CISM) are advantageous but not mandatory.
Required skills
- Cyber Essentials
- UK GDPR
- ISO 27001
- CISSP
- CISM
What we offer
- Hybrid working model (3 days onsite, 2 days remote) in West Hampstead, London.
- Opportunity to shape and lead a growing GRC practice.
- Competitive salary package.
Questions fréquentes
Why are you reporting this job?
Explore further
Salaries, guides and searches in the United Kingdom.
Salaries by job title
A question about this job?
Ask it here: you will get the full job summary by e-mail, right away.
Boost your chances
Upload your CV — we will match you with relevant openings.
Analyzing your CV...
THAMES 360
London