Senior GRC Analyst: IT Risk, Compliance & Security

Vertiv Co

Mandaluyong

On-site

PHP 600,000 - 900,000

Full time

10 days ago
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Vertiv Co. is seeking a Governance Risk and Compliance Analyst II to drive risk assessments, security reviews, and policy improvements within IT Security.

You will partner with cross‑functional teams to enhance the organization’s risk posture and audit readiness, while mentoring junior staff and supporting playbooks and SOPs. The role emphasizes coordinating risk mitigation actions, managing third‑party assessments, and producing GRC dashboards for leadership insights, with a focus on ISO 27001

Qualifications

  • Bachelor’s degree in information systems, cybersecurity, or related field.
  • 5+ years of experience in GRC, IT Risk Management, or Information Security.
  • Strong understanding of ITGC, SOX, ISO 27001, NIST CSF, and data privacy regulations (e.g., HIPAA, GDPR).
  • Experience with GRC platforms such as ServiceNow GRC, OneTrust, and SecurityScorecard.
  • Certifications such as CISA, CISSP, ISO 27001 Lead Implementer or Auditor (preferred).

Responsibilities

  • Lead IT risk assessments, mitigation planning, and control monitoring activities.
  • Oversee risk register updates and coordinate with risk owners and SMEs to track mitigation actions.
  • Drive third‑party risk reviews and assessments using OneTrust and SecurityScorecard, escalating high‑risk vendors for action.
  • Conduct contract reviews focused on information security terms and recommend necessary revisions.
  • Respond to customer security questionnaires with input from SMEs using Loopio.
  • Supervise compliance training rollouts (e.g., phishing campaigns, annual security awareness training).
  • Review and recommend changes to IT security policies and standards aligned with ISO 27001, NIST CSF, and other frameworks.
  • Generate and present GRC dashboards and KPIs to leadership to inform risk posture and team performance.
  • Act as an escalation point for GRC process inquiries and ticket‑related exceptions.
  • Mentor junior analysts and support GRC program maturity through playbooks, SOPs, and process documentation.

Skills

Stakeholder management
Documentation
Analytical skills
Communication
Mentoring

Education

Bachelor’s degree in information systems or cybersecurity

Tools

ServiceNow GRC
OneTrust
SecurityScorecard
Loopio

Job description

Vertiv Co. is seeking a Governance Risk and Compliance Analyst II to drive risk assessments, security reviews, and policy improvements within IT Security.

You will partner with cross‑functional teams to enhance the organization’s risk posture and audit readiness, while mentoring junior staff and supporting playbooks and SOPs. The role emphasizes coordinating risk mitigation actions, managing third‑party assessments, and producing GRC dashboards for leadership insights, with a focus on ISO 27001

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Governance Risk and Compliance I Analyst II
Governance Risk and Compliance I Analyst II

Vertiv Co • Mandaluyong

On-site
PHP 600,000 - 900,000
Governance Risk And Compliance I Analyst II
Governance Risk And Compliance I Analyst II

Vertiv • Mandaluyong

On-site
PHP 900,000 - 1,300,000
GRC Analyst II: Elevate IT Risk & Compliance
GRC Analyst II: Elevate IT Risk & Compliance

Vertiv • Mandaluyong

On-site
PHP 900,000 - 1,300,000
Senior IT SOX & GRC Analyst
Senior IT SOX & GRC Analyst

Vertiv Co • Mandaluyong

On-site
PHP 700,000 - 900,000
Senior IT SOX & GRC Controls Analyst
Senior IT SOX & GRC Controls Analyst

Vertiv Group Corporation • Mandaluyong

On-site
PHP 900,000 - 1,500,000
Senior IT SOX & GRC Analyst — Risk & Controls
Senior IT SOX & GRC Analyst — Risk & Controls

Vertiv • Mandaluyong

On-site
PHP 900,000 - 1,300,000
GRC Risk & Compliance Specialist – IT & Security
GRC Risk & Compliance Specialist – IT & Security

LaVie • Manila

On-site
PHP 1,200,000 - 1,800,000
Senior Specialist, GRC
Senior Specialist, GRC

LaVie • Manila

On-site
PHP 1,200,000 - 1,800,000
GRC Analyst II — Remote with SOC 2 & Data Security Focus
GRC Analyst II — Remote with SOC 2 & Data Security Focus

Payscale • Philippines

Remote
PHP 600,000 - 1,000,000
Remote‑first culture
Learning & development
Remote work stipend
+1
GRC & ISMS Specialist: Lead Security Compliance & Risk
GRC & ISMS Specialist: Lead Security Compliance & Risk

Virtual Business Partners Pty. Ltd. • Cebu City

On-site
PHP 800,000 - 1,200,000
HMO + Dental/Optical
Christmas vacation
Electricity & Data subsidies
+3