Job Opportunities API

The Public Ledger of Openings

← Back to the ledger

GRC Lead

Streetgroup
CompanyStreetgroup
CategoryLegal & Compliance
LocationManchester
RemoteHybrid
EmploymentNot stated
LevelLead
SalaryGBP 40k–50k
Posted10 Jul 2026
Last verified31 Jul 2026
SourceEmployer career page (ashby)
Applications are handled by the employer, not by us.Apply on the employer's site →
Description
GRC Lead 📍 Manchester (Hybrid, up to 4 days WFH) 💰 £40k-£50k (negotiable) Street Group is one of the fastest-growing PropTech companies in the UK. We want to be the leading creator of delightful experiences for everybody involved in buying, selling, renting and letting property, regardless of their involvement, to improve the industry for everybody by elevating UK Estate Agencies through world-class technology. We're moving towards ISO certification for security, with SOC 2 and other standards likely to follow as we expand into new markets. Getting there - and staying there - takes dedicated documentation, tracking and governance, and that's where you come in. We're looking for a GRC Lead to own the frameworks, audits and evidence that prove we do what we say we do, working alongside our Security & Resilience Lead as we grow this function. This is a genuinely flat, cross-functional role. You'll work directly with sales, marketing and engineering with no layers of hierarchy between you and the people who hold the information you need. You'll have real autonomy in how you run the audit programme. Here's what you can expect to be working on as our GRC Lead - Work with teams across the business to produce business continuity plans in a standardised format. - Support customer due diligence and KYC checks - particularly important in the payment space - and formalise this into a robust, business-as-usual process, alongside supporting contract reviews. - Keep on top of the legal and regulatory landscape, translating incoming legislation into a clear playbook for teams well ahead of time. - Own our data classification framework, privacy policies, information asset register and records of processing. - Map how data flows through the business, risk-assess critical processes as an independent party, and maintain the corporate risk register - standardising how risk, including impacts, are scored and reported to stakeholders. - Keep our governance documentation, policies and knowledge repositories standardised, version-controlled and free of duplication. - Build and run an efficient annual internal audit programme across every part of the business, from sales to finance to physical security. - Support FAQs, RFIs and marketing reviews with up-to-date evidence from your audits, and coordinate physical and environmental audits and annual service reviews. Why you should (and shouldn't) apply You should apply if: - You'd rather enable good practice across a business than dictate it from an ivory tower - you know how to get buy-in, not just compliance. - You want breadth: you'll work with sales, marketing, engineering and finance, genuinely cross-functional rather than siloed in one team. - You want the autonomy to choose your own approach to audit and governance, as long as it's effective and efficient. - You're comfortable holding people accountable - the worst thing you could do here is let something slide because it's easier than having a difficult conversation. You probably shouldn't apply if: - You need everything mapped out for you - part of the role is choosing how you run your own audit programme. - You're not open to new ideas and continual improvement. - You're looking for a technical security role only - that's a different hire; this one is about governance, documentation and people. - You'd rather work with one team than build relationships and trust across the whole business. A bit about you - Solid experience in Governance, Risk and Compliance, with knowledge of compliance frameworks such as ISO 27001. - Comfortable working with data and information, with a good understanding of data privacy and information governance principles. - A confident communicator who's trusted by the people they work with - you'll be sitting with sales, marketing and engineering just as often as with the security team, so relationships and trust matter as much as technical depth. - Excel
HOUSE AD1,064,721 openings. Erioun finds yours.Scored against your own profile, every hour.Try the radar →
GRC Lead — Streetgroup · Job Opportunities API