24 часа назад
Cyber GRC Analyst (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Cyber GRC Analyst (Cybersecurity): Supporting enterprise-wide cyber governance, risk, and compliance across a complex technology environment with an accent on risk assessments, security control assurance, regulatory compliance, and third-party risk management. Focus on testing controls against NIST, ISO 27001, GDPR, and NIS2 requirements, tracking remediation and risk metrics, and strengthening cyber resilience governance.
Location: Not specified for the role. is headquartered in Dublin and has remote teams in the UK and Europe.
Company
is a technology-driven company founded in 2013 that helps airlines modernize operations using cloud, data, and AI solutions.
What you will do
- Perform cyber risk assessments across systems, projects, technology changes, and third-party suppliers.
- Conduct security control testing and assurance activities against internal and regulatory frameworks.
- Support governance, risk, compliance, business continuity, disaster recovery, and cyber resilience activities.
- Monitor compliance with cybersecurity policies, standards, and requirements including NIS2, GDPR, NIST CSF, and ISO 27001.
- Support audits, regulatory inspections, governance reporting, and remediation tracking.
- Manage policy lifecycle activities and collaborate with technology and business stakeholders to improve cyber governance and assurance processes.
Requirements
- 5+ years of experience in cybersecurity, risk management, governance, compliance, or technology assurance.
- Hands-on experience with cyber risk assessments, control testing, or compliance assurance.
- Strong understanding of risk management principles, security governance, and third-party risk management.
- Familiarity with NIST, ISO 27001, CIS, GDPR, and related regulatory requirements.
- Experience supporting audits, assurance reviews, or project and change risk assessments.
- Strong written communication, stakeholder management, prioritization, and independent working skills.
Nice to have
- Experience in aviation, finance, critical infrastructure, or another regulated industry.
- Knowledge of secure-by-design principles, cloud security controls, modern IT environments, and cyber recovery.
- Experience with BCM, disaster recovery, or resilience frameworks.
- Familiarity with SureCloud, Archer, ServiceNow GRC, or Power BI.
- CISSP, CISA, CRISC, or ISO 27001 Lead Auditor/Implementer certification.
Culture & Benefits
- Flexible working environment.
- Career advancement opportunities.
- Learning and development opportunities.
- Competitive salary based on experience.
- Inclusive workplace committed to diversity, equity, and inclusion.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →