cover image
Iceberg Cyber Security

GRC Security Specialist

On site

London, United kingdom

Full Time

23-09-2025

Share this job:

Skills

Incident Response Architecture Autonomy Agile

Job Specifications

GRC Security Specialist - Engineering-Led Global Tech Firm

Location: London (Hybrid - primarily office-based)

Overview:

A highly selective, global technology-driven firm operating at the intersection of finance and engineering is seeking an exceptional GRC Security Specialist to join its growing security function in London.

This organisation is known for its deeply technical culture, flat structure, and ability to solve complex problems at speed. Security is not just a support function here--it's central to the business. You'll work alongside some of the most capable engineers and security minds in the industry, building pragmatic, fit-for-purpose controls in an environment that values action, autonomy, and technical depth.

Day to Day:

Own and execute internal compliance initiatives (e.g. ISO 27001, SOC 2), with support from trusted external partners
Collaborate closely with software engineering and infrastructure teams to embed secure-by-design principles
Ensure that governance and risk processes actually reflect how the business operates--no checkbox exercises
Contribute across the broader security program, including threat modelling or incident response support as needed
Help shape how security and compliance scale in a highly agile, engineering-led organisation

What We're Looking For:

A broad background across GRC, information security, and ideally some architecture or engineering experience
Proven experience working in fast-paced, high-trust, in-house environments (not solely consultancy/audit)
Strong understanding of how modern tech companies implement and maintain real-world security controls
Ability to challenge assumptions, question control effectiveness, and influence stakeholders
Exposure to threat modelling, SOC, or IR processes is a bonus
Technically literate -- able to engage credibly with engineering teams (no hands-on coding required)

Why Join?

Be part of a world-class security team in a business that prioritises technical excellence and rapid execution
No bureaucracy, no red tape--just high trust, high impact, and a commitment to doing things the right way
A long-term, sustainable company culture with exceptionally low turnover and high standards
Extremely competitive compensation and bonus structure, with clear long-term upside for high performers

Apply Now:

If you're a technically minded GRC/security professional looking to make a real impact in an elite, engineering-first environment, we'd love to hear from you. Apply with a tailored CV and a short note on why this opportunity stands out.

About the Company

The digital revolution continues to transform how we live, work, interact and do business with each other. The shift from analog machinery to digital technology has provided us with various opportunities to connect with the world through computers, smart phones, tablets and other devices. The internet in particular has allowed us to access information, send emails and download data - all of which can be done quickly and easily. However, in light of these benefits, there are also a number of potential risks. The biggest probl... Know more