GRC Analyst

TMX Group

Greater London

Hybrid

GBP 35,000 - 50,000

Full time

3 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

TMX Group in the United Kingdom seeks a GRC/InfoSec Analyst to help implement and monitor security controls, align with ISO27001, and support GDPR/DORA compliance. This non-technical role offers growth in governance, risk, and cybersecurity knowledge while working with stakeholders across the business.

You will champion security awareness, assist with policy maintenance, coordinate audits, track risk actions, and produce dashboards.

Qualifications

  • 1–2 years of experience in a GRC or Information Security Analyst role.
  • Familiarity with ISO27001 or other security standards and frameworks like SOC or NIST is advantageous but not required.
  • Strong interpersonal and communication skills; ability to simplify complex issues for stakeholders at all levels.
  • Self-motivated with a genuine passion for learning more about Cybersecurity.

Responsibilities

  • Champion Information Security awareness across the organization through campaigns, training sessions, and news bulletins.
  • Assist in maintenance and update of security policies within the ISMS with the InfoSec management team.
  • Coordinate and manage logistics for internal and external audits.
  • Support compliance assessments and audits with relevant stakeholders.
  • Identify opportunities for continuous improvement in security practices and processes.
  • Review and track risk actions with owners for timely updates.
  • Monitor Information Security incidents and ensure accurate reporting.
  • Produce reports, metrics, and dashboards to evaluate security controls.

Skills

GRC knowledge
Information Security
Audits coordination
Policy maintenance
Stakeholder communication
Analytical thinking
Attention to detail

Job description

The Role We are seeking an individual eager to expand their expertise in Governance, Risk, and Compliance (GRC). This role supports the GRC team in safeguarding company data and operations by helping to implement, monitor, and enhance security controls. You will collaborate closely with stakeholders and cross-functional teams to ensure compliance with key security frameworks such as ISO27001, as well as regulations like DORA and GDPR. While this position is not technical, it offers an excellent opportunity for someone looking to grow their GRC skills and expand their knowledge in Cybersecurity.Key Responsibilities:● Champion Information Security awareness across the organization through initiatives such ascybersecurity awareness campaigns, annual training sessions, and regular InfoSec news bulletins.● Assist in the maintenance and update of security policies within the Information Security ManagementSystem (ISMS) alongside the InfoSec management team.● Coordinate and manage logistics for both internal and external audits.● Support compliance assessments and audits, ensuring effective engagement with relevant stakeholders.● Identify opportunities for continuous improvement in security practices and processes.● Review and track risk actions, working with owners to ensure timely updates.● Monitor Information Security Incidents, liaising with incident handlers to ensure accurate and timelyreporting.● Produce reports, metrics, and dashboards to evaluate and report on the effectiveness of security controls. The Ideal Person:● 1-2 years of experience in a GRC or Information Security Analyst role.● Familiarity with ISO27001 or other security standards and frameworks like SOC or NIST is advantageousbut not required.● Strong interpersonal and communication skills, with the ability to simplify complex issues for stakeholdersat all levels.● Self-motivated, with a genuine passion for learning more about Cybersecurity.● A proactive problem-solver with a keen eye for detail.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

GRC & InfoSec Analyst: Audit & Compliance
GRC & InfoSec Analyst: Audit & Compliance

Crypto Pro Network • Greater London

Hybrid
GBP 70,000 - 100,000
Competitive salary package
Unlimited holidays
Private healthcare benefits
+4
GRC Senior Analyst
GRC Senior Analyst

Recruitment • Greater London

On-site
GBP 75,000 - 110,000
GRC Analyst - Cyber Security
GRC Analyst - Cyber Security

TEC Partners Limited • Enfield

On-site
GBP 50,000 - 60,000
Fully remote
GRC Analyst - Security Governance & Configuration
GRC Analyst - Security Governance & Configuration

Sword Group • Aberdeen City

On-site
GBP 40,000 - 60,000
Personalised Career Development
Flexible working arrangements
Generous annual leave allowance
Security, Risk & Compliance Analyst | GRC & Policy
Security, Risk & Compliance Analyst | GRC & Policy

Smart Communications. • England

Hybrid
GBP 40,000 - 65,000
Extensive health insurance
Income protection
Life assurance
+4
GRC Analyst
GRC Analyst

TMX Group • City Of London

On-site
GBP 32,000 - 42,000
IT GRC Senior Analyst
IT GRC Senior Analyst

Nigel Wright Recruitment • Newcastle upon Tyne

Hybrid
GBP 70,000 - 90,000
Hybrid work policy
GRC Analyst: Elevate Security & Compliance Skills
GRC Analyst: Elevate Security & Compliance Skills

TMX Group • Greater London

Hybrid
GBP 35,000 - 50,000
Senior GRC Analyst
Senior GRC Analyst

Broster Buchanan • Bolton

On-site
GBP 111,000 - 166,000
Lead GRC Consultant
Lead GRC Consultant

Cathcart Technology • City of Edinburgh

Hybrid
GBP 90,000 - 130,000
Bonus
Share scheme