Назад
Company hidden
7 дней назад

Technology GRC Analyst

Формат работы
onsite
Тип работы
fulltime
Грейд
junior
Английский
b2
Страна
UK
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Technology GRC Analyst (Technology Risk/GRC): Strengthening technology risk and assurance across enterprise infrastructure, cloud platforms, retail systems, digital applications, and supply-chain environments with an accent on risk assessments, controls testing, IAM assurance, and third-party governance. Focus on maintaining risk registers, improving governance and operational resilience, and producing dashboards aligned with NIST, ISO 27001, and PCI DSS requirements.

Location: Meadow Lane, Shirebrook, Mansfield, UK

Company

Retail organisation developing a global ecosystem of sports, premium, and luxury brands through digital innovation and store experiences.

What you will do

  • Deliver technology and cyber risk assessments across infrastructure, cloud platforms, retail systems, digital applications, and strategic technology initiatives.
  • Test IT General Controls, automated application controls, and operational processes.
  • Conduct IAM assurance, including access reviews, privileged access audits, Joiner-Mover-Leaver controls, and Segregation of Duties assessments.
  • Maintain the technology risk register and track remediation actions and control improvements.
  • Assess supplier, third-party, logistics, warehousing, distribution, and supply-chain technology risks.
  • Produce risk dashboards, Key Risk Indicators, management information, and governance reporting while coordinating audit evidence and remediation.

Requirements

  • 2+ years of experience in technology risk, IT audit, GRC, internal controls, or cyber risk.
  • Experience delivering technology risk assessments and controls testing across enterprise technology environments.
  • Strong understanding of ITGCs, technology governance, operational risk management, and IAM reviews.
  • Experience with third-party risk management, supplier assurance, internal and external audits, evidence management, and remediation tracking.
  • Strong analytical, problem-solving, communication, and stakeholder management skills.
  • Experience with GRC platforms such as OneTrust.

Nice to have

  • CRISC, CISA, CISM, CISSP, or equivalent certification.
  • Experience in retail, e-commerce, or multinational organisations.
  • Knowledge of NIST Cybersecurity Framework, ISO 27001, COBIT, ITIL, PCI DSS, or SOX.
  • Experience with data analytics, continuous controls monitoring, or assurance automation.

Culture & Benefits

  • Full-time employment within a retail group focused on digital innovation and operational growth.
  • Head-office employees spend one to two days each financial year in a store or warehouse to understand frontline operations.
  • Recognition programmes include Frasers Champion and Fearless 1200.
  • Free gym classes, discounted gym memberships, and access to wellbeing resources through Frasers Fit.
  • Free access to Retail Trust support, including a 24-hour helpline, counselling, and financial and legal support.

Hiring process

  • Initial recruiter interview focused on behaviour and alignment with company culture and values.
  • One or two further interviews with the hiring manager and wider team, potentially including a technical presentation or task.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →