7 дней назад
Technology GRC Analyst
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Technology GRC Analyst (Technology Risk/GRC): Strengthening technology risk and assurance across enterprise infrastructure, cloud platforms, retail systems, digital applications, and supply-chain environments with an accent on risk assessments, controls testing, IAM assurance, and third-party governance. Focus on maintaining risk registers, improving governance and operational resilience, and producing dashboards aligned with NIST, ISO 27001, and PCI DSS requirements.
Location: Meadow Lane, Shirebrook, Mansfield, UK
Company
Retail organisation developing a global ecosystem of sports, premium, and luxury brands through digital innovation and store experiences.
What you will do
- Deliver technology and cyber risk assessments across infrastructure, cloud platforms, retail systems, digital applications, and strategic technology initiatives.
- Test IT General Controls, automated application controls, and operational processes.
- Conduct IAM assurance, including access reviews, privileged access audits, Joiner-Mover-Leaver controls, and Segregation of Duties assessments.
- Maintain the technology risk register and track remediation actions and control improvements.
- Assess supplier, third-party, logistics, warehousing, distribution, and supply-chain technology risks.
- Produce risk dashboards, Key Risk Indicators, management information, and governance reporting while coordinating audit evidence and remediation.
Requirements
- 2+ years of experience in technology risk, IT audit, GRC, internal controls, or cyber risk.
- Experience delivering technology risk assessments and controls testing across enterprise technology environments.
- Strong understanding of ITGCs, technology governance, operational risk management, and IAM reviews.
- Experience with third-party risk management, supplier assurance, internal and external audits, evidence management, and remediation tracking.
- Strong analytical, problem-solving, communication, and stakeholder management skills.
- Experience with GRC platforms such as OneTrust.
Nice to have
- CRISC, CISA, CISM, CISSP, or equivalent certification.
- Experience in retail, e-commerce, or multinational organisations.
- Knowledge of NIST Cybersecurity Framework, ISO 27001, COBIT, ITIL, PCI DSS, or SOX.
- Experience with data analytics, continuous controls monitoring, or assurance automation.
Culture & Benefits
- Full-time employment within a retail group focused on digital innovation and operational growth.
- Head-office employees spend one to two days each financial year in a store or warehouse to understand frontline operations.
- Recognition programmes include Frasers Champion and Fearless 1200.
- Free gym classes, discounted gym memberships, and access to wellbeing resources through Frasers Fit.
- Free access to Retail Trust support, including a 24-hour helpline, counselling, and financial and legal support.
Hiring process
- Initial recruiter interview focused on behaviour and alignment with company culture and values.
- One or two further interviews with the hiring manager and wider team, potentially including a technical presentation or task.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
9 дней назад
GRC Cyber Security Consultant
Ping Identity
10 дней назад
Risk Manager (Cybersecurity)
8 дней назад
IT Risks & Control Manager (Insurance)
59 200 - 88 800GBP
10 дней назад
GRC Engineer (Cybersecurity)
52 000 - 72 000€
CoreWeave
7 дней назад
Data Center Security Risk & Assurance Senior Program Manager
7 дней назад