Information Security – Governance Risk Compliance Officer

Company: KeolisAmey DLR
Apply for the Information Security – Governance Risk Compliance Officer
Location: Greater London
Job Description:

Overview

KeolisAmey Docklands (KAD) is an award-winning Light Rail Operator and proud to operate the Docklands Light Railway (DLR), serving a vibrant and growing community across East London. We pride ourselves on our outstanding safety and performance record and our commitment to delivering an excellent service for our customers.

The Role

We are looking for a Governance, Risk & Compliance (GRC) Officer to join our Finance and Information Security team.

This role plays a key part in supporting the organisation’s governance, risk management and regulatory compliance activities. You will help ensure risks are identified and managed effectively, and that the organisation continues to meet regulatory, legislative and industry standards.

Working closely with colleagues across the business, technical teams and senior stakeholders, you will help embed strong governance processes and promote a risk-aware and security-conscious culture across the organisation.

The role will be based across Poplar and Beckton, with travel across the DLR network as required.

What You’ll Do

  • Support the implementation and maintenance of the organisation’s risk management framework, including risk identification, assessment and monitoring.
  • Facilitate risk assessments across business areas and support the development of mitigation plans.
  • Monitor risk trends, control effectiveness and emerging threats, providing reporting and insights to senior stakeholders.
  • Support the organisation’s compliance programme, ensuring adherence to regulatory requirements and industry standards.
  • Maintain compliance registers, documentation and audit evidence to demonstrate ongoing compliance.
  • Coordinate internal and external audits, including evidence gathering and tracking actions.
  • Contribute to the development and review of governance policies, standards and procedures.
  • Produce clear and accurate governance and risk reports for leadership teams and governance forums.
  • Support the governance and assurance of technology change management, ensuring appropriate approvals, testing and documentation are in place.
  • Assist in delivering risk, compliance and security awareness activities across the organisation.

What You’ll Need

Essential

  • Experience working in governance, risk management or compliance within a technology, operational, regulated or critical services environment.
  • Good understanding of risk management methodologies and compliance frameworks (e.g. ISO 27001, NIST CSF, NIS, CAF).
  • Experience supporting audit processes, evidence management and regulatory reporting.
  • Strong written and verbal communication skills with the ability to engage effectively with stakeholders.
  • Ability to interpret regulatory requirements and translate them into practical processes and controls.
  • Strong organisational skills and the ability to manage multiple priorities.

Desirable

  • Experience working in regulated sectors such as transport, utilities, financial services or government.
  • Exposure to Operational Technology (OT) or Industrial Control Systems (ICS) risk and compliance.
  • Experience developing policies, governance processes or risk reporting.
  • Professional certifications such as ISO 27001 Lead Implementer/Auditor, CISMP, CRISC, CISM or similar.

Qualifications

  • Degree in Information Security, Risk Management, Business, Law or a related discipline, or equivalent professional experience.

What We Offer

As part of the Transport for London (TfL) family, you’ll enjoy a competitive benefits package, including:

  • Free travel on the TfL network for you and a nominated household member
  • 75% discount on National Rail season tickets
  • Interest-free season ticket loan
  • Pension scheme with up to 10% employer contribution
  • Access to Perkbox, Doctor Care Anywhere, and an Employee Assistance Programme

Diversity & Inclusion

KeolisAmey Docklands recognises and actively promotes the benefits of a diverse workforce and is committed to treating all employees with dignity and respect regardless of race, gender, disability, age, sexual orientation, religion or belief. We therefore welcome applications from all sections of the community.

Join Us

To apply, please read the full job description and submit your CV and cover letter.

#J-18808-Ljbffr…

Posted: March 20th, 2026