Oliver James has partnered with a industry leader who are currently looking for a GRC Analyst to join the team.
Your role is to support the Information Security GRC Manager in understanding, evaluating, and communicating information security risks ensuring the security posture aligns with compliance and regulatory obligations. Improving and maintaining the information security governance and risk frameworks to ensure compliance with relevant standards and regulations.
Experience Required:
-
Proven experience in information security, risk, or governance.
-
Solid understanding of key security frameworks and regulations like ISO 27001, NIST, and GDPR.
-
Familiar with risk assessments, mitigation strategies, and creating action plans.
-
Confident in writing reports and documentation such as audits, assessments, and gap analyses.
-
Experienced in tracking and ensuring compliance with standards like ISO 27001 and PCI-DSS.
-
Strong communicator, able to work effectively with stakeholders at all levels.
Key Responsibilities include:
-
Identify, document, and communicate security risks, and help create strategies to manage them.
-
Maintain and improve security governance and risk frameworks.
-
Monitor compliance with security policies, standards, laws, and regulations.
-
Coordinate both internal and external security audits.
-
Evaluate risks related to vendors, partners, and suppliers.
-
Share security policies and regulatory requirements across the business.