Senior Governance Risk and Compliance Analyst
1 week ago
Job Description:
We are seeking a highly skilled and experienced Senior Governance Risk and Compliance (GRC) Analyst to assist customers in meeting their cybersecurity regulatory and legal requirements.This role will focus on Policy Development, Risk Assessment and Risk Management, Gap Analysis and Due Diligence.
Analysts will work with customers to develop formalized information security policies, analyze the efficacy of current policies and procedures, and evaluate the risks posed by third-party providers.
The ideal candidate will have a solid understanding of information security strategies suitable for small and mid-size businesses within the financial services sector coupled with a solid grasp.
Responsibilities (including but not limited to):
- Coordinating and working with clients to develop formalized Written Information Security Programs (WISPs)
- Performing cybersecurity due diligence assessments on client vendors
- Engaging with the cybersecurity engineering team to assist with client risk management and technical gaps with regulatory requirements.
- Assist with providing strategic guidance and oversight on regulatory and risk management procedures for multiple clients’ cybersecurity programs.
- Assisting clients in meeting regulatory requirements via policy review and testing (e.g., Incident Response tabletop exercises)
- Assisting clients with their own due diligence questionnaire and fielding cybersecurity and compliance questions
- Providing customized end-user security awareness training via presentations and simulated phishing campaigns
- Researching and keeping up to date with industry compliance regulations, most specifically within the investment and financial services space including FCA, SEC, and DORA.
- Build and maintain strong relationships with clients, understanding their unique compliance challenges and providing tailored solutions.
- Internally assess, evaluate, and make recommendations to management regarding the adequacy of the security policies and documentation.
- Serving as a lead resource for compliance-based information security gap assessments for various regulations and frameworks. (NIST CSF, CIS CSC v8, ISO27001, DORA, etc.)
Skills:
- Basic operational capabilities for the Office 365 stack (Microsoft Word, Excel, Outlook)
- Strong ability to direct self-work with excellent organizational and time management skills.
- Excellent verbal and written communication skills, especially when communicating technical concepts to non-technical audiences.
- Critical and creative thinking to strategize how to add value to customer engagements and improve processes
- Exceptional spelling and grammar skills for writing and proofreading documents.
- Ability to remain flexible as processes continuously improve.
- Proficiency in regulatory and security framework gap assessments.
- Proven expertise in the realm of identity and access management (IAM) leveraging solutions such as Privileged Identity Management (PIM) and conditional access policies.
- Experience working with cloud automation to include infrastructure as code and compliance as code.
- Experience configuring and supporting endpoint security tools (EDR, Encryption, Behavior Analysis)
- Strong attention to detail and well organized.
- Highly motivated to continuously learn, grow and innovate.
Qualifications:
Education:
- Bachelors’ Degree (Masters’ Preferred) in one of the following areas of concentration: Computer Science, Software Development, Information Technology, Cybersecurity.
Experience:
- 3+ years GRC experience including information security policy development and certification/regulatory gap analysis (such as ISO 27001, CIS CSC v8, etc.)
- Experience within the investment and financial services state preferred.
- ISACA CRISC, ISC2 CGRC, or CompTIA CySA+ preferred.
- Knowledge of Secure Software Development Life Cycle (SSDLC) practices is a plus.
- Automation and problem-solving skills a plus.
- Must be available to work 8am-5pm GMT Monday-Friday
Certifications:
- Relevant certifications such as CISM, CRISC, CGRC, CySA+, or Security+.
-
Risk and Controls Analyst
2 weeks ago
Edinburgh, Scotland, Scotland, United Kingdom Outsource UK Full timeRisk and Controls AnalystEdinburghUp to £55k + annual bonus + benefitsPermanent, Full-TimeHybrid (1 day per week in the Edinburgh office)We are recruiting for a Risk and Controls Analyst on behalf of a well-known banking group based in Edinburgh. This is a fantastic opportunity for someone looking to enhance their expertise in product design, lending...
-
IT Risk
1 week ago
Glasgow, Scotland, Scotland, United Kingdom Audit & Risk Recruitment Full timeWe are delighted to announce that Audit & Risk Recruitment have been exclusively mandated by a FTSE 250 business to help build an Audit, Risk and Compliance function for a leading FMCG brand in Scotland.The IT Risk & Controls Manager, who reports into the Head of Risk, is responsible for overseeing the identification, assessment, and mitigation of IT-related...
-
PMO Risk Manager
2 weeks ago
Glasgow, Scotland, Scotland, United Kingdom Audit & Risk Recruitment Full timePMO Risk Manager - FTSE listed FMCG business1/2 days a week in Glasgow, Scotland offices. Candidates from elsewhere in the UK encouraged to apply, time on-site negotiable.Audit & Risk Recruitment have been mandated by a FTSE listed fast-moving consumer goods business based in Glasgow to find a new PMO Risk Manager. This is a newly created position as part of...
-
Compliance Officer
7 days ago
Glasgow, Scotland, Scotland, United Kingdom Audit & Risk Recruitment Full timeCompliance Officer – FTSE 250Glasgow with hybrid workingAudit & Risk Recruitment are partnering a FTSE 250 FMCG business to strengthen their Internal Audit, Controls, Risk Management and Compliance function. This Compliance Officer role is a newly created position and will play a vital role in ensuring the business adheres to relevant legal standards as...
-
Client Servicing Analyst
2 weeks ago
Edinburgh, Scotland, Scotland, United Kingdom Clearwater Analytics Full timeJob Summary:Client Servicing Analysts are responsible for delivering top-notch operational support and fostering strong relationships with Clearwater's global clients. They excel in addressing inquiries related to investment and accounting matters, serving as a vital link between clients and internal teams. These analysts play a pivotal role in...
-
Senior Business Analyst
1 month ago
Edinburgh, Scotland, Scotland, United Kingdom Venesky Brown Full timeVenesky-Brown’s client, a public sector organisation in Edinburgh / Glasgow, is currently looking to recruit a Senior Business Analyst for an initial 6 month contract with potential to extend on a rate of £431/day (Outside IR35). This role will be a hybrid of working at home and in the office.Responsibilities:- Maintaining an audit trail of decisions,...
-
Financial Crime Risk Threat Mitigation
2 weeks ago
Edinburgh, Scotland, United Kingdom NatWest Full timeJoin us as a Financial Crime Risk Threat Mitigation & Strategy AnalystIn this critical role, you’ll work as part of a team to analyse, investigate, and research issues that affect our organisationWe’re looking for someone fluent in Arabic, Mandarin or Russian to work as part of a team and deliver intelligence, investigation, and reporting capabilities...
-
Senior Risk Manager
4 weeks ago
Edinburgh, Scotland, Scotland, United Kingdom Change Recruitment Full timeSenior Risk Manager - Policy, Framework and Reporting My client is a leading provider in their field and looking for a Senior Manager - Policy, Framework and Reporting to join their dynamic Resilience function. This role would ideally suit an experienced Change Risk or Resilience Risk specialist with an in-depth working knowledge of a Tier 1 bank (or...
-
Operational Risk and Resilience Manager
4 weeks ago
Edinburgh, Scotland, Scotland, United Kingdom Adam Appointments Limited Full timeOperational Risk & Resilience Manager (Capital Framework)Edinburgh (or Birmingham) hybrid This is a fantastic opportunity to join a high-profile bank’s Operational & Resilience Risk team in a brand new role focusing on the Capital Risk Framework.In this role, you will be instrumental in shaping and overseeing the capital risk framework, ensuring robust...
-
Business Analyst
1 week ago
Edinburgh, Scotland, Scotland, United Kingdom Excelloit Consultancy Services Full timeRole - Business Analyst (2 roles)Location & Rate: Edinburgh – 3 months contractLocation & Rate: Glasgow – 6 months FTC Job DescriptionExperience in business analysis, design, development, architecture, integration, production support, and project leadership.Agile Business Analyst with practical experience working across various methodologies such as...
-
Data Governance Manager
4 weeks ago
Glasgow, Scotland, Scotland, United Kingdom MBN Solutions Full timeData Governance & Control Senior Manager£95,000 + 15% bonus + benefitsCan be based from Glasgow, Newcastle or Chester office (2 days)Reporting to the Head of Data Governance and Regulation you will hold a senior management position and be responsible for a team of around 10 within Data Governance.***It's essential that you have previous experience...
-
Senior Internal Auditor
1 week ago
Glasgow, Scotland, Scotland, United Kingdom Audit & Risk Recruitment Full timeAudit & Risk Recruitment are delighted to be working with a large tech business in their search for a Senior Internal Auditor to join their growing risk and assurance function.Reporting into a supportive leadership team you will be identifying risks in the business and examining and evaluating controls to mitigate those risks, to ensure the safeguarding of...
-
Senior Internal Controls Manager
7 days ago
Glasgow, Scotland, Scotland, United Kingdom Audit & Risk Recruitment Full timeSenior Internal Controls Manager – FTSE 250Glasgow with hybrid workingAudit & Risk Recruitment are partnering a FTSE 250 FMCG business to establish their Internal Controls function, starting with a new Senior Internal Controls Manager. This is a newly created position with line management responsibility for an Internal Controls Manager, which we are also...
-
Compliance Monitoring Manager
2 weeks ago
Edinburgh, Scotland, Scotland, United Kingdom Meraki Talent Ltd Full timeCompliance Monitoring Manager Edinburgh Permanent Meraki Talent’s Financial Services client are looking for a Compliance Monitoring Manager to join their team in Edinburgh on a permanent basis. Responsibilities of the Compliance Monitoring Manager:-Provide oversight of first line activities from a second line perspective by carrying out monitoring...
-
Actuarial Analyst
6 months ago
Edinburgh, Scotland, Scotland, United Kingdom Eden Scott Full timeOur client is an award winning, leading consultancy with several unique opportunities across either Edinburgh or Glasgow for part qualified, nearly qualified analysts/senior, and just qualified actuarial consultants to join their central offices - but agile working being encouraged moving forward.The company have continued to grow, won new business and...
-
Laboratory Analyst
2 weeks ago
Edinburgh, Scotland, Scotland, United Kingdom SRG Full timeSRG are excited to be partnered with a global organisation who are at the forefront of health and environmental research to help them find an experienced Analyst to join their busy lab team.We are looking for someone with strong hands on industrial laboratory skills and experience in HPLC and/or ICP and is ready for a new challenge with excellent development...
-
Compliance Technician
2 months ago
Edinburgh, Scotland, Scotland, United Kingdom dnata Catering UK Full timeRole PurposeLogging and checking all internal HACCP and food safety documentation against company standards to ensure compliance. Feeding back to the departmental managers/ Compliance Manager on deviations and ensuring that corrective actions are noted. Tracking performanceUpdating and maintaining unit Compliance Activity Planners and supplying relevant...
-
Compliance Assurance
2 weeks ago
Glasgow, Scotland, Scotland, United Kingdom Jacobson Garner Full timeJoin a dynamic, forward-thinking corporate banking group in Glasgow as a Compliance Assurance Specialist. We are seeking talented individuals with a strong background in monitoring and testing, particularly in conducting desk-based and thematic reviews, to support our robust compliance framework.About the RoleAs a Compliance Assurance Specialist, you will...
-
Lab Analyst- Mineraology
1 week ago
Edinburgh, Scotland, Scotland, United Kingdom SRG Full timeSRG are excited to be partnered with a global organisation who are at the forefront of health and environmental research to help them find an Analyst to join their busy lab team.We are looking for someone with a background in mineralogy and testing of soil and/or asbestos and has used techniques like gravimetric analysis, FTIR and XRD among others.The...
-
Business Analyst
1 week ago
Edinburgh, Scotland, Scotland, United Kingdom Head Resourcing Full timeBusiness Analyst - Edinburgh Sadly this role is based on site with no sponsorship support providedHead Resourcing have an opportunity to work with an incredible business who deliver philanthropic support to some of the most deserving global causes whilst creating an excellent environment to learn and develop your skills in. This role has been created as the...