SonicJobs Logo
Login
Left arrow iconBack to search

GRC Analyst

Lacuna Talent
Posted 6 hours ago, valid for 23 days
Location

Bristol, City of Bristol BS1 6WS, England

Salary

£50,000 - £55,000 per annum

Contract type

Full Time

By applying, a CV-Library account will be created for you. CV-Library's Terms & Conditions and Privacy Policy will apply.

Sonic Summary

info
  • The position is for an Information Security Analyst based in the Bristol Office, requiring 3 days a week in the office or 2 days if living more than 1.5 hours away.
  • The role focuses on risk management, compliance, and policy development, aligning with industry standards such as NIST and ISO 27001.
  • Candidates should have experience in building compliance frameworks and policies using Microsoft tools, along with relevant certifications like CISA, CISM, and CRISC.
  • Collaboration with various business units is essential to reduce risk and ensure compliance with regulations.
  • The salary for this position is competitive, and candidates are expected to have several years of relevant experience in information security.

Location: Bristol Office (3 days a week in the office, 2 days if living more than 1.5 hours away)


We are working with a global client seeking a Information Security Analyst to focus on risk management, compliance, and policy. You will be responsible for developing and implementing internal control frameworks and defining policies in line with industry standards such as NIST and ISO 27001. Collaboration with various business units will be key to reducing risk and ensuring compliance with regulations.

Key Responsibilities:

  • Focus on risk management and compliance, including policy and standards development.
  • Map internal controls to industry standards such as NIST and ISO 27001.
  • Build and define security policies, ensuring alignment with organizational goals.
  • Develop and manage compliance frameworks using Microsoft tools such as SharePoint, Power BI, Power Automate, and Risk Automate.
  • Work closely with security operations, procurement, risk management, and technology teams across various regions.
  • Identify and deliver service/control improvements and contribute lessons learned to future projects.

Desired Skills and Qualifications:

  • Certifications: CISA, CISM, CRISC, NIST, ISO 27001.
  • Experience with building compliance frameworks and policies using Microsoft tools.

Please apply if interested!

Apply now in a few quick clicks

By applying, a CV-Library account will be created for you. CV-Library's Terms & Conditions and Privacy Policy will apply.