Tech GRC Analyst — Risk, IAM & Controls Lead

SmartRecruiters, Inc.

Mansfield

On-site

GBP 40,000 - 60,000

Full time

5 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Frasers Champion
Retail Trust
Fearless 1200

Job summary

Frasers Group is seeking a Technology GRC Analyst to support the ongoing development of its technology risk and assurance capability across the group’s global operations. You will identify, assess and monitor technology and cyber risks while ensuring IT and business controls are designed and operating effectively, collaborating with multiple stakeholders.

You will deliver risk assessments, controls testing and IAM assurance, maintain the risk register and contribute to supplier risk and

Qualifications

  • 2+ years' experience within Technology Risk, IT Audit, Governance, Risk & Compliance (GRC), Internal Controls or Cyber Risk.
  • Experience delivering technology risk assessments and controls testing across enterprise technology environments.
  • Strong understanding of IT General Controls (ITGCs), technology governance and operational risk management.
  • Experience conducting Identity and Access Management (IAM) reviews, user access certifications and privileged access assurance.
  • Knowledge of third‑party risk management, supplier assurance and technology risk across complex supply chain environments.
  • Experience supporting internal and external audits, including evidence management and remediation tracking.
  • Strong analytical and problem‑solving skills with the ability to identify control weaknesses and recommend practical improvements.
  • Excellent communication and stakeholder management skills, with the ability to engage technical and non-technical audiences.
  • Experience working with Governance, Risk & Compliance (GRC) platforms such as OneTrust
  • Passionate about strengthening governance, improving controls and enabling secure business growth across a complex global retail organisation.
  • Professional certifications such as CRISC, CISA, CISM, CISSP or equivalent.
  • Experience working within large retail, e-commerce or multinational organisations.
  • Knowledge of NIST Cybersecurity Framework, ISO 27001, COBIT and ITIL.
  • Experience with data analytics, continuous controls monitoring or assurance automation.
  • Familiarity with PCI DSS, SOX or other regulatory and compliance frameworks.

Responsibilities

  • Deliver technology and cyber risk assessments across enterprise infrastructure, cloud platforms, retail systems, digital applications and strategic technology initiatives.
  • Perform controls testing across IT General Controls (ITGCs), automated application controls and key operational processes to provide assurance over the effectiveness of the Group's control environment.
  • Conduct Identity and Access Management (IAM) assurance activities, including user access reviews, privileged access audits, Joiner-Mover-Leaver (JML) controls and Segregation of Duties (SoD) assessments.
  • Support identity audits to ensure access to business‑critical systems remains appropriate, compliant and aligned with security policies.
  • Maintain the Technology Risk Register, ensuring risks, remediation actions and control improvements are accurately tracked and reported.
  • Perform supplier and third‑party technology risk assessments, supporting ongoing assurance over strategic technology partners and service providers.
  • Support Supply Chain Assurance by assessing technology and operational risks across logistics, warehousing, distribution centres and supplier ecosystems.
  • Partner with Internal Audit, Internal Controls and Cyber Security teams to coordinate audits, evidence gathering and remediation activities.
  • Produce meaningful risk dashboards, management information, Key Risk Indicators (KRIs) and governance reporting for senior leadership and risk forums.
  • Collaborate with Technology, Retail Operations, Finance, Procurement, Legal and Supply Chain teams to embed effective risk management and assurance practices across the business.
  • Support the ongoing development of the Technology Risk Management Framework aligned with recognised standards including NIST Cybersecurity Framework, ISO 27001 and industry best practice.
  • Drive continuous improvement of governance, risk and compliance (GRC) processes, reporting, automation and assurance activities.
  • Support regulatory, internal and external audit requirements such as PCI -DSS, ensuring documentation and evidence are maintained to a high standard.

Skills

Technology Risk
IT Audit
GRC
IAM
Third-Party Risk
Internal Controls
Audits
Stakeholder Management
Data Analytics
PCI DSS
NIST Framework
ISO 27001
COBIT
ITIL

Tools

OneTrust

Job description

Frasers Group is seeking a Technology GRC Analyst to support the ongoing development of its technology risk and assurance capability across the group’s global operations. You will identify, assess and monitor technology and cyber risks while ensuring IT and business controls are designed and operating effectively, collaborating with multiple stakeholders.

You will deliver risk assessments, controls testing and IAM assurance, maintain the risk register and contribute to supplier risk and

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Tech GRC Analyst: Risk, IAM & Third-Party Assurance
Tech GRC Analyst: Risk, IAM & Third-Party Assurance

FRASERS GROUP • Shirebrook

On-site
GBP 60,000 - 85,000
Frasers Champion
Retail Reconnect
Fearless 1200
+2
Tech GRC Analyst – Risk & Assurance in Global Retail
Tech GRC Analyst – Risk & Assurance in Global Retail

SmartRecruiters, Inc. • Shirebrook

On-site
GBP 45,000 - 65,000
Frasers Champion
Retail Reconnect
Fearless 1200
+2
Grc Analyst
Grc Analyst

FRASERS GROUP • Shirebrook

On-site
GBP 60,000 - 85,000
Frasers Champion
Retail Reconnect
Fearless 1200
+2
GRC Senior Analyst
GRC Senior Analyst

Recruitment • Greater London

On-site
GBP 75,000 - 110,000
Senior GRC Analyst - AI-Driven Risk & Compliance
Senior GRC Analyst - AI-Driven Risk & Compliance

Recruitment • Greater London

On-site
GBP 75,000 - 110,000
GRC Analyst: Security & Compliance for Tech Teams
GRC Analyst: Security & Compliance for Tech Teams

Rightmove • Greater London

Hybrid
GBP 50,000 - 70,000
Dental and optical plan
Private Medical Insurance
27 days holiday
GRC & Security Risk Analyst — Hybrid London
GRC & Security Risk Analyst — Hybrid London

Rightmove Careers • Greater London

Hybrid
GBP 42,000 - 60,000
Hybrid working
Private Medical Insurance
Pension
+3
IT GRC Senior Analyst
IT GRC Senior Analyst

Nigel Wright Recruitment • Newcastle upon Tyne

Hybrid
GBP 70,000 - 90,000
Hybrid work policy
GRC Analyst
GRC Analyst

SmartRecruiters, Inc. • Mansfield

On-site
GBP 40,000 - 60,000
Frasers Champion
Retail Trust
Fearless 1200
Senior Cyber GRC & Technical Controls Lead
Senior Cyber GRC & Technical Controls Lead

air-recruitment • Greater London

Hybrid
GBP 108,000 - 132,000