Security GRC Analyst
We are seeking a Security GRC Analyst to support the development, implementation and continuous improvement of governance, risk and compliance practices across the organisation. In this role, you will help ensure that information security policies, processes and controls align with business objectives, regulatory requirements and recognised industry standards. You will work closely with security, technology, legal, privacy, audit and operational teams to promote effective risk management and a strong culture of security awareness.
Your responsibilities will include maintaining security policies, standards, procedures and control frameworks; coordinating risk assessments and documenting findings, treatment plans and remediation activities; supporting internal and external audits; and monitoring the status and effectiveness of security controls. You will assist with third-party and supplier security reviews, track compliance obligations, prepare governance reports and dashboards, and contribute to information security questionnaires and customer assurance requests. You will also help identify opportunities to improve processes, strengthen control maturity and streamline evidence collection. The role may involve supporting frameworks and requirements such as ISO 27001, SOC 2, NIST, CIS Controls, GDPR or other relevant legislation and standards.
To succeed, you will have experience in security governance, risk, compliance, audit or a related information security discipline, together with a practical understanding of control design, risk assessment and remediation tracking. Familiarity with GRC platforms, audit management tools and common security frameworks is desirable. You should be analytical, organised and confident working with stakeholders at different levels, with the ability to translate technical and regulatory requirements into clear, actionable outcomes. Strong written and verbal communication skills, attention to detail and the ability to manage competing priorities are essential. Relevant certifications such as CISA, CRISC, CISSP, ISO 27001 Lead Implementer or Lead Auditor are advantageous, as is experience in a regulated or technology-focused environment.
Security GRC Analyst
Other similar jobs
Popular job searches
Your next job
starts here.
JOB SPECIALISMS
LATEST JOBS
TOP SEARCHES
LOCATIONS
- Security Engineer
- Security Analyst
- Security Architect
- IT Security Manager
- Security Consultant
- SOC Analyst
- Identity Access Management IAM
- Cyber Security Consultant
- Cloud Security
- Application Security
- Incident Response
- Penetration Tester
LATEST JOBS
- Security Engineer (Contractor)
- Vice President, Field CISO Com...
- Microsoft 365 & Security Infra...
- Senior ICT Security Designer
- Data Protection Expert
- Data Protection Officer: Schoo...
- Data Protection Officer
- IT CONSULTANT (IT Management,...
- Technology and Cyber Employee...
- Cyber Security Consultant
- Cyber Security Consultant (Pen...
- Platform and Services Engineer...