GRC Lead
Listed on 2026-02-05
-
IT/Tech
Cybersecurity, Systems Engineer, Data Security
Radar Healthcare is dedicated to improving patient safety by bringing together the expertise of healthcare professionals and the power of intuitive software. Our innovative platform is developed in partnership with industry experts to help organisations meet regulatory standards and deliver top-quality care. We are on a mission to become a world-leading health-tech pioneer, and we’re looking for talented individuals to join us.
If you’re passionate about improving healthcare outcomes and want to work with a collaborative team, we’d love to hear from you.
At Radar Healthcare, we are values-led, open, supportive and inclusive. We’re seeking people who share these values to ensure we’re aligned from day one. We’re looking for candidates who embody:
- Customer focused with a partnership approach
- Open, honest and transparent
- Innovative
- Ethical, trustworthy and caring
We value our people as our greatest asset. We celebrate diversity and a shared mission of innovation in healthcare. We’re ambitious yet caring, and we enjoy collaborating in person and remotely, including at our Leeds office.
We’re Great Place to Work-Certified with strong feedback from our team, and Radar Healthcare has been recognized in lists such as the UK’s Top 100 Companies to Work For and Top 20 Tech Companies to Work For.
The OpportunityRadar Healthcare’s new GRC Lead role supports growth across the UK, US, Middle East, and APAC. You will strengthen our security function to support an integrated management system (ISO 27001, ISO 9001, DSPT, CE+) and ensure security, quality, and resilience remain central to our SaaS platform. We are seeking an experienced, hands-on GRC Lead with an engineering mindset, focused on scalable, integrated, and automated GRC capabilities.
This role embeds governance, risk, and assurance into engineering workflows, business processes, and supplier onboarding rather than relying on manual controls.
Operational Security & Incident Management
- Own and coordinate incident response activities end-to-end, including detection, containment, communication, RCA, and reporting
- Engineer improvements into incident workflows, tooling, and playbooks to reduce response time and operational friction
- Maintain and improve incident response playbooks and runbooks, aligning with SaaS operations and cloud environments
- Conduct regular tabletop exercises and ensure lessons learned are embedded into processes and controls
Risk Management, Governance & Control Engineering
- Support ongoing operation of the Radar risk register (ISO 27001:2022 aligned) with focus on automation and integration with delivery workflows
- Design and evolve risk workflows that align with engineering, product, and operational processes
- Map risks to SoA controls and ensure treatment actions are evidenced through system-generated artefacts
- Contribute to internal and external audit preparation (ISO 27001/9001, DSPT, CE+, client/security assessments) with reusable evidence
- Assist in maintaining policy, SOP, and governance documentation
Third-Party & Supplier Security
- Engineer and mature Radar’s supplier security and due diligence lifecycle, including onboarding assessments, tiering, annual reviews, and risk-based re-assessment
- Integrate third-party risk management into procurement, legal, and delivery workflows
- Liaise with vendors to validate evidence, track remediation, and ensure ongoing compliance with ISO, DSPT, and client obligations
- Maintain the supplier register and drive improvements in automation, reporting, and evidence reuse
Business Engagement & Communication
- Work with Engineering, Product, Quality, Enterprise IT, and Operations to co-design pragmatic, buildable controls
- Facilitate discussions on business impact, resilience, and continuity during service outages
- Present security insights and updates to internal stakeholders in a clear, concise, non-technical manner
Project & Change Management
- Design, lead, and deliver GRC engineering initiatives, including tooling implementations and workflow automation
- Apply project management discipline to tracking deliverables, stakeholders, and status
- Ensure security and compliance…
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search: