Senior Cyber Security Manager - GRC

23 Hours ago • 4-8 Years • Cyber Security

Job Summary

Job Description

The Senior Cyber Security Manager - GRC at Jagex will play a crucial role in developing, implementing, and managing the company's Governance, Risk, and Compliance (GRC) framework. Responsibilities include developing and implementing a comprehensive GRC framework aligned with industry standards (ISO 27001, NIST CSF, PCI-DSS, GDPR), managing information security policies, overseeing security audits, identifying and managing security risks, leading compliance initiatives, and developing security awareness programs. The role requires extensive GRC experience in gaming or software development, strong knowledge of security frameworks, and excellent communication skills. The position reports to the Director of Cyber Security and supports game development processes.
Must have:
  • Extensive GRC experience in gaming/software development
  • Manage security policies, risk assessments, compliance programs
  • Knowledge of ISO 27001, NIST CSF, PCI-DSS, GDPR
  • Lead security audits, work with internal/external auditors
  • Strong risk management skills, remediation efforts
  • Excellent communication (written and verbal)
Good to have:
  • CISA, CISM, CRISC, or ISO 27001 Lead Implementer certifications
Perks:
  • Private Healthcare, including Dental Plan
  • Pension contributions
  • Employee Assistance Programme
  • Life Insurance
  • Annual performance bonus
  • Enhanced family leave policies
  • Flexible working hours
  • 25 days annual leave + Bank holidays

Job Details

Description

Are you a GRC specialist? Want to play a crucial role in the development, implementation, and management of the Jagex's Governance, Risk, and Compliance (GRC) framework? Want to do that for one of the worlds leading online games companies?

This position will report to the Director of Cyber Security to ensure the company’s information security policies and practices align with both industry regulations and internal strategic objectives, particularly focusing on supporting game development processes.

This is an opportunity

What you'll be doing:

GRC Framework Development:

  • Develop and implement a comprehensive GRC framework that aligns with industry standards such as ISO 27001, NIST CSF, PCI-DSS, and GDPR.
  • Manage and update the information security policies, ensuring they are current and relevant to evolving risks.
  • Ensure alignment with legal, regulatory, and contractual obligations specific to the game development industry.
  • Oversee the creation, implementation, and regular review of security policies, standards, and procedures.
  • Collaborate with business units to ensure that policies are understood, accessible, and appropriately enforced.

Risk Management:

  • Identify, assess, and manage technical and non-technical security risks associated with game development, live operations, and supporting infrastructure.
  • Develop risk treatment plans, work with game development teams to mitigate identified risks, and track remediation efforts.

Compliance & Audit Management:

  • Lead internal and external audits for compliance certifications, ensuring successful completion with minimal business disruption.
  • Manage the lifecycle of compliance initiatives such as PCI-DSS, GDPR, and other regional requirements affecting game development operations.
  • Stay informed of industry trends and changes in regulations that may impact security compliance efforts.

Training & Awareness:

  • Develop and deliver a security awareness program that targets various departments, with an emphasis on secure coding and game development practices.
  • Ensure continuous education across the company on security policies, risks, and compliance.

Vendor & Third-Party Risk Management:

  • Evaluate the security posture of third-party vendors and partners, ensuring their practices align with the company’s security policies.
  • Oversee the third-party risk management process, conducting vendor security assessments and managing associated risks.

What you'll need:

  • Extensive experience in a GRC role within the gaming, technology, or software development industries.
  • Proven experience in managing security policies, risk assessments, and compliance programs (such as ISO 27001, PCI-DSS, GDPR, etc.).

Knowledge & Skills:

  • Deep understanding of governance, risk, and compliance processes as they relate to game development.
  • Strong knowledge of security frameworks and standards like ISO 27001, NIST CSF, SOC 2, and GDPR.
  • Experience leading security audits and working with both internal and external auditors.
  • Strong risk management skills, including conducting risk assessments, developing treatment plans, and overseeing remediation efforts.
  • Excellent written and verbal communication skills, with the ability to convey complex security topics to technical and non-technical stakeholders.
  • Relevant security certifications such as CISA, CISM, CRISC, or ISO 27001 Lead Implementer.

Soft Skills:

  • Strong leadership and project management abilities, with a track record of managing cross-functional teams.
  • High attention to detail, proactive in identifying risks, and a solution-oriented approach.
  • Ability to thrive in a dynamic, fast-paced game development environment.

What we offer:

When you join Jagex you can look forward to a generous Perks & Benefits package including:

  • Private Healthcare, including Dental Plan.
  • Minimum 6% Pension contributions.
  • Employee Assistance Programme & onsite Counselling.
  • Life Insurance.
  • Discretionary annual performance bonus.
  • Enhanced family leave policies from day 1.
  • Flexible working hours.
  • 25 days annual leave + Bank holidays & the option to buy/sell holidays + so much more!

Please note that due to us approaching the Christmas & New Year break, we have many people among the hiring teams who are on annual leave or will be absent due to the studio closing over the holiday period.
This means that, in most cases, applications made during December are unlikely to proceed to interview until January 2025. We appreciate your patience during this time.

 

Collaboration is at the heart of Jagex. We love getting together with our teams to share ideas and socialise.

Flexibility really is the key to how we set up working schedules, we’ll discuss your needs with you and be transparent about the working schedules of the team you’ll be working with during our interview process.

 

About Jagex:

Make forever games with us.

Jagex is a thriving international games company with a growing library of forever game IPs for core gamers. We have such huge expertise at running games for the long term that we re-define expectations for what evergreen success looks like.

We create spaces for our players to come together – with each other and with us – inside and outside of our games. We empower our players with real influence on the game’s evolution. We help our players belong. Our community experiences give players a greater stake in what they’re playing, creating loyal forever fans.

These strengths inform our vision of our studio as a thriving international games company with a growing library of forever game IPs for core gamers. Our forever games will nurture sizable communities whose loyalty provides consistent revenues.

This in turn drives our mission: We create forever fans by empowering our community. We give players experiences worthy of their long-term time investment and actively collaborate with them to shape the games and the community for the better.

If this is something you want to be a part of, get in touch.

We have 500 of the industry’s most talented individuals in our Cambridge studio; if you share our values and ambition, we’d love to talk to you. Worried you don’t meet all the requirements in the spec? Your attitude, fresh perspective and experience is just as important to us; if you think this could be the perfect job for you, let’s talk.

Similar Jobs

bito - Backend Developer

bito

Pune, Maharashtra, India (Hybrid)
7 Hours ago
Meta - Research Scientist Intern, Machine Perception for Input and Interaction (PhD)

Meta

Redmond, Washington, United States (On-Site)
3 Months ago
Bungie - Central Technology Game Services Engineer (Senior to Architect)

Bungie

United States (Hybrid)
1 Month ago
Every matrix - Network Team Leader

Every matrix

Bucharest, Bucharest, Romania (Hybrid)
1 Month ago
ION - Trading Support Analyst, Toronto - 7348

ION

Toronto, Ontario, Canada (On-Site)
4 Months ago
PwC - AES Guidewire Lead Integration Developer Senior Associate Operate

PwC

Bengaluru, Karnataka, India (On-Site)
2 Months ago
ByteDance - Senior Application Security Engineer - Global Monetization

ByteDance

Singapore (On-Site)
1 Week ago
Zinnia - Senior Cloud Security Engineer

Zinnia

Noida, Uttar Pradesh, India (Hybrid)
4 Months ago
ByteDance - Global SRE Lead, Security Engineering

ByteDance

Singapore (On-Site)
3 Months ago
Fluence - DevSecOps Engineer

Fluence

Bengaluru, Karnataka, India (Hybrid)
4 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

NVIDIA - MCU Firmware Engineer

NVIDIA

Taipei City, Taiwan (On-Site)
1 Month ago
Bohemia Interactive - Business Development Manager

Bohemia Interactive

Prague, Prague, Czechia (On-Site)
3 Months ago
Evolution - Technical Compliance Specialist (Certifications)

Evolution

Riga, Latvia (On-Site)
5 Days ago
Egen - Motion Graphics Intern

Egen

Hyderabad, Telangana, India (On-Site)
4 Months ago
Lila Games - Art Director

Lila Games

Bengaluru, Karnataka, India (On-Site)
4 Months ago
The Walt Disney Company - Associate Business Systems Analyst

The Walt Disney Company

Hong Kong (On-Site)
3 Weeks ago
Luxoft - UI Designer

Luxoft

Beijing, Beijing, China (On-Site)
2 Months ago
Alpha Sense - Senior Customer Lifecycle Marketing Manager

Alpha Sense

Remote, Oregon, United States (Remote)
3 Weeks ago
Scopely - Senior Producer

Scopely

California, United States (Remote)
2 Days ago
PTW - Traditional Chinese LQA Game Tester (Freelance Remote)

PTW

Braga, Braga, Portugal (Remote)
1 Month ago

Get notifed when new similar jobs are uploaded

Jobs in Cambridge, England, United Kingdom

Whatnot - Senior Technical Recruiter, Engineering

Whatnot

London, England, United Kingdom (Remote)
4 Months ago
Blue Zoo Animation Studio - Junior 2D FX Artist

Blue Zoo Animation Studio

London, England, United Kingdom (On-Site)
3 Months ago
Aristocrat Gaming - Technical Project Manager

Aristocrat Gaming

London, England, United Kingdom (Hybrid)
3 Weeks ago
ESL FACEIT Group - EFG - Information Security Analyst

ESL FACEIT Group - EFG

United Kingdom (Remote)
1 Month ago
Frontier Developments - Senior Graphic Designer

Frontier Developments

Cambridge, England, United Kingdom (Hybrid)
1 Month ago
Alpha Sense - Customer Success Specialist, Financial Services

Alpha Sense

London, England, United Kingdom (On-Site)
1 Month ago
Steel City Interactive - Senior Games Designer - Remote

Steel City Interactive

Sheffield, England, United Kingdom (Hybrid)
1 Month ago
Warner Bros Games - Expert Lead Designer

Warner Bros Games

London, England, United Kingdom (Hybrid)
6 Days ago
N-iX - Senior C++ Engineer (High Performance Computing)

N-iX

United Kingdom (Remote)
15 Hours ago
Alphasense - Manager, Customer Success (B2B - Presales)

Alphasense

London, England, United Kingdom (On-Site)
2 Months ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

PwC - Cybersecurity Solutions Architect

PwC

Calgary, Alberta, Canada (On-Site)
4 Months ago
Netflix - Engineering Manager, Identity & Authentication Security

Netflix

United States (Remote)
4 Days ago
The Walt Disney Company - Staff Security Specialist, Information Security - Lead Security Solution Architect

The Walt Disney Company

Orlando, Florida, United States (On-Site)
5 Days ago
SmileGate - Security Vulnerability Diagnosis Specialist

SmileGate

Seongnam-si, Gyeonggi-do, South Korea (On-Site)
3 Weeks ago
ION - Intermediate IT Auditor, Italy

ION

Collecchio, Emilia-Romagna, Italy (On-Site)
4 Months ago
Meta - Product Security Engineer

Meta

Menlo Park, California, United States (On-Site)
3 Months ago
ION - Platform Security Analyst

ION

Pisa, Tuscany, Italy (On-Site)
4 Months ago
Terralogic - THREAT HUNTER

Terralogic

Mumbai, Maharashtra, India (On-Site)
5 Months ago
Unity - Senior Infrastructure Security Manager

Unity

Austin, Texas, United States (On-Site)
3 Months ago
PwC - IN-Manager_AWS Engineer_Advisory Corporate_Advisory_Bangalore

PwC

Bengaluru, Karnataka, India (On-Site)
4 Months ago

Get notifed when new similar jobs are uploaded

About The Company

A leader in creating deep and engaging forever games on PC, Console & Mobile that empower our communities. Jagex was founded in 2001 and is today one of the UK’s biggest and most respected video game developers and publishers.


Famed for its flagship MMOs RuneScape and Old School RuneScape, Jagex has welcomed more than 300 million player accounts to its world and created a $1bn lifetime franchise revenue. Today the RuneScape franchise exists beyond running games in live operations; our titles are forever games that connect and inspire millions of players, with content and experiences both inside and outside of inexhaustible game worlds.


Both RuneScape and Old School RuneScape, on PC and mobile, offer ever-evolving, highly-active worlds and our community-focused development ethos empowers players to have a real say in how each game is shaped.


Jagex has added to its skill set with the acquisitions of Pipeworks and Gamepires in 2022, bringing our expertise to titles such as SCUM, helping to make SCUM a forever game. It also works with external partners on products such as Melvor Idle and This Means Warp; bringing these titles to new and existing audiences.


Jagex employs more than 600 people at its Cambridge headquarters and around the world at Pipeworks in North America, and Gamepires in Europe. We’re always on the hunt for talented people to work across the business, to help the company to achieve its goals.

England, United Kingdom (Hybrid)

Cambridge, England, United Kingdom (Hybrid)

Cambridge, England, United Kingdom (Hybrid)

Cambridge, England, United Kingdom (Hybrid)

Cambridge, England, United Kingdom (Remote)

Cambridge, England, United Kingdom (Hybrid)

Cambridge, England, United Kingdom (Hybrid)

Cambridge, England, United Kingdom (Remote)

Cambridge, England, United Kingdom (Remote)

Cambridge, England, United Kingdom (On-Site)

View All Jobs

Get notified when new jobs are added by Jagex

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug