Grc Analyst

FRASERS GROUP

Shirebrook

On-site

GBP 60,000 - 85,000

Full time

5 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Frasers Champion
Retail Reconnect
Fearless 1200
Frasers Fit
Retail Trust

Job summary

Frasers Group seeks a Technology GRC Analyst to support the ongoing development of the group's technology risk and assurance capability. You will identify, assess and monitor technology and cyber risks while ensuring IT and business controls are designed and operating effectively across the organisation.

Working with Technology, Cyber Security, Internal Audit and Finance, you will strengthen governance, improve resilience and embed proactive risk culture to support Frasers Group's growth across

Qualifications

  • 2+ years in Technology Risk, IT Audit, Governance, Risk & Compliance (GRC) or Cyber Risk.
  • Experience delivering technology risk assessments and controls testing.
  • Strong understanding of IT General Controls (ITGCs) and governance.
  • Experience conducting IAM reviews and access assurance.
  • Knowledge of third-party risk management and supplier assurance.
  • Experience supporting internal and external audits and remediation tracking.
  • Strong analytical and communication skills with stakeholders across functions.

Responsibilities

  • Deliver technology and cyber risk assessments across enterprise infrastructure, cloud and retail systems.
  • Perform controls testing of ITGCs and key processes to provide assurance.
  • Conduct IAM assurance activities including access reviews and privileged access.
  • Support supplier and third-party risk assessments and governance.
  • Maintain risk registers and track remediation actions.
  • Produce risk dashboards and KRIs for senior leadership.
  • Collaborate with IT, Cyber Security, Internal Audit, Finance and Supply Chain teams to embed risk practices.

Skills

Technology Risk
IT Audit
GRC
IAM
Third-Party Risk
Audit Support
Stakeholder Management
Analytical Skills

Education

CRISC/CISA/CISM/CISSP certification or equivalent

Tools

OneTrust

Job description

At Frasers Group we're rethinking retail. Through digital innovation and unique store experiences, we're serving our consumers with the world's best sports, premium and luxury brands globally. As a leader in the industry, we're elevating the retail experience for our consumers through our collection of established brands, including Sports Direct, FLANNELS, USC, Frasers, and GAME.

Why join us?

Our vision - We are building the planet's most admired and compelling brand ecosystem

Our purpose - We are elevating the lives of the many with access to the world's best brands and experiences

At Frasers Group, we fear less and do more. Our people are forward thinkers who are driven to operate outside of their comfort zone to change the future of retail, embracing challenges along the way. The potential to elevate your career is massive, the experience unrivalled. To be able to make the most of it you need to live and breathe our principles:

  • Own it and back yourself - Own the basics, own your role and own the result
  • Think without limits - Think, think fast, think fearlessly
  • Be relevant - Relevant to our people, our partners and the planet
Are you ready to join the Fearless?

The Role:

We are seeking a Technology GRC Analyst to support the continued development of Frasers Group's technology risk and assurance capability.

In this role, you will identify, assess and monitor technology and cyber risks while providing assurance that key IT and business controls are designed and operating effectively. Working closely with Technology, Cyber Security, Internal Audit, Finance, Supply Chain and business stakeholders, you will help strengthen governance, improve operational resilience and ensure risks are managed in line with industry standards and regulatory requirements.

You will play an important role in delivering technology risk assessments, controls testing, identity and access assurance, third-party governance and supply chain assurance activities across the Group, helping to embed a proactive risk culture that supports Frasers Group's continued growth.

Key Responsibilities:
  • Deliver technology and cyber risk assessments across enterprise infrastructure, cloud platforms, retail systems, digital applications and strategic technology initiatives.
  • Perform controls testing across IT General Controls (ITGCs), automated application controls and key operational processes to provide assurance over the effectiveness of the Group's control environment.
  • Conduct Identity and Access Management (IAM) assurance activities, including user access reviews, privileged access audits, Joiner-Mover-Leaver (JML) controls and Segregation of Duties (SoD) assessments.
  • Support identity audits to ensure access to business-critical systems remains appropriate, compliant and aligned with security policies.
  • Maintain the Technology Risk Register, ensuring risks, remediation actions and control improvements are accurately tracked and reported.
  • Perform supplier and third-party technology risk assessments, supporting ongoing assurance over strategic technology partners and service providers.
  • Support Supply Chain Assurance by assessing technology and operational risks across logistics, warehousing, distribution centres and supplier ecosystems.
  • Partner with Internal Audit, Internal Controls and Cyber Security teams to coordinate audits, evidence gathering and remediation activities.
  • Produce meaningful risk dashboards, management information, Key Risk Indicators (KRIs) and governance reporting for senior leadership and risk forums.
  • Collaborate with Technology, Retail Operations, Finance, Procurement, Legal and Supply Chain teams to embed effective risk management and assurance practices across the business.
  • Support the ongoing development of the Technology Risk Management Framework aligned with recognised standards including NIST Cybersecurity Framework, ISO 27001 and industry best practice.
  • Drive continuous improvement of governance, risk and compliance (GRC) processes, reporting, automation and assurance activities.
  • Support regulatory, internal and external audit requirements such as PCI -DSS, ensuring documentation and evidence are maintained to a high standard.
Perks and Benefits
  • Frasers Champion - Our employees are at the heart of our business and we ensure individuals are recognised every single month for their hard work. Frasers Champion is a peer nominated scheme where 8 winners will receive double their pay for a month where they have lived the Frasers Group values.
  • Retail Reconnect - In order to build the planets most admired and compelling brand ecosystem, all employees must understand our business, product and customers. Each financial year, head office employees will gain insights by spending one to two days in one of our stores or the warehouse. The goal is to learn how the work you do impacts our teams on the frontline, and to bring ideas back to the office which will improve how we work.
  • Fearless 1200 - Fearless 1200 is our way of recognising our growth. It's bold, ambitious, and designed to reward colleagues across the business for living our values and delivering impact. Fearless 1200 links how we perform to how we're rewarded - check out the video link to find out more - https://www.youtube.com/watch?v=O0qmvJofMew
Employee Welfare
  • Frasers Fit - Our Everlast Gyms Team are on a mission to make our workforce the best, and fittest on the planet! We run free gym classes for employees as well as discounted memberships to our clubs. Frasers Fit is our wellbeing programme which aims to support and improve colleagues Physical, Financial & Mental wellbeing. The app is accessible for every employee and includes training, nutrition and lifestyle advice- all completely free.
  • Retail Trust - We know that its not just about physical health, mental wellness is equally important which is why all of our employees get free access and support from the Retail Trust charity. This includes a 24 hour wellbeing helpline, wellness hub, counselling and financial/legal support.
What we are looking for:
  • 2+ years' experience within Technology Risk, IT Audit, Governance, Risk & Compliance (GRC), Internal Controls or Cyber Risk.
  • Experience delivering technology risk assessments and controls testing across enterprise technology environments.
  • Strong understanding of IT General Controls (ITGCs), technology governance and operational risk management.
  • Experience conducting Identity and Access Management (IAM) reviews, user access certifications and privileged access assurance.
  • Knowledge of third-party risk management, supplier assurance and technology risk across complex supply chain environments.
  • Experience supporting internal and external audits, including evidence management and remediation tracking.
  • Strong analytical and problem-solving skills with the ability to identify control weaknesses and recommend practical improvements.
  • Excellent communication and stakeholder management skills, with the ability to engage technical and non-technical audiences.
  • Experience working with Governance, Risk & Compliance (GRC) platforms such as OneTurst
  • Passionate about strengthening governance, improving controls and enabling secure business growth across a complex global retail organisation.
Desirable
  • Professional certifications such as CRISC, CISA, CISM, CISSP or equivalent.
  • Experience working within large retail, e-commerce or multinational organisations.
  • Knowledge of NIST Cybersecurity Framework, ISO 27001, COBIT and ITIL.
  • Experience with data analytics, continuous controls monitoring or assurance automation.
  • Familiarity with PCI DSS, SOX or other regulatory and compliance frameworks.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

GRC Analyst
GRC Analyst

SmartRecruiters, Inc. • Mansfield

On-site
GBP 40,000 - 60,000
Frasers Champion
Retail Trust
Fearless 1200
GRC Analyst
GRC Analyst

SmartRecruiters, Inc. • Shirebrook

On-site
GBP 45,000 - 65,000
Frasers Champion
Retail Reconnect
Fearless 1200
+2
Vulnerability Analyst
Vulnerability Analyst

SmartRecruiters, Inc. • Shirebrook

On-site
GBP 60,000 - 80,000
Frasers Champion
Retail Reconnect
Fearless 1200
+2
Vulnerability Analyst
Vulnerability Analyst

SmartRecruiters, Inc. • Mansfield

On-site
GBP 45,000 - 65,000
Frasers Champion
Retail Trust
Frasers Fit wellness
Data Protection Advisor
Data Protection Advisor

Frasers Group • Shirebrook

On-site
GBP 50,000 - 75,000
Frasers Champion
Retail Reconnect
Fearless 1200
+3
Data Protection Advisor
Data Protection Advisor

SmartRecruiters, Inc. • Mansfield

On-site
GBP 45,000 - 65,000
Frasers Champion
Retail Reconnect
Fearless 1200
+2
Credit Risk Analyst
Credit Risk Analyst

FRASERS GROUP FINANCIAL SERVICES • Clayton-le-Moors

On-site
GBP 42,000 - 62,000
Frasers Champion
Retail Reconnect
Fearless 1200
Vulnerability Analyst
Vulnerability Analyst

FRASERS GROUP • Shirebrook

On-site
GBP 45,000 - 65,000
Frasers Champion
Retail Reconnect
Fearless 1200
+2
Credit Risk Analyst
Credit Risk Analyst

Frasers Group • Clayton-le-Moors

On-site
GBP 35,000 - 55,000
Frasers Champion
Retail Reconnect
Fearless 1200
+2
Loss Prevention Analyst
Loss Prevention Analyst

FRASERS GROUP • Shirebrook

On-site
GBP 28,000 - 36,000
Frasers Champion
Retail Reconnect
Fearless 1200
+2