Rodeo
Get started

Walkers Global

GRC Lead

City of London
Posted about 15 hours ago
Sign up to applySee more jobs like this
Get notified of more jobs like this · No spam, ever

How your CV stacks up

1Upload CV
2Analyse CV
3Improve CV

Upload your CV to see how well it fits this job role

?%

We are a leading international law firm for global corporations, financial institutions, capital market participants and investment fund managers. With a global presence spanning the Americas, Europe, the Middle East and Asia, we advise on the laws of Bermuda, the British Virgin Islands, the Cayman Islands, Guernsey, Ireland and Jersey.

We treat everyone as the intelligent professional they are. Our approach is to trust and empower our people to deliver consistently, and enable them to succeed. Diversity is our secret weapon – it’s the sheer breadth of Walkers people that makes us who we are – gathered from across the globe and fluent in languages, jurisdictions and cultures that help us to mirror our clients and keep our own thinking in tune with the world in which we operate.

Overview of role

Office: London (40% min hybrid required)

The Governance, Risk, and Compliance Lead will be responsible for the management of the Information Security Management System (ISMS) across Walkers globally. This covers a broad range of information security activities including policy development, risk management, internal and external audit and compliance. It will involve communication with senior management across all regions, liaising with internal teams, and development of the firm’s security capabilities to meet the changing needs of clients. The role will be responsible for managing the change governance of projects through business change partnering.

Duties, Responsibilities & Person Specification

ISMS Management

  • Communicate to senior management on risks and requirements
  • Understand business objectives and support development of budget for information security objectives
  • Develop and maintain security compliance program
  • Provide support where necessary to local offices to update and maintain country specific IS documentation
  • Establish security metrics to assess effectiveness
  • Coordinate and maintain the management review process
  • Make written and oral reports to ISSC

Reasons to use Rodeo

I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?

Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.

Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.

Start with a chat, not a search bar

Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.

P

Graduate Consultant — 2026 Scheme

PwC·London, UK
£35,000/yr

Why you're a good match

Strong

Your economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.

See breakdown
Save jobNot relevant
View details

It searches the market for you

Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.

Why you're a good match

You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.

See breakdown
Strong

Experience fit

Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.

See breakdown
Strong

Only hits

No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.

Security Audits

  • Manage internal and external audits and certifications
  • Manage third party providers including security consultants and assessors

Security Awareness

  • Ownership of the Security Awareness Program and the Security Awareness Centre and support of Security Culture Change including owning and managing the quarterly phishing simulation campaigns and the third party relationship.

Improvement management

  • Manage identified improvements through to completion

Policy

  • Develop, maintain and publish security strategies, policies and procedures
  • Manage security policy and implementation
  • Support global IT departments on implementation of security policy and products

Education, Skills & Experience

  • Proven experience in assessing information security risk and developing an ISMS.
  • Experience of ISO 27001/2 version 2022.
  • Experience of risk frameworks such as ISO 27005/31000.
  • Knowledge of applicable data privacy practices and laws.
  • Demonstrable experience in a similar role.
  • ISO 27001 Lead Implementer / Lead Auditor certification or, extensive security audit experience
  • CISSP and CISM or equivalent certifications
  • Strong written, oral and presentation communication skills.
  • Excellent inter-personal skills and ability to present ideas and proposals in user-friendly language.
  • A passion for information security and keeping current on emerging technologies, regulations, threats and trends.
  • Highly self-motivated and directed, with a hands-on approach.
  • Good technical-writing skills and the ability to prepare quality documentation, reports and training material.
  • Able to effectively prioritise tasks in a high-pressure environment.
  • Experience working in a geographically dispersed team-oriented, collaborative environment.

Get help with your application

Your very own career expert that helps elevate your application to the next level.

Get help applying for this job

Please note; this position requires the ability and willingness to occasionally work outside normal working hours/days when requested. Additionally, an understanding that international business travel may be necessary.

Walkers will not accept any applications received from agencies at this time. Only candidates selected for an interview will be contacted.

#LI-LQ1 #LI-Hybrid

Walkers global is an equal opportunity employer. Equality and diversity are key to our global identity and an integral part of our goal to continue being an employer of choice. We are committed to a work environment that supports all individuals irrespective of gender, ethnicity, nationality, race, religion, marital status, age, disability, pregnancy, sexual orientation, gender identity or any other applicable legally protected characteristics. We make every effort to ensure that employment opportunities are open and accessible to all purely on the basis of personal ability.

Trusted by 25,000+ job seekers

“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”

Jessica, London

Get help applying for this job

Skills

Information Security Management System
ISO 27001
Risk Management
Compliance
Audit Management
Security Awareness
Policy Development
Data Privacy
CISSP
CISM
Technical Writing
Project Governance
Security Metrics
Stakeholder Management

Location

City of London, England, United Kingdom

Sign up to applySee more jobs like this