Enable job alerts via email!

IT Business Analyst - Governance, Risk and Compliance (ISO 27001)

Vodafone

Dubai

On-site

AED 180,000 - 240,000

Full time

17 days ago

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Start fresh or import an existing resume

Job summary

A global telecommunications leader is seeking an experienced IT Business Analyst specializing in Governance, Risk, and Compliance. You will play a pivotal role in implementing GRC frameworks, ensuring regulatory compliance, and enhancing risk management practices. This position requires over 11 years of relevant experience, strong analytical skills, and effective communication abilities, particularly in collaborating with diverse stakeholders.

Qualifications

  • 11+ years of experience required.
  • Strong analytical and problem-solving skills.
  • Knowledge of GRC frameworks like ISO 27001 and NIST.

Responsibilities

  • Support implementation of GRC frameworks including ISO 27001.
  • Monitor compliance with laws and industry standards.
  • Analyze GRC data and produce reports.

Skills

Analytical skills
Problem-solving skills
Communication skills
Interpersonal skills
Knowledge of GRC frameworks
Experience with GRC tools
Business acumen
Project management skills
Data analysis skills
Technical background

Education

UG or PG

Tools

GRC software and platforms

Job description

Overview

IT Business Analyst - Governance, Risk and Compliance (ISO 27001)

Responsibilities

    • GRC Framework Implementation:

    Supporting the implementation and maintenance of GRC frameworks (like ISO 27001, SOC 2, NIST, etc.) within the organization.
    • Compliance Monitoring:

    Tracking and monitoring compliance with relevant laws, regulations, and industry standards.
    • Risk Assessment and Mitigation:

    Identifying, assessing, and mitigating IT-related risks, working with stakeholders to develop and implement risk mitigation strategies.
    • Policy and Procedure Development:

    Contributing to the development and maintenance of information security policies, procedures, and related documentation.
    • Data Analysis and Reporting:

    Analyzing data related to GRC activities, creating reports, and providing insights to support decision-making.
    • Stakeholder Collaboration:

    Collaborating with IT, legal, and other business units to integrate GRC requirements into business processes.
    • Training and Awareness:

    Contributing to the development and delivery of training programs to enhance awareness of GRC principles and practices.
    • Process Improvement:

    Identifying opportunities to improve the efficiency and effectiveness of GRC processes.


Qualifications

UG or PG

Essential skills

  • Strong analytical and problem-solving skills: Ability to analyze complex data, identify issues, and develop solutions.
  • Excellent communication and interpersonal skills: Ability to communicate effectively with both technical and non-technical stakeholders.
  • Knowledge of GRC frameworks and regulations: Understanding of relevant standards like ISO 27001, NIST, GDPR, etc.
  • Experience with GRC tools: Familiarity with GRC software and platforms.
  • Business acumen: Understanding of business processes and how they relate to GRC.
  • Project management skills: Ability to manage projects related to GRC initiatives.
  • Data analysis and reporting skills: Ability to analyze data, create reports, and present findings.
  • Technical background: While not always required, a basic understanding of IT systems and infrastructure is often helpful.


Desired skills

- Past project experience in UAE/Middle East projects

Experience

11+ years
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.