Information Security GRC Analyst
We are seeking an Information Security GRC Analyst to support the development, maintenance, and continuous improvement of information security governance, risk, and compliance activities. This role will help ensure that security policies, processes, and controls remain aligned with business objectives, regulatory obligations, and recognised industry standards. The successful candidate will work closely with technology, risk, legal, privacy, and operational teams to promote a consistent and effective approach to managing information security risk.
Key responsibilities include maintaining security policies, standards, procedures, and control frameworks; coordinating risk assessments, control reviews, and remediation activities; and supporting internal and external audits. You will collect and analyse evidence, track actions to completion, prepare clear reports for stakeholders, and help monitor compliance with applicable laws, regulations, and contractual requirements. The role will also contribute to third-party risk assessments, security due diligence, exception management, business continuity activities, and the ongoing evaluation of emerging security risks. You may assist with awareness initiatives and provide guidance to colleagues on governance and control requirements.
Applicants should have experience in information security governance, risk management, compliance, audit, or a related discipline. Familiarity with frameworks and standards such as ISO 27001, NIST, CIS Controls, COBIT, SOC 2, or relevant privacy regulations is highly desirable. You will need strong analytical and organisational skills, excellent written and verbal communication, and the ability to manage multiple priorities while working with stakeholders at different levels. Experience using governance, risk, and compliance tools, maintaining risk registers, interpreting control requirements, and producing management information would be advantageous. Relevant professional qualifications or certifications, such as CISA, CRISC, CGRC, ISO 27001, or equivalent experience, are welcomed.
Information Security GRC Analyst
Other similar jobs
Popular job searches
Your next job
starts here.
JOB SPECIALISMS
LATEST JOBS
TOP SEARCHES
LOCATIONS
- Security Engineer
- Security Analyst
- Security Architect
- IT Security Manager
- Security Consultant
- SOC Analyst
- Identity Access Management IAM
- Cyber Security Consultant
- Cloud Security
- Application Security
- Incident Response
- Penetration Tester
LATEST JOBS
- Security Engineer (Contractor)
- Vice President, Field CISO Com...
- Microsoft 365 & Security Infra...
- Senior ICT Security Designer
- Data Protection Expert
- Data Protection Officer: Schoo...
- Data Protection Officer
- IT CONSULTANT (IT Management,...
- Technology and Cyber Employee...
- Cyber Security Consultant
- Cyber Security Consultant (Pen...
- Platform and Services Engineer...