Cybersecurity GRC Analyst

VPN Global

Altrincham

Hybrid

GBP 55,000 - 75,000

Full time

29 hours ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

VPN Global Testing Services Ltd. is seeking a 3+ year experienced Cybersecurity GRC Analyst to develop, implement, and improve the ISMS in line with ISO 27001 and GDPR.

Qualifications

  • Bachelor's degree in a related discipline.
  • Certifications in information security such as CISSP/CISM/CISA, ISO 27001, or equivalent.
  • Prior experience in information security domain.
  • Strong attention to detail and ability to handle confidential information.

Responsibilities

  • Develop, implement, and continuously improve the ISMS in line with ISO 27001 requirements.
  • Assist with internal and external ISO 27001 audits, including evidence gathering and follow-up actions.
  • Monitor compliance with policies, track non-conformities and escalate as needed.
  • Maintain ISMS documentation like asset registers, risk assessments, and SoA.
  • Support third-party security and supplier risk assessments with appropriate controls.
  • Contribute to enterprise risk assessments by identifying risks and tracking remediation.
  • Assist with control testing and regulatory reviews across the business.
  • Respond to risk, compliance, and regulatory inquiries from stakeholders.
  • Support ongoing regulatory compliance checks and improvement initiatives.
  • Collaborate with teams across the business to promote good information security practices

Skills

ISO 27001
CISSP/CISM/CISA
Risk Management
ISMS
Stakeholder Comm
Audits
Regulatory Compliance
Documentation
Data Privacy

Education

Bachelor's degree
Security certifications (CISSP/CISM/CISA)

Job description

VPN Global Testing Services Ltd. have been established as a Software Development and Information Technology Services Company with main goal to provide quality IT services to clients globally. We deliver technology-driven business solutions that meet the strategic objectives of our clients. We develop, implement, maintain and support the IT applications by providing smart and intelligent solutions, high quality and low-cost service.

We believe that IT should actually help you to run your business more effectively and efficiently. We understand that the IT requirements of your business may vary as your company grows and changes, which is why we are committed to delivering cost effective Solutions. We are looking for a 3+ Experience Cybersecurity GRC Analyst for our growing team.

As a Cybersecurity GRC Analyst you will be responsible for the: Development, implementation, and continuous improvement of VPN’s Information Security and Risk Management framework, ensuring alignment with ISO 27001 standards and broader regulatory requirements like GDPR, Cyberessentional, CAF.

Key areas of responsibilities:
  • Establish, Support the maintenance and continuous improvement of the Information Security
  • Management System (ISMS) in line with ISO 27001 requirements
  • Assist with internal and external ISO 27001 audits, including preparation, evidence gathering, and follow-up actions
  • Monitor compliance with internal policies and procedures, tracking and escalating non-conformities where required
  • Maintain key ISMS documentation, including asset registers, risk assessments, and Statements of Applicability (SoA)
  • Provide support on third-party security and supplier risk assessments, ensuring appropriate controls are in place
  • Contribute to enterprise risk assessments, including identifying risks, assessing controls, and tracking remediation actions
  • Assist with control testing and compliance reviews across the business
  • Respond to and support risk, compliance, and regulatory queries from internal stakeholders
  • Support wider regulatory compliance processes, including checks, reviews, and continuous improvement initiatives
  • Collaborate with teams across the business to promote good risk and information security practices
Key skills we are looking for:
  • Previous experience within a risk, information security, compliance, or internal audit environment, ideally within a professional services firm
  • Working knowledge of ISO 27001, Cyber Essentials+ Information Security Management Systems (ISMS)
  • Strong attention to detail, with a high level of integrity and ability to handle confidential information
  • Well-organised and structured approach to managing tasks and priorities
  • Ability to communicate effectively with stakeholders at all levels, including confidence to escal…
  • Proactive, forward-thinking mindset with an interest in using technology to improve processes
  • Collaborative team player with the ability to work across multiple functions
  • Strong written and verbal communication skills,
Qualification:
  • Education : Bachelor's degree (or higher) in a related discipline
  • Certification : - Certifications in Information Security Management such as CISSP/CISM/CISA, ISO 27001 or equivalent
  • Previous experience in the information security domain
Location of the Job:
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

GRC Analyst - Cyber Security
GRC Analyst - Cyber Security

TEC Partners Limited • Enfield

On-site
GBP 50,000 - 60,000
Fully remote
GRC Senior Analyst
GRC Senior Analyst

Recruitment • Greater London

On-site
GBP 75,000 - 110,000
IT GRC Senior Analyst
IT GRC Senior Analyst

Nigel Wright Recruitment • Newcastle upon Tyne

Hybrid
GBP 70,000 - 90,000
Hybrid work policy
Senior InfoSec GRC Specialist
Senior InfoSec GRC Specialist

Clearwater Analytics (CWAN) • England

On-site
GBP 65,000 - 85,000
Information Security Analyst
Information Security Analyst

Broster Buchanan • Liverpool

On-site
GBP 40,000 - 60,000
Senior GRC Analyst
Senior GRC Analyst

Broster Buchanan • Bolton

On-site
GBP 111,000 - 166,000
IT Security Assistant VP
IT Security Assistant VP

Adecco • Greater London

Hybrid
GBP 90,000 - 130,000
Information Security Manager
Information Security Manager

Nuvion Tech • Bedford

Hybrid
GBP 80,000 - 110,000
Senior Cyber GRC Specialist – Technical Controls
Senior Cyber GRC Specialist – Technical Controls

air-recruitment • Greater London

On-site
GBP 108,000 - 132,000
IT Information Security Analyst - Compliance
IT Information Security Analyst - Compliance

Adecco • West Midlands

On-site
GBP 45,000 - 55,000