Job Search and Career Advice Platform

Enable job alerts via email!

GRC Information Security Analyst — ISO27001, SOC 2, PCI

Starling Bank

Manchester

Hybrid

GBP 80,000 - 100,000

Full time

30+ days ago

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Job summary

A leading financial services company in Manchester is seeking a Governance, Risk, and Compliance (GRC) Specialist. In this hands-on role, you will manage compliance programs and ensure adherence to crucial security standards such as ISO 27001 and PCI DSS. Ideal candidates have over 3 years of information security experience and a proactive approach. The role offers a hybrid working model and benefits like 33 days holiday and private medical insurance.

Benefits

33 days holiday including public holidays
Extra day’s holiday for your birthday
Annual leave increase with service
16 hours paid volunteering time
Company enhanced pension scheme
Life insurance at 4x your salary
Private Medical Insurance
Generous family-friendly policies
Incentives refer a friend scheme
Perkbox membership for discounts
Access to Cycle to Work initiatives

Qualifications

  • Minimum 3 years of experience in an information security role.
  • Experience supporting compliance for ISO 27001, SOC 2, and PCI DSS.
  • Strong skills in security metrics and reporting.
  • Experience with audit processes and evidence collection.

Responsibilities

  • Support the day-to-day management of compliance programs.
  • Act as a liaison for internal and external auditors.
  • Participate in risk assessment processes.
  • Help develop and maintain information security policies.
  • Automate evidence collection for compliance frameworks.
  • Work with cross-functional teams to embed security controls.
  • Identify opportunities for improvement in the GRC program.

Skills

Experience in information security
Compliance management for ISO 27001
Audit processes
Organized and detail-oriented approach
Security metrics skills

Education

CompTIA Security+
Certified Information Systems Auditor (CISA)
Certified in Risk and Information Systems Control (CRISC)
Certified Information Systems Security Professional (CISSP)

Tools

GRC software
Job description
A leading financial services company in Manchester is seeking a Governance, Risk, and Compliance (GRC) Specialist. In this hands-on role, you will manage compliance programs and ensure adherence to crucial security standards such as ISO 27001 and PCI DSS. Ideal candidates have over 3 years of information security experience and a proactive approach. The role offers a hybrid working model and benefits like 33 days holiday and private medical insurance.
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.