Назад
Company hidden
7 часов назад

Security GRC Analyst (Fintech)

Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
UK
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Security GRC Analyst (Fintech): Scaling security compliance and risk management programs in a cloud-native environment with an accent on regulatory alignment (SOC 2, ISO 27001, PCI-DSS) and risk-first mitigation strategies. Focus on automating evidence collection, conducting third-party risk assessments, and bridging the gap between technical engineering teams and business governance.

Location: Must be based in London, UK (Hybrid role with office attendance required Tuesday-Thursday).

Company

hirify.global is a profitable, high-growth fintech unicorn rebuilding consumer finance products like loans, credit cards, and car finance using modern technology.

What you will do

  • Maintain and scale security compliance programs including SOC 2, ISO 27001, and PCI-DSS.
  • Identify and assess security risks, including emerging threats from AI-driven and agentic systems.
  • Implement compliance automation using platforms like Vanta or Drata to streamline audit readiness.
  • Conduct third-party and vendor security risk assessments.
  • Translate technical security metrics into risk-based narratives for stakeholders and auditors.
  • Promote security awareness and culture across the organization.

Requirements

  • 5+ years of experience in a related security or GRC role, ideally in a regulated or fintech environment.
  • Strong foundational knowledge of security risk management and compliance frameworks (ISO 27001, PCI-DSS, SOC 2).
  • Ability to balance strict financial regulations with operational agility.
  • Outstanding communication skills for bridging technical and business perspectives.
  • Proactive, self-motivated mindset with a risk-first approach.

Nice to have

  • Practical experience with security compliance platforms like Vanta or Drata.
  • Proficiency in Python or similar scripting languages for automation.
  • Experience leveraging AI to improve productivity.

Culture & Benefits

  • Best-in-class compensation package including equity.
  • Hybrid work model with flexibility to work from home on Mondays and Fridays.
  • In-house chefs providing fresh, healthy lunches in the office Tuesday-Thursday.
  • Private health insurance coverage.
  • Inclusive and open workspace focused on well-being and professional growth.

Hiring process

  • Initial recruiter chat and cognitive assessment.
  • Hiring manager call and technical interview.
  • Culture-add interview.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →