Governance Risk and Compliance Specialist
Listed on 2025-12-27
-
IT/Tech
Cybersecurity, IT Consultant, Information Security
Governance Risk and Compliance Specialist
Vix Technology, a global leader in automatic fare collection, transit information, and transit analytics solutions, is seeking a highly skilled and experienced Governance, Risk & Compliance Specialist. With a presence in over 200 city and regional transport authorities worldwide, Vix has been at the forefront of transforming fare collection for more than 35 years. At Vix, we are committed to solving problems and delivering innovative solutions that are revolutionising the world of public transit.
The Role
Based on‑site, full time in our Manchester office, this role focuses on supporting the organisation in maintaining compliance with regulatory requirements, managing risks related to information security, and ensuring governance policies are upheld.
Responsibilities- Identify, assess, and mitigate IT security risks
- Maintain risk registers and track risk treatment plans
- Support periodic risk assessments for potential information security threats
- Monitor and report risk exposures
- Ensure compliance with UK regulations (GDPR, NIS Regulations, Data Protection Act 2018)
- Conduct audits and assessments for internal policy and international standards compliance (e.g., ISO 27001)
- Assist in preparing compliance reports
- Support development of IT security policies and procedures
- Assist in reviewing and updating governance frameworks per regulations and business needs
- Coordinate with teams to integrate governance practices into daily operations
- Assist in investigating and reporting IT security incidents
- Help develop and refine incident response plans
- Track incident resolutions to ensure documentation and follow‑up
- Support IT security awareness and training programs for staff
- Help create materials for cybersecurity training to clarify employee responsibilities
- Evaluate security risks of third‑party vendors
- Conduct due diligence and assessments to ensure vendors meet security standards
- Work with auditors to provide compliance documentation
- Assist in addressing audit findings and implementing corrective actions
- Assist in drafting, reviewing, and maintaining IT security policies
- Align policies with business objectives and regulatory requirements
- Understanding of Regulatory Frameworks:
Familiarity with GDPR, NIS Regulations, and other UK‑based IT security regulations - Knowledge of
Risk Management:
Basic knowledge of risk identification, assessment, and mitigation techniques - Attention to Detail:
Ability to identify potential issues and track compliance activities - Technical Aptitude:
Familiarity with IT security concepts, frameworks like ISO 27001, and general cybersecurity best practices - AWS experience and/or certification (desired)
- Bachelor's degree in Computer Science or IT (desired)
- Exposure to Security Standards (PCI, ISO) (desired)
- Experience with audits or compliance enforcement (desired)
- Penetration testing experience (Kali Linux) (desired)
- Experience with site‑to‑site VPNs, network design, VLANs, routing, NAT (desired)
- A true team player who thrives in a collaborative environment
- Possesses a methodical approach to work, ensuring accuracy and timeliness
- Demonstrates high levels of confidentiality and integrity
- Exhibits excellent written and verbal communication skills
- Displays a strong commitment to seeing tasks through to completion
- Capable of working independently while also being an effective team member
- Prioritises exceptional customer service
- Embraces flexibility and adapts seamlessly to change
- A focus on learning and development
- A great team of like‑minded professionals
- Private Healthcare
- Income Protection Scheme
- Pension
- Group Life Assurance
- Cycle to Work Scheme
- Electric Car Benefit Scheme
- Employee Assistance Programme
- Eyecare Vouchers
Location: Manchester, England, United Kingdom
Seniority level: Mid‑Senior level
Employment type: Full‑time
Job function: Other
Industries: IT Services and IT Consulting
We regret that this position is only available for UK citizens/residents with indefinite leave to remain in the UK.
Vix Technology is an Equal Opportunity Employer and prohibits discrimination and harassment of any kind. We are committed to the principle of equal employment opportunity for all people and want to build a workforce as diverse as the community we serve. We aim to have a work environment where everyone feels included and everyone can realise their full potential.
#J-18808-LjbffrTo Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search: