Senior Associate, Cybersecurity compliance

3 weeks ago


United Kingdom Grant Thornton International Ltd Full time

About Grant Thornton


Grant Thornton is one of the world’s leading professional services networks with member firms in over 145 countries, 72,000 people and global revenues of $7.5bn. Member firms offer audit, tax, and advisory services to privately owned companies, publicly listed companies, public sector and not for profit organisations, both domestically and internationally.


Grant Thornton International Ltd (GTIL) is the umbrella legal entity for the Grant Thornton global network of member firms. GTIL sets the strategic direction, convenes member firms, connects global communities, and protects the brand and reputation of the network. GTIL and the member firms will continually improve the sustainability of their operations and strive to make a positive impact on clients, people, markets, and the communities in which we operate, in line with the UN’s Sustainable Development Goals (SDGs).


Overall role purpose


In our Go Beyond network strategy 2025 our vision is to become ‘the most valued network in the profession’.


The primary purpose of this role is to support Grant Thornton International Ltd.’s internal cybersecurity assessment programme, which monitors our global network of Member Firms for compliance against our information security framework.


The ideal candidate will have experience evaluating IT Infrastructure Security technologies, IT general computer controls, industry frameworks (e.g. NIST) and will bring strong information technology audit or security consulting experience to the programme.


Location


United Kingdom/Europe


Main responsibilities


The Senior Associate will support with the implementation of the cybersecurity compliance programme, including:


  • Collaboration with IT assurance engagement teams across the GT network
  • Review of data and evidence obtained in the field, including reviews for completeness, consistency and clarity.
  • Evaluate cybersecurity risks and advise on risk mitigation activities.
  • Engagement with compliance colleagues, Technology and Business leaders, including the delivery of reporting material and presentations.
  • Tracking and coordination of follow up remediation cycles for those firms with findings of non-compliance.
  • Drive developments and improvements to the programme for future assessment cycles.


This role will also include broader support to the team such as:


  • Respond to firm enquiries and mailbox management.
  • Provide advice and guidance on a variety of security topics.
  • Develop guides, templates and other material to support the implementation of security standards.
  • Research security best practices and provide appropriate reporting.


Person specification


Education/qualifications


Bachelor’s degree in IT/Computer Science desirable

One of or similar to the following is desirable:


  • CompTIA Security+ or CASP+
  • Associate of (ISC)2
  • ISO27001 Practitioner


Experience – Essential


  • Demonstrable experience in a similar role.
  • Prior experience within a security compliance assurance or auditing position.
  • Understanding of relevant regulatory requirements and assurance processes, including various auditing standards such as NIST and ISO27001
  • Analytical skills to collect, analyse and interpret information and/or data into useful insight
  • Excellent communication skills, both verbal and written, with the ability to initiate and lead conversations with senior stakeholders
  • Ability to prioritise and manage a varying workload


Experience - Desirable


  • Experience with using GRC solutions as part of a risk management programme.
  • Understanding of cyber security best practices including knowledge of the general cyber threat landscape and common security controls architecture.
  • Due to the global scope of the role, any multi-language capability would be highly desirable.


Benefits


There are many benefits of being part of Grant Thornton International, working with a global and diverse team in a virtual setting is just one of them. We pride ourselves on our inclusive culture and believe it's one of our most valuable assets.


We also recognise the importance of time off at Grant Thornton International. Taking time away can lead to improved wellbeing and better productivity, which is why we don’t cap your leave. So if you need to take that extra Friday off (and Monday too), no problem.


We believe work is no longer a location, it is what we do. This should help all of us deliver our best work, while achieving the right balance in our lives. We want to build a culture of virtual inclusivity. One where all our people have the ability to choose what works best for them but also provides our people the best shared working experience utilising the digital tools we have available. GTIL will provide individuals with the necessary support and equipment to work effectively from home. We also have a collaborative space to offer should you prefer working outside of your home.


We will offer you access to digital learning options, as well as external training, should you role and development needs require this.


We fully understand the importance of balancing your life and we aim to support that with remote working and flexibility within your role. We understand the time you spend outside of work helps shape what you bring into work, so we encourage flexibility on both sides. However, if you prefer to work from the office, this is also something we offer.


We also understand the importance of working comfortably in a remote office - most likely your home, which is why we offer all staff a monthly home office allowance to ensure you're well equipped and able to undertake your role to the fullest.


These are just some of the benefits of working at Grant Thornton International. We also have a wide range of attractive core benefits including pension, health insurance, wellbeing programmes and much much more.



  • United Kingdom TalentHawk Full time

    Position Overview: We are seeking a highly skilled Cyber Security Compliance Specialist to support our client in managing and enhancing the cybersecurity compliance of its suppliers and third-party partners. This role is critical for ensuring supplier adherence to cybersecurity standards, particularly in line with the Network and Information Systems (NIS)...


  • United Kingdom TalentHawk Full time

    Position Overview: We are seeking a highly skilled Cyber Security Compliance Specialist to support our client in managing and enhancing the cybersecurity compliance of its suppliers and third-party partners. This role is critical for ensuring supplier adherence to cybersecurity standards, particularly in line with the Network and Information Systems (NIS)...


  • United Kingdom 83zero Full time €70,000 - €80,000

    Senior Security Manager 83zero is working with a leading IT consultancy that partners with global organisations to deliver IT operations along with business advancements through the adoption of new and innovative technologies. Our client partners with a number of international private businesses in shipping, real estate, energy, banking, and investments....


  • United Kingdom 83zero Full time €70,000 - €80,000

    Senior Security Manager 83zero is working with a leading IT consultancy that partners with global organisations to deliver IT operations along with business advancements through the adoption of new and innovative technologies. Our client partners with a number of international private businesses in shipping, real estate, energy, banking, and investments....

  • Sales Representative

    4 weeks ago


    united kingdom Obeden Compliance Full time

    Job Title:  Sales Representative (Contract) – SaaS Data Compliance Platform Location:  Remote (UK-based) Obeden Compliance  is an innovative startup providing end-to-end governance, risk, and compliance solutions focused on delivering data privacy compliance for organisations and their suppliers. Our cutting-edge SaaS platform helps SMEs assess,...


  • United Kingdom TalentHawk Full time

    Position Overview: We are seeking a highly skilled Cyber Security Compliance Specialist to support our client in managing and enhancing the cybersecurity compliance of its suppliers and third-party partners. This role is critical for ensuring supplier adherence to cybersecurity standards, particularly in line with the Network and Information Systems...


  • United Kingdom TalentHawk Full time

    Position Overview: We are seeking a highly skilled Cyber Security Compliance Specialist to support our client in managing and enhancing the cybersecurity compliance of its suppliers and third-party partners. This role is critical for ensuring supplier adherence to cybersecurity standards, particularly in line with the Network and Information Systems...

  • Senior Security Manager

    42 minutes ago


    United Kingdom 83zero Full time

    Senior Security Manager 83zero is working with a leading IT consultancy that partners with global organisations to deliver IT operations along with business advancements through the adoption of new and innovative technologies. Our client partners with a number of international private businesses in shipping, real estate, energy, banking, and investments....

  • IT Risk

    3 weeks ago


    United Kingdom Brown & Brown Europe Full time

    IT Risk & Compliance Manager Location: Hybrid - London Package: Negotiable + Benefits We are seeking an experienced leader to join our growing organisation as the IT Risk and Compliance Manager. In this high profile role, you will be responsible for evolving, implementing, and maintaining a robust IT risk management and compliance framework that...


  • United Kingdom AJ FOX COMPLIANCE Full time

    Our client, a full-service law firm, is looking for a Compliance Manager to join their team in Birmingham. The main purpose of this role is to ensure that all risk management and compliance policies, controls and procedures within the firm meet regulatory standards and regulations. The ideal candidate will have experience in a risk and compliance role at a...


  • United Kingdom Azets Full time

    Azets are a leading firm of Accountants and Business Advisers operating across the UK, Ireland and the Nordics, we have a wide network of employees and an abundance of inspiring opportunities to join one of our many offices! We are a top ten accountancy firm in the UK and are the number one largest SME practice. As a Compliance Senior with Azets, you...


  • United Kingdom Sinclair Talent Solutions Full time

    Seeking a Cybersecurity Content Architect to join our leading cybersecurity team in Belfast, NI. This role serves as a senior level professional who is responsible for developing and driving the Content Engineering for multi-tenant SIEM and SOAR solutions. This professional is an experienced individual in detection and automation logic that provides...


  • United Kingdom Sinclair Talent Solutions Full time

    Seeking a Cybersecurity Content Architect to join our leading cybersecurity team in Belfast, NI. This role serves as a senior level professional who is responsible for developing and driving the Content Engineering for multi-tenant SIEM and SOAR solutions. This professional is an experienced individual in detection and automation logic that provides...


  • United Kingdom Globalization Partners Full time

    Globalization Partners - Remote-First**Company Overview:**We are a global company that enables businesses to expand into new markets without the need for physical presence. Our Employer of Record solutions make it easy to hire and manage teams in 180+ countries.**Job Title and Location:Cybersecurity Specialist - Global Governance (Remote within Northern...


  • United Kingdom Azets Full time

    Who are Azets Azets are a leading firm of Accountants and Business Advisers operating across the UK, Ireland and the Nordics, we have a wide network of employees and an abundance of inspiring opportunities to join one of our many offices! We are a top ten accountancy firm in the UK and are the number one largest SME practice. The Opportunity As a...


  • United Kingdom Azets Full time

    Who are AzetsAzets are a leading firm of Accountants and Business Advisers operating across the UK, Ireland and the Nordics, we have a wide network of employees and an abundance of inspiring opportunities to join one of our many offices!We are a top ten accountancy firm in the UK and are the number one largest SME practice.The OpportunityAs a Compliance...


  • United Kingdom Azets Full time

    Who are AzetsAzets are a leading firm of Accountants and Business Advisers operating across the UK, Ireland and the Nordics, we have a wide network of employees and an abundance of inspiring opportunities to join one of our many offices!We are a top ten accountancy firm in the UK and are the number one largest SME practice.The OpportunityAs a Compliance...


  • United Kingdom Lawson Rowe Full time

    Governance Associate/Senior Associate*Please note these roles are not currently open, but I am still interested in speaking with you if you are interested in these roles for early 2025 when my clients recruitment round starts again. So please do apply if you are interested in finding out more.Remote working Company Secretarial role with a supportive boutique...


  • United Kingdom 55 Exec Search Full time

    OT Senior Cyber Security Consultant – (OT / GRC) We are looking for experienced Senior Cyber Security Consultants who have broad Cyber Governance Risk and Compliance advisory(GRC) and OT industry experience for our client a global pure-play cyber security consulting firm. The role will be to provide strategic technical advisory consulting to a wide...

  • Information Security

    2 months ago


    United Kingdom TalentHawk Full time

    Overview: We are seeking a highly experienced and well-rounded Head of Security to lead and manage our cybersecurity function. This role is critical to ensuring the security, resilience, and maturity of the organization’s cyber operations. The ideal candidate will possess a deep understanding of cybersecurity across multiple domains, along with...