Information Security GRC Analyst
We are seeking an Information Security GRC Analyst to support the development, maintenance, and continuous improvement of information security governance, risk, and compliance activities. This role will help ensure that security policies, processes, and controls remain aligned with business objectives, regulatory obligations, and recognised industry standards. The successful candidate will work closely with technology, risk, legal, privacy, and operational teams to promote a consistent and effective approach to managing information security risk.
Key responsibilities include maintaining security policies, standards, procedures, and control frameworks; coordinating risk assessments, control reviews, and remediation activities; and supporting internal and external audits. You will collect and analyse evidence, track actions to completion, prepare clear reports for stakeholders, and help monitor compliance with applicable laws, regulations, and contractual requirements. The role will also contribute to third-party risk assessments, security due diligence, exception management, business continuity activities, and the ongoing evaluation of emerging security risks. You may assist with awareness initiatives and provide guidance to colleagues on governance and control requirements.
Applicants should have experience in information security governance, risk management, compliance, audit, or a related discipline. Familiarity with frameworks and standards such as ISO 27001, NIST, CIS Controls, COBIT, SOC 2, or relevant privacy regulations is highly desirable. You will need strong analytical and organisational skills, excellent written and verbal communication, and the ability to manage multiple priorities while working with stakeholders at different levels. Experience using governance, risk, and compliance tools, maintaining risk registers, interpreting control requirements, and producing management information would be advantageous. Relevant professional qualifications or certifications, such as CISA, CRISC, CGRC, ISO 27001, or equivalent experience, are welcomed.
Information Security GRC Analyst
Other similar jobs
Popular job searches
Your next job
starts here.
JOB SPECIALISMS
LATEST JOBS
TOP SEARCHES
LOCATIONS
- Security Engineer
- Security Analyst
- Security Architect
- Security Consultant
- IT Security Manager
- SOC Analyst
- Identity Access Management IAM
- Cyber Security Consultant
- Cloud Security
- Application Security
- Incident Response
- Penetration Tester
LATEST JOBS
- Cyber SOC Specialist - ESN
- End User Platform Vulnerabilit...
- Lead Security Engineer
- Member of Technical Staff (Sof...
- Cyber Security Consultant - As...
- Cyber Security Analyst - Enter...
- Technical Leader - Splunk Secu...
- Digital & Cyber Resilience – M...
- Data Protection Engineer
- Security Advisor
- Information Security Engineer
- Test Automation Engineer - Sec...
TOP SEARCHES
LOCATIONS
- Engineer
- Data Scientist
- Senior Data Scientist
- Head of Data Science
- Trainee Data Scientist
- Data Science Graduate
- Senior Financial Accountant
- Management Accountant
- Cost Accountant
- Civil Engineer
- Senior Civil Engineer
- Civil Design Engineer