Talent.com
Rowden
Security Governance Risk & Compliance OfficerRowden • Bristol, England, UK
Security Governance Risk & Compliance Officer

Security Governance Risk & Compliance Officer

Rowden • Bristol, England, UK
27 days ago
Salary
£50,000.00 yearly
Job type
  • Full-time
  • Part-time
Job description
Were building the UKs next generation engineering powerhouse providing critical technology that strengthens national security and resilience.
We specialise in turning advances in sensing AI and communications into operational capability for the edge where connectivity may be degraded or denied. Our work focuses on accelerating the deployment of technology improving decision-making for frontline teams and protecting people and critical assets in demanding environments.

Headquartered in Bristol Rowden employs around 200 people and operates over 20000 square feet of engineering and manufacturing facilities. We have a growing international footprint and are one of Europes fastest-growing engineering businesses.

About the role
We are looking for a Security Governance Risk and Compliance (GRC) Officer to join our expanding security this role you will work alongside our security architects and engineers providing governance risk and compliance support across the organisation. Helping to ensure security is joined up proportionate and embedded in how we deliver work.

We are open to candidates from a range of backgrounds you dont need to arrive with deep prior knowledge of every defence-specific framework. If youve built skills in risk audit compliance quality or governance those are highly transferable here and well support you to build the specialist knowledge through structured training on the job.

This is a role with clear room to grow into broader security assurance and governance responsibility as our security function scales alongside the business.

This role requires a minimum of 3 days per week on-site at our Bristol HQ.

Candidates must be eligible for SC clearance. Due to the nature of this role and the sensitivity of the work involved applications are restricted to sole UK nationals.
More information about security clearance is available here: Key areas of responsibility
As Rowdens Security Governance Risk and Compliance Officer you will:
  • Advise programme and engineering teams on governance risk and compliance - helping them identify security requirements.
  • Work closely with customer stakeholders to push for security solutions that are both effective and realistic.
  • Own and develop risk management and assurance documentation and Secure by Design artefacts for new projects.
  • Support the security aspects of bids and contracts and liaise with contracting authorities and accrediting bodies.
  • Support compliance with UK defence and government requirements including the MOD Cyber Security Model and Def Stan 05-138 the NCSC Cyber Assessment Framework Secure by Design and JSP 440 / Defence Security Policy Framework expectations.
  • Track changes to relevant legislation standards and guidance including NCSC guidance MOD requirements ISO standards and UK GDPR / the Data Protection Act 2018.
  • Help deliver security awareness and training building a strong security culture.

Key skills experience and behaviours


Essential
  • Experience in a security governance risk and compliance information security audit or assurance role.
  • A sound understanding of security governance and compliance principles.
  • Working knowledge of ISO 27001 and information security risk management including risk assessment and treatment.
  • Experience maintaining policies controls and evidence and supporting internal or external audits.
  • Strong written skills with the ability to produce clear policies reports and risk documentation.
  • Sound risk judgement and the ability to make proportionate well-reasoned decisions.
  • A methodical detail-oriented approach with the discipline to keep accurate records and evidence.
  • Strong communication skills with the ability to turn standards and guidance into clear actions.
  • Confidence to challenge and advise constructively at all levels.
  • Ability to work at pace manage competing priorities while maintaining quality and control.
Desirable (not essential)
  • A degree or equivalent experience in cyber security information assurance risk management or a related discipline.
  • One or more recognised certifications such as CISMP ISO 27001 Lead Auditor or Lead Implementer CISSP CISM CISA or CRISC held or being worked towards.
  • Familiarity with UK defence and government frameworks.
  • Knowledge of NIST CSF or 800-53 and of UK GDPR / the Data Protection Act 2018.
  • Experience working in a defence government or other regulated or secure environment.
About you
  • Pragmatic: You apply controls proportionately and in a risk-based way avoiding tick-box compliance.
  • Collaborative: You build strong working relationships across teams and with external partners.
  • Proactive thinker: You anticipate issues and actively shape how risks are managed rather than only reacting.
  • Resilient: Youre comfortable in a fast-paced environment where requirements evolve as we learn more about the operational problem.
  • Continuous improvement mindset: Keen to build specialist knowledge and keep pace with changing standards threats and guidance.

Working at Rowden


We are committed to building a flexible inclusive and enabling company. Our aim is to create a diverse team of talented people with unique skills experience and backgrounds so please apply and come as you are! We also recognise the importance of flexible working and support this wherever we can. We typically operate a flexible hybrid-working model with an average 3 days in the office each week (dependent on the role). We welcome the opportunity to discuss flexibility part-time working requirements and/or workplace adjustments with all our applicants. Rowden is a Disability Confident Committed company and we actively encourage people with disabilities and health conditions to apply for our roles. Please let us know your requirements early on so that we can make sure you have everything you need up front to help make the recruitment process and experience as easy as possible. Finally if you feel that you dont meet all the criteria included above but have transferable skills and relevant experience wed still love to hear from you!






Required Experience:

Unclear Seniority


Employment Type : Full-Time
Department / Functional Area: Engineering
Experience: years
Vacancy: 1
Yearly Salary Salary: 50000 - 60000
Create a job alert for this search

Security Governance Risk & Compliance Officer • Bristol, England, UK

Similar jobs

Project Security Lead: Governance & Risk Management

Advanced Resource Managers LtdBristol, England, GB
Temporary

Advanced Resource Managers Ltd.Project Security Consultant in Bristol to oversee security governance, risk management, and assurance across UK programmes.The role requires leading security efforts,... Show more

 • Promoted

System of Systems Integration Lead

MBDA UK LtdBristol, England, GB
Full-time

System of Systems Integration Lead - Ground Based Air Defence.Circa £ 65,000 depending on experience.British Citizen or a Dual UK national with British citizenship.Restrictions and/or limitations r... Show more

 • Promoted

Operational Compliance Auditor

Unite StudentsBristol, England, GB
Full-time

We’re looking for an Operational Compliance Auditor to join our Risk and Assurance team, helping to ensure the highest standards of health, safety, fire and security compliance across our UK‑wide p... Show more

 • Promoted

Career Changer - Security Officer

Securitas UKYeovil, England, GB
Permanent

We’re Hiring for Career Changers, become a Security Officer!.Shift Patterns: You may choose from the following options.Core: 4 on / 4 off rotation (days, nights & weekends).Relief: Flexible shifts ... Show more

 • Promoted

Senior Cyber Security Consultant - Lead Risk & Exercise

QinetiQ LimitedBristol, England, GB
Full-time

QinetiQ Limited is seeking a Senior Cyber Security Consultant based in Bristol, England.In this role, you will lead cyber security vulnerabilities, manage audit processes, and provide expert advice... Show more

 • Promoted

Senior or Principal Security Consultant (Risk Management)

LogiqBristol, England, GB
Full-time

Hybrid; with occasional travel expected to client site or Logiq’s offices in Bristol or Chippenham.Negotiable Dependent on Experience, plus car allowance, plus up to 10% performance bonus*, plus ex... Show more

 • Promoted

Remote Assurance & Security Officer (Investigations)

Serco Canada IncBristol, England, GB
Remote
Full-time

Serco Canada Inc is seeking an Assurance & Security Officer to work homebased with travel across the UK.In this full-time role, you will support security assurance activities and ensure compliance ... Show more

 • Promoted

Security Officer - Flexible Shifts, Pension & Overtime

MBDABristol, England, GB
Full-time

A leading defence organisation in Bristol is seeking a Security Officer to manage entry control, operate security systems, and respond to incidents.This role requires teamwork and the ability to wo... Show more

 • Promoted

Facilities and Compliance Officer

Acorn by SynergieLydney, GB
Full-time +1

Facilities & Compliance Officer.Westonbirt Arboretum | Competitive Salary | Full-Time Hours | Permanent.Acorn by Synergie is recruiting for a Facilities & Compliance Officer to join the Capital Dev... Show more

 • Promoted

Defence & Security Programme Director

WSP in the UK & IrelandBristol, England, GB
Full-time

WSP in the UK & Ireland is seeking Project Directors to manage high‑value Defence and Security projects and programmes.You will report to the Senior Delivery Lead and ensure delivery per the projec... Show more

 • Promoted

Senior Security Analyst: SOC Lead & Threat Hunter

Limelight HealthBristol, England, GB
Full-time

Made Tech is seeking a Lead Security Analyst to set the technical direction for the SOC, owning detection engineering and incident response across engagements.You will translate threat intel into a... Show more

 • Promoted

Compliance Business Partner

RACBradley Stoke, England, GB
Full-time

Join the RAC as a Compliance Business Partner and help ensure marketing, promotions and customer communications deliver fair, clear and compliant outcomes for our members.This is a key role in the ... Show more

 • Promoted

Senior Security Assurance Lead — Govt Compliance & Risk

hackajobBristol, England, GB
Full-time

Security Assurance Specialist in Bristol to design and lead audits across government systems.You'll drive compliance monitoring, support supply chain security, and mentor colleagues on secure pract... Show more

 • Promoted

IT Audit Lead – Security & Resilience

Lutine BellBristol, England, GB
Permanent

A financial services recruitment agency is seeking an experienced IT Audit Manager to support an organization in Bristol.The ideal candidate will have expertise in IT controls, data analytics, and ... Show more

 • Promoted

Assurance & Security Officer | Homebased (South)

VIVO DefenceBristol, England, GB
Full-time +1

VIVO provides facilities management and accommodation maintenance for the UK military and its partners.VIVO embodies both experience and innovation.We put our Customers and Families First.They are ... Show more

 • Promoted

Privacy Risk & Compliance Officer

TeleperformanceBristol, ENG, GB
Full-time

Privacy Risk & Compliance Officer   .Salary- Dependant on experience .Privacy Risk & Compliance Officer.The Privacy Risk &a... Show more

 • Promoted

Operational Compliance Auditor

Unite FoundationBristol, England, GB
Full-time

Help Drive Safety and Compliance Across the UK".We re looking for an Operational Compliance Auditor to join our Risk and Assurance team, helping to ensure the highest standards of health, safety, f... Show more

 • Promoted

Defence Contracts Manager — Risk, Compliance & Delivery

LeidosBristol, England, GB
Full-time

Leidos in Bristol is seeking a Contracts Manager to lead defined elements of the LCST Delivery Partner Contract, manage contract changes, commissioning activities and on‑contract growth opportuniti... Show more

 • Promoted

Senior Security Analyst – Threat Hunting & SOC Leadership

Made Tech LimitedBristol, England, GB
Full-time

Made Tech Limited is seeking a Lead Security Analyst to shape threat detection, incident response, and client-facing security leadership.You will own the SOC’s detection content, drive the threat-l... Show more

 • Promoted

Regional QHSE Leader: Risk, Compliance & Audits

XPO LogisticsCrick, Wales, GB
Full-time

XPO Logistics is seeking a Regional QHSE Manager to deliver practical QHSE support across multiple sites and contracts.You will help sites meet legal, company, and customer requirements while apply... Show more