Senior Governance Risk and Compliance Analyst

1 week ago


Edinburgh Scotland, Scotland, United Kingdom Abacus Group Full time

Job Description:

We are seeking a highly skilled and experienced Senior Governance Risk and Compliance (GRC) Analyst to assist customers in meeting their cybersecurity regulatory and legal requirements.This role will focus on Policy Development, Risk Assessment and Risk Management, Gap Analysis and Due Diligence.


Analysts will work with customers to develop formalized information security policies, analyze the efficacy of current policies and procedures, and evaluate the risks posed by third-party providers.


The ideal candidate will have a solid understanding of information security strategies suitable for small and mid-size businesses within the financial services sector coupled with a solid grasp.


Responsibilities (including but not limited to):

  • Coordinating and working with clients to develop formalized Written Information Security Programs (WISPs)
  • Performing cybersecurity due diligence assessments on client vendors
  • Engaging with the cybersecurity engineering team to assist with client risk management and technical gaps with regulatory requirements.
  • Assist with providing strategic guidance and oversight on regulatory and risk management procedures for multiple clients’ cybersecurity programs.
  • Assisting clients in meeting regulatory requirements via policy review and testing (e.g., Incident Response tabletop exercises)
  • Assisting clients with their own due diligence questionnaire and fielding cybersecurity and compliance questions
  • Providing customized end-user security awareness training via presentations and simulated phishing campaigns
  • Researching and keeping up to date with industry compliance regulations, most specifically within the investment and financial services space including FCA, SEC, and DORA.
  • Build and maintain strong relationships with clients, understanding their unique compliance challenges and providing tailored solutions.
  • Internally assess, evaluate, and make recommendations to management regarding the adequacy of the security policies and documentation.
  • Serving as a lead resource for compliance-based information security gap assessments for various regulations and frameworks. (NIST CSF, CIS CSC v8, ISO27001, DORA, etc.)


Skills:

  • Basic operational capabilities for the Office 365 stack (Microsoft Word, Excel, Outlook)
  • Strong ability to direct self-work with excellent organizational and time management skills.
  • Excellent verbal and written communication skills, especially when communicating technical concepts to non-technical audiences.
  • Critical and creative thinking to strategize how to add value to customer engagements and improve processes
  • Exceptional spelling and grammar skills for writing and proofreading documents.
  • Ability to remain flexible as processes continuously improve.
  • Proficiency in regulatory and security framework gap assessments.
  • Proven expertise in the realm of identity and access management (IAM) leveraging solutions such as Privileged Identity Management (PIM) and conditional access policies.
  • Experience working with cloud automation to include infrastructure as code and compliance as code.
  • Experience configuring and supporting endpoint security tools (EDR, Encryption, Behavior Analysis)
  • Strong attention to detail and well organized.
  • Highly motivated to continuously learn, grow and innovate.

Qualifications:

Education:

  • Bachelors’ Degree (Masters’ Preferred) in one of the following areas of concentration: Computer Science, Software Development, Information Technology, Cybersecurity.

Experience:

  • 3+ years GRC experience including information security policy development and certification/regulatory gap analysis (such as ISO 27001, CIS CSC v8, etc.)
  • Experience within the investment and financial services state preferred.
  • ISACA CRISC, ISC2 CGRC, or CompTIA CySA+ preferred.
  • Knowledge of Secure Software Development Life Cycle (SSDLC) practices is a plus.
  • Automation and problem-solving skills a plus.
  • Must be available to work 8am-5pm GMT Monday-Friday

Certifications:

  • Relevant certifications such as CISM, CRISC, CGRC, CySA+, or Security+.



  • Edinburgh, Scotland, Scotland, United Kingdom Outsource UK Full time

    Risk and Controls AnalystEdinburghUp to £55k + annual bonus + benefitsPermanent, Full-TimeHybrid (1 day per week in the Edinburgh office)We are recruiting for a Risk and Controls Analyst on behalf of a well-known banking group based in Edinburgh. This is a fantastic opportunity for someone looking to enhance their expertise in product design, lending...

  • IT Risk

    1 week ago


    Glasgow, Scotland, Scotland, United Kingdom Audit & Risk Recruitment Full time

    We are delighted to announce that Audit & Risk Recruitment have been exclusively mandated by a FTSE 250 business to help build an Audit, Risk and Compliance function for a leading FMCG brand in Scotland.The IT Risk & Controls Manager, who reports into the Head of Risk, is responsible for overseeing the identification, assessment, and mitigation of IT-related...

  • PMO Risk Manager

    2 weeks ago


    Glasgow, Scotland, Scotland, United Kingdom Audit & Risk Recruitment Full time

    PMO Risk Manager - FTSE listed FMCG business1/2 days a week in Glasgow, Scotland offices. Candidates from elsewhere in the UK encouraged to apply, time on-site negotiable.Audit & Risk Recruitment have been mandated by a FTSE listed fast-moving consumer goods business based in Glasgow to find a new PMO Risk Manager. This is a newly created position as part of...

  • Compliance Officer

    7 days ago


    Glasgow, Scotland, Scotland, United Kingdom Audit & Risk Recruitment Full time

    Compliance Officer – FTSE 250Glasgow with hybrid workingAudit & Risk Recruitment are partnering a FTSE 250 FMCG business to strengthen their Internal Audit, Controls, Risk Management and Compliance function. This Compliance Officer role is a newly created position and will play a vital role in ensuring the business adheres to relevant legal standards as...


  • Edinburgh, Scotland, Scotland, United Kingdom Clearwater Analytics Full time

    Job Summary:Client Servicing Analysts are responsible for delivering top-notch operational support and fostering strong relationships with Clearwater's global clients. They excel in addressing inquiries related to investment and accounting matters, serving as a vital link between clients and internal teams. These analysts play a pivotal role in...


  • Edinburgh, Scotland, Scotland, United Kingdom Venesky Brown Full time

    Venesky-Brown’s client, a public sector organisation in Edinburgh / Glasgow, is currently looking to recruit a Senior Business Analyst for an initial 6 month contract with potential to extend on a rate of £431/day (Outside IR35). This role will be a hybrid of working at home and in the office.Responsibilities:- Maintaining an audit trail of decisions,...


  • Edinburgh, Scotland, United Kingdom NatWest Full time

    Join us as a Financial Crime Risk Threat Mitigation & Strategy AnalystIn this critical role, you’ll work as part of a team to analyse, investigate, and research issues that affect our organisationWe’re looking for someone fluent in Arabic, Mandarin or Russian to work as part of a team and deliver intelligence, investigation, and reporting capabilities...

  • Senior Risk Manager

    4 weeks ago


    Edinburgh, Scotland, Scotland, United Kingdom Change Recruitment Full time

    Senior Risk Manager - Policy, Framework and Reporting My client is a leading provider in their field and looking for a Senior Manager - Policy, Framework and Reporting to join their dynamic Resilience function. This role would ideally suit an experienced Change Risk or Resilience Risk specialist with an in-depth working knowledge of a Tier 1 bank (or...


  • Edinburgh, Scotland, Scotland, United Kingdom Adam Appointments Limited Full time

    Operational Risk & Resilience Manager (Capital Framework)Edinburgh (or Birmingham) hybrid This is a fantastic opportunity to join a high-profile bank’s Operational & Resilience Risk team in a brand new role focusing on the Capital Risk Framework.In this role, you will be instrumental in shaping and overseeing the capital risk framework, ensuring robust...

  • Business Analyst

    1 week ago


    Edinburgh, Scotland, Scotland, United Kingdom Excelloit Consultancy Services Full time

    Role - Business Analyst (2 roles)Location & Rate: Edinburgh – 3 months contractLocation & Rate: Glasgow – 6 months FTC Job DescriptionExperience in business analysis, design, development, architecture, integration, production support, and project leadership.Agile Business Analyst with practical experience working across various methodologies such as...


  • Glasgow, Scotland, Scotland, United Kingdom MBN Solutions Full time

    Data Governance & Control Senior Manager£95,000 + 15% bonus + benefitsCan be based from Glasgow, Newcastle or Chester office (2 days)Reporting to the Head of Data Governance and Regulation you will hold a senior management position and be responsible for a team of around 10 within Data Governance.***It's essential that you have previous experience...


  • Glasgow, Scotland, Scotland, United Kingdom Audit & Risk Recruitment Full time

    Audit & Risk Recruitment are delighted to be working with a large tech business in their search for a Senior Internal Auditor to join their growing risk and assurance function.Reporting into a supportive leadership team you will be identifying risks in the business and examining and evaluating controls to mitigate those risks, to ensure the safeguarding of...


  • Glasgow, Scotland, Scotland, United Kingdom Audit & Risk Recruitment Full time

    Senior Internal Controls Manager – FTSE 250Glasgow with hybrid workingAudit & Risk Recruitment are partnering a FTSE 250 FMCG business to establish their Internal Controls function, starting with a new Senior Internal Controls Manager. This is a newly created position with line management responsibility for an Internal Controls Manager, which we are also...


  • Edinburgh, Scotland, Scotland, United Kingdom Meraki Talent Ltd Full time

    Compliance Monitoring Manager Edinburgh Permanent Meraki Talent’s Financial Services client are looking for a Compliance Monitoring Manager to join their team in Edinburgh on a permanent basis. Responsibilities of the Compliance Monitoring Manager:-Provide oversight of first line activities from a second line perspective by carrying out monitoring...

  • Actuarial Analyst

    6 months ago


    Edinburgh, Scotland, Scotland, United Kingdom Eden Scott Full time

    Our client is an award winning, leading consultancy with several unique opportunities across either Edinburgh or Glasgow for part qualified, nearly qualified analysts/senior, and just qualified actuarial consultants to join their central offices - but agile working being encouraged moving forward.The company have continued to grow, won new business and...

  • Laboratory Analyst

    2 weeks ago


    Edinburgh, Scotland, Scotland, United Kingdom SRG Full time

    SRG are excited to be partnered with a global organisation who are at the forefront of health and environmental research to help them find an experienced Analyst to join their busy lab team.We are looking for someone with strong hands on industrial laboratory skills and experience in HPLC and/or ICP and is ready for a new challenge with excellent development...

  • Compliance Technician

    2 months ago


    Edinburgh, Scotland, Scotland, United Kingdom dnata Catering UK Full time

    Role PurposeLogging and checking all internal HACCP and food safety documentation against company standards to ensure compliance. Feeding back to the departmental managers/ Compliance Manager on deviations and ensuring that corrective actions are noted. Tracking performanceUpdating and maintaining unit Compliance Activity Planners and supplying relevant...

  • Compliance Assurance

    2 weeks ago


    Glasgow, Scotland, Scotland, United Kingdom Jacobson Garner Full time

    Join a dynamic, forward-thinking corporate banking group in Glasgow as a Compliance Assurance Specialist. We are seeking talented individuals with a strong background in monitoring and testing, particularly in conducting desk-based and thematic reviews, to support our robust compliance framework.About the RoleAs a Compliance Assurance Specialist, you will...


  • Edinburgh, Scotland, Scotland, United Kingdom SRG Full time

    SRG are excited to be partnered with a global organisation who are at the forefront of health and environmental research to help them find an Analyst to join their busy lab team.We are looking for someone with a background in mineralogy and testing of soil and/or asbestos and has used techniques like gravimetric analysis, FTIR and XRD among others.The...

  • Business Analyst

    1 week ago


    Edinburgh, Scotland, Scotland, United Kingdom Head Resourcing Full time

    Business Analyst - Edinburgh Sadly this role is based on site with no sponsorship support providedHead Resourcing have an opportunity to work with an incredible business who deliver philanthropic support to some of the most deserving global causes whilst creating an excellent environment to learn and develop your skills in. This role has been created as the...