About this role
We're partnering with a large and complex organisation seeking an Information Security Governance & Risk Analyst to support the development of its security governance, compliance and risk management capabilities.
This role would suit someone with broad Governance, Risk & Compliance (GRC) experience who enjoys working with stakeholders, improving processes, supporting compliance initiatives and helping organisations strengthen their overall security culture.
Whilst the role sits within Information Security, this is not a hands-on cyber security engineering or technical security position. Instead, the focus is on governance, assurance, risk management, compliance, awareness and organisational engagement.
Key Responsibilities
- Support the implementation and adoption of information security policies, procedures and governance frameworks.
- Conduct gap analysis activities to identify compliance and control improvement opportunities.
- Assist with information security assurance and compliance programmes.
- Support risk identification, assessment and mitigation activities across the organisation.
- Work with stakeholders to review existing risks and identify emerging threats.
- Help deliver security awareness and human risk initiatives to build security maturity and capability.
- Contribute to audit, assurance and reporting activities.
- Promote a culture of information security across technical and non-technical teams.
What We're Looking For
- Experience within Governance, Risk & Compliance (GRC), information security governance, risk, audit or compliance.
- Strong understanding of risk management and control frameworks.
- Experience supporting compliance, assurance or policy implementation activities.
- Excellent stakeholder engagement and communication skills.
- Ability to work across diverse teams and influence positive outcomes.
- Experience delivering or supporting awareness, training or behavioural change programmes.
We'd Particularly Like To Hear From You If You Have
- Experience within a large, matrixed or complex organisation.
- Public sector, education, healthcare, local government or wider regulated environment experience.
- Exposure to information security, cyber governance, compliance or risk functions.
- Security, risk or governance certifications are welcome but not essential.
Initial Priorities
The successful candidate will initially focus on
✅ Understanding and embedding new policies and procedures
✅ Supporting gap analysis activity to inform compliance objectives
✅ Helping roll out a new human risk and security awareness programme
✅ Working with stakeholders to review current and emerging information security risks
To find out more, please apply or contact Made4Tech Global for a confidential discussion.
About cyber security & digital forensics roles for ex-police
Cyber security, digital forensics and incident-response roles. DMIs, cybercrime investigators and digital forensics officers bring evidential discipline and investigative judgement that DFIR and security teams struggle to hire.
See all cyber security & digital forensics jobs in Manchester →Why this fits a police background — match score 85/100
- Working to legislation & regulation
What cyber security & digital forensics roles pay ex-police
Advertised UK ranges, editorial estimates reviewed July 2026
| Digital forensics analyst | £32,000–£45,000 |
| DFIR consultant | £45,000–£65,000 |
| Senior forensics / IR specialist | £60,000–£80,000 |
| Threat-intelligence specialist | £55,000–£80,000 |