Rodeo
Get started

Sapphire

Governance, Risk and Compliance (GRC Consultant

Glasgow
Posted about 21 hours ago
Sign up to applySee more jobs like this

How your CV stacks up

1Upload CV
2Analyse CV
3Improve CV

Upload your CV to see how well it fits this job role

?%

πŸš€ Governance, Risk & Compliance (GRC) Consultant

Help organisations stay secure, resilient and ready for whatever comes next.

At Sapphire, we've been helping organisations navigate cyber risk for nearly 30 years. As the cyber threat landscape evolves, so do we. That's why we're looking for a talented Governance, Risk & Compliance (GRC) Consultant to join our growing Security Consulting team.

Whether you're already working in cyber consultancy or looking to take the next step in your GRC career, this is an opportunity to work with a diverse range of clients, tackle meaningful challenges, and help shape the future of cyber resilience.

What you'll do

You'll work closely with clients to strengthen their security governance, manage risk, improve compliance, and build confidence in their cyber security programmes.

Your work will include:

  • Delivering cyber risk assessments and security reviews
  • Supporting ISO 27001 and other compliance initiatives
  • Developing policies, frameworks and governance documentation
  • Helping clients manage supplier and third-party risk
  • Supporting security improvement programmes and audit readiness activities
  • Producing clear, practical reports and recommendations
  • Building trusted relationships with stakeholders at all levels

Reasons to use Rodeo

I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?

Honest answer β€” it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.

Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.

Start with a chat, not a search bar

Grad scheme, placement, apprenticeship? Not sure what you want yet β€” that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.

P

Graduate Consultant β€” 2026 Scheme

PwCΒ·London, UK
Β£35,000/yr

Why you're a good match

Strong

Your economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.

See breakdown
Save jobNot relevant
View details

It searches the market for you

Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.

Why you're a good match

You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon β€” deadlines close within the month.

See breakdown
Strong

Experience fit

Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme β€” client modelling, market briefings, and deal support.

See breakdown
Strong

Only hits

No noise. No "maybe this fits." Just roles with a clear explanation of why they're right β€” and where to focus when applying.

You'll collaborate with experts across Sapphire's SOC, Security Assurance, Penetration Testing and Consulting teams to deliver joined-up, client-focused solutions.

What we're looking for

We're interested in people with the right attitude, curiosity and consulting mindset as much as specific credentials. You may be a great fit if you have:

  • Experience in cyber security, risk, compliance or consulting
  • Knowledge of security frameworks such as ISO 27001, NIST or CAF
  • Strong analytical and problem-solving skills
  • Excellent communication and report-writing abilities
  • Confidence working with both technical and non-technical stakeholders
  • A passion for helping organisations improve and mature their security posture

Bonus points if you have experience with:

  • ISO 27701, ISO 22301 or other assurance frameworks
  • Third-party risk management
  • GDPR and privacy requirements
  • AI governance and emerging regulations
  • GRC platforms such as OneTrust or Vanta
  • Cloud environments such as Microsoft Azure or AWS

Get help with your application

Your very own career expert that helps elevate your application to the next level.

Get help applying for this job

Why Sapphire?

  • Flexible remote and hybrid working
  • Training, development and certification support
  • Career progression opportunities in a growing cyber consultancy
  • Supportive and collaborative culture
  • Work with organisations across multiple sectors and industries

Everyone belongs at Sapphire

We know that great candidates don't always match every requirement. If you're excited by the role and believe you can make an impact, we'd love to hear from you. At Sapphire, we're committed to creating an inclusive workplace where everyone feels valued, respected and able to thrive.

Interested? Apply today and help organisations build a safer digital future. πŸ”βœ¨

πŸ” Ready to help organisations tackle cyber risk and build resilience? Join Sapphire as a GRC Consultant and work with leading organisations to shape stronger, safer futures. #CyberSecurity #GRC #InfoSec #ConsultingJobs #HiringNow #SapphireCyberSecurity

Trusted by 25,000+ job seekers

β€œIt took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”

Jessica, London

Get help applying for this job

Skills

Cyber Risk Assessment
Security Reviews
ISO 27001
NIST
CAF
Policy Development
Governance Documentation
Third-party Risk Management
Audit Readiness
Stakeholder Management
ISO 27701
ISO 22301
GDPR
AI Governance
OneTrust
Vanta

Location

Glasgow, Scotland, United Kingdom

Sign up to applySee more jobs like this