GRC Analyst: ISO 27001, NIST & Microsoft Security Risk

IMT Resourcing Solutions

Cheltenham

On-site

GBP 42,000 - 58,000

Full time

7 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

IMT Resourcing Solutions in Cheltenham is seeking an experienced GRC Analyst to support information security governance, risk and compliance activities for an established organisation. You will work with technical and business teams to assess risk, maintain controls and support ongoing compliance.

The role emphasises ISO 27001 and NIST frameworks, with cloud security tooling from Microsoft (Purview, Sentinel, 365/Azure) and collaboration with auditors and stakeholders across IT and operations.

Qualifications

  • GRC or information security experience.
  • Strong knowledge of ISO 27001.
  • Experience with NIST CSF.
  • Experience supporting audits and compliance activities.
  • Ability to engage with technical and business stakeholders.
  • ISO 27001 Lead Implementer/Auditor or equivalent is a plus.

Responsibilities

  • Support ISO 27001 ISMS, maintain policies, controls and evidence.
  • Work with ISO 27001, NIST CSF and CIS Controls.
  • Conduct and maintain information security risk assessments.
  • Manage security risks, controls, actions and remediation plans.
  • Support internal and external security audits and assessments.
  • Review existing security controls and identify improvements.
  • Maintain security policies, standards, procedures and governance docs.
  • Support third-party and supplier security assessments.
  • Track compliance against relevant security frameworks and requirements.
  • Collaborate with technical teams to ensure controls are implemented.
  • Produce security reporting, metrics and governance information.

Skills

GRC
InfoSec
Risk Management
Policy Governance
Stakeholder Management

Tools

Microsoft Purview
Microsoft Sentinel
Azure Security

Job description

IMT Resourcing Solutions in Cheltenham is seeking an experienced GRC Analyst to support information security governance, risk and compliance activities for an established organisation. You will work with technical and business teams to assess risk, maintain controls and support ongoing compliance.

The role emphasises ISO 27001 and NIST frameworks, with cloud security tooling from Microsoft (Purview, Sentinel, 365/Azure) and collaboration with auditors and stakeholders across IT and operations.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

GRC Analyst
GRC Analyst

IMT Resourcing Solutions • Cheltenham

On-site
GBP 42,000 - 58,000
GRC & Information Security Analyst (NIST/ISO 27001)
GRC & Information Security Analyst (NIST/ISO 27001)

Ventula Consulting • Southampton

Hybrid
GBP 45,000 - 50,000
GRC & Security Risk Analyst | Hybrid (ISO 27001)
GRC & Security Risk Analyst | Hybrid (ISO 27001)

Capgemini • Inverness

Hybrid
GBP 48,000 - 70,000
GRC Senior Analyst
GRC Senior Analyst

Recruitment • Greater London

On-site
GBP 75,000 - 110,000
GRC & Information Security Lead | ISO 27001 Expert
GRC & Information Security Lead | ISO 27001 Expert

NTT DATA • Birmingham

Hybrid
GBP 70,000 - 90,000
InfoSec GRC Manager: ISO27001, Risk & Policy
InfoSec GRC Manager: ISO27001, Risk & Policy

AJ Bell • Manchester

Hybrid
GBP 65,000 - 85,000
GRC Analyst
GRC Analyst

G.Digital • Manchester

On-site
GBP 45,000 - 65,000
Security GRC Analyst: Architecture, Policy & Risk
Security GRC Analyst: Architecture, Policy & Risk

G.Digital • Manchester

On-site
GBP 45,000 - 65,000
GRC Consultant
GRC Consultant

nttlimited • Greater London

On-site
GBP 70,000 - 110,000
Information Security & Compliance Lead (GRC)
Information Security & Compliance Lead (GRC)

Tank Recruitment • Oxford

Hybrid
GBP 70,000 - 110,000