PGI is a global consultancy that helps organisations build digital resilience. We deploy our people to implement solutions on behalf of clients or to support them in developing their own capabilities. Our vision is a world resilient to digital threats and online harm. To achieve this, we need to grow our team of talented and passionate people.
Our clients include some of the most well-known global brands, national governments, and innovative growing businesses. We operate in an exciting, fast-growing sector that bears increasing relevance and importance to nation-states, corporates, universities, and NGOs.
This role is focused on providing hands-on support across a broad range of Risk & Compliance activities. You will help maintain certifications, coordinate audits and governance processes, support risk management activities, and work collaboratively with stakeholders across the organisation. You will also provide additional capacity for business-critical initiatives and help ensure Risk & Compliance continues to enable business performance rather than act as a barrier to it.
While primarily a support role, you will be expected to work with a high degree of autonomy and act as deputy to the Head of Risk & Compliance when required, including taking ownership of key activities, supporting senior stakeholder engagement, and representing the function during periods of absence.
Working closely with the Head of Risk & Compliance, you will help coordinate and deliver key risk, governance, information security, and compliance activities, ensuring the function continues to operate effectively while supporting the wider business.
Strong communication and relationship-building skills are essential, as you will work with colleagues at all levels of the organisation, external auditors, clients, suppliers, and certification bodies. You will provide appropriate challenge, support sound decision-making, and contribute to the delivery of a pragmatic and commercially focused Risk & Compliance function. Your responsibilities will include, but are not limited to:
Support the maintenance and coordination of ISO 27001 certification, acting as lead coordinator when required.
Coordinate internal audits, business continuity exercises, and related compliance activities.
Maintain key governance artefacts, including the Corrective Actions Log, Audit Schedule, and Continuous Improvement Plan.
Support risk assessments, management reviews, supplier security due diligence, and the review and maintenance of security policies, procedures, and plans.
Coordinate security awareness and training programmes, including new starter inductions, and manage the company's e-learning platform (Usecure).
Provide guidance and support on day-to-day data protection matters, acting as a key point of contact and escalating complex issues where appropriate.
Support and, where required, oversee the organisation's ongoing compliance with GDPR and wider data protection requirements.
Monitor and support compliance with client contractual obligations relating to data protection.
Support the Head of Risk & Compliance in maintaining corporate and departmental risk registers, taking ownership of activities when required.
Promote a positive, proportionate, and risk-aware culture across the organisation.
Support business growth and delivery by providing Risk & Compliance input throughout the sales process, including bid submissions and customer due diligence questionnaires.
Support the maintenance and review of corporate governance policies, including Anti-Bribery and Code of Conduct policies.
Coordinate activities supporting the maintenance of ISO 9001 certification across the organisation.
Maintain corporate certifications and registrations, including certification records and renewal schedules.
Support environmental management, sustainability initiatives, and related reporting requirements.
Assist with the administration and reporting obligations of the Business Ethics Framework, including the UN Global Compact (UNGC).
Experience in corporate governance, risk, and compliance roles within a similarly sized organisation, including maintaining and managing risk registers.
Excellent communication skills, with the ability to build effective relationships with senior stakeholders, managers, employees, clients, auditors, and compliance bodies.
Strong attention to detail, commercial awareness, and organisational skills, alongside excellent time management and prioritisation abilities.
Experience providing deputy or stand-in support for a senior Risk, Compliance, Information Security, or Governance leader.
This is a 3-6 month fixed-term contract (FTC) opportunity based at our Bristol office in Bradley Stoke (BS32). The role is available for an immediate or early start and offers an excellent opportunity to contribute to key Risk, Compliance, Information Security, and Governance activities within the organisation.
Diversity, Equity and Inclusion at PGI
As a British company which operates internationally, we draw strength from the diversity of our people. Without our diverse team, we couldn’t do the work we do. We are involved in projects across 80+ geographies, our people speak 25+ languages and come from a variety of backgrounds. By hiring and cultivating a diverse, equitable and inclusive workforce, we can uphold values that enable every member of the team to thrive, while delivering novel solutions to novel problems.
Accessibility at PGI
Every individual has different requirements, so we are committed to implementing reasonable adjustments to mitigate physical and non-physical barriers in the workplace.
We strive to make the recruitment process as accessible as possible, but if you have any questions or concerns, please get in touch.
Please note: We are not accepting applications or speculative profiles from any recruitment agencies. If we require additional resource, we will reach out to you.