55 Exec Search
Senior GRC Consultant | Cyber Risk Advisory

How your CV stacks up
Upload your CV to see how well it fits this job role
?%
Senior GRC Consultant | Cyber Risk Advisory
£50,000–£60,000 base salary + up to 10% bonus + benefits
Remote-first UK | Genuine flexibility | Ownership of client engagements
Do your best work in a team that trusts your judgement.
You know how to lead a client engagement, ask the right questions and turn complex security requirements into advice people can act on.
Your next move should give you the freedom to use that experience, the variety to keep developing and a working culture you want to be part of.
We’re partnering with a growing UK cyber security consultancy to appoint a Senior GRC Consultant. This is a hands-on advisory role offering autonomy, meaningful client relationships and the backing of an experienced, collaborative security team.
Why consider a move?
- Trust and ownership. Take responsibility for your engagements, shape recommendations and manage delivery. You’ll be trusted to use your judgement and build strong client relationships.
- Genuine flexibility. Join a business with a genuinely flexible, remote-first working culture, with occasional travel for client engagements and time with colleagues.
- Varied, challenging work. Deliver assessments, audits, implementation programmes and wider advisory assignments. Different clients bring different priorities, giving you scope to apply your strengths and broaden your expertise.
- A supportive team around you. Work with the GRC Lead and wider cyber security specialists to discuss challenges, share knowledge and develop practical solutions.
Reasons to use Rodeo
I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?
Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.
Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.
Start with a chat, not a search bar
Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.
Graduate Consultant — 2026 Scheme
Why you're a good match
StrongYour economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.
See breakdownIt searches the market for you
Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.
Why you're a good match
You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.
Experience fit
Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.
Only hits
No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.
The work
You’ll independently manage and deliver engagements covering ISO 27001, Cyber Essentials, third-party risk and wider GRC programmes.
Your responsibilities will include:
- Understanding client requirements, agreeing delivery priorities and managing assignments through to completion.
- Delivering assessments, audits and implementation activity, with clear findings and practical recommendations.
- Advising senior stakeholders and helping them prioritise security improvements.
- Balancing project scope, timelines and quality across your client commitments.
- Collaborating with colleagues where engagements require additional expertise.


Get help with your application
Your very own career expert that helps elevate your application to the next level.
Depending on client needs, assignments may also involve CAF, NIST, DORA, NIS2 and ISO 42001.
What you’ll bring
- Three or more years’ experience in information security consulting and/or auditing.
- A track record of independently delivering GRC engagements and managing client relationships.
- Hands-on ISO 27001 experience and practical Cyber Essentials delivery or auditing experience.
- Knowledge of wider frameworks and confidence applying them to different client environments.
- The ability to advise senior stakeholders, communicate clearly and manage competing priorities.
- A collaborative approach and a willingness to share your expertise.
- ISO 27001 Lead Auditor/Implementer, CISSP, CISM or CISA qualifications are desirable. Exposure to AI governance, incident response tabletop exercises, cloud security or OT would add value.
Applicants must have the right to work in the UK, be eligible for UK Security Clearance and be comfortable with occasional travel.
If the culture, flexibility and people matter as much as the work itself, we’d welcome a conversation. Apply now!
“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”
Jessica, London
Location