At a Glance
- Tasks: Manage acquisitions and enhance GRC processes to ensure compliance and security.
- Company: WiseTech Global, a leader in supply chain technology and innovation.
- Benefits: Competitive salary, career growth, and a chance to make a global impact.
- Why this job: Join a dynamic team transforming global trade through innovative GRC solutions.
- Qualifications: 5+ years in GRC with strong cybersecurity knowledge and relevant certifications.
- Other info: Collaborative environment focused on continuous improvement and excellence.
The predicted salary is between 36000 - 60000 £ per year.
WiseTech Global is a leading force in empowering and revolutionizing the world's supply chains. Our innovative technologies play a pivotal role in safeguarding the data and ensuring the security of thousands of users globally, including the world's largest freight forwarders. We are dedicated to delivering efficiency, transparency, and confidence through our Governance, Risk, and Compliance (GRC) framework.
We are seeking an experienced Senior Governance, Risk, and Compliance (GRC) Analyst with expertise in managing acquisitions, integrating them seamlessly into our company's way of working as well as responding to our customer's security questionnaires. The ideal candidate should have 5+ years of direct work experience and a proven track record of successfully navigating the challenges associated with assimilating newly acquired entities into existing business operations.
The role requires a keen understanding of regulatory compliance, risk management, and a strategic mindset to ensure smooth and efficient integration processes. The GRC Analyst will play a critical role in enhancing our overall GRC posture and maintaining regulatory compliance for WiseTech Global.
Given the close collaboration with technical security teams, the ideal candidate will bring a solid background in technical cybersecurity (e.g. experience as a Security Analyst, SecOps Analyst, Incident Response Analyst or similar), alongside recent and relevant experience in governance, risk, and compliance (GRC).
Key Responsibilities- Acquisition Assessment: Collaborate with cross-functional teams to assess the GRC landscape of newly acquired companies, identifying gaps and alignment opportunities.
- Integration Planning: Develop comprehensive integration plans tailored to each acquisition, ensuring alignment with the company's overarching GRC strategy.
- Risk Management: Evaluate and mitigate risks associated with integration processes, working closely with risk management teams.
- Policy and Procedure Harmonization: Bridge gaps between existing practices and those of acquired entities, harmonizing policies, procedures, and controls.
- Communication and Stakeholder Management: Effectively communicate integration plans and progress, fostering strong relationships with key stakeholders.
- Reporting and Documentation: Maintain accurate documentation of integration activities and generate insightful reports for senior management.
- Continuous Improvement: Identify areas for improvement and drive enhancements to the integration process.
- Customer Security Questionnaire Support: Collaborate with various teams to ensure accurate and comprehensive responses to customer security questionnaires.
Strong foundation in core IT or Cybersecurity principles, ideally supported by hands-on experience in areas such as networking, system administration, or security operations.
Qualifications and Desired Experience- 5+ years of hands-on experience in GRC, preferably with a focus on acquisition integration.
- Strong knowledge of regulatory compliance requirements, risk management frameworks, including ISO 27001, NIST.
- Experience with SOC1/2, GDPR, and privacy frameworks.
- Proficiency in information security tools, techniques, and controls.
- Experience with metrics and KPIs to measure and track information security risk.
- Ability to develop policies, standards, and guidelines.
- ISO27001:2022 Lead Implementer and lead auditor certifications are a must.
- CISA, CISM, CISSP, or CRISC certifications are desirable.
- Experience with GRC tools, such as Vanta, Archer, ServiceNow Risk modules is highly desirable.
- Exceptional communication and interpersonal skills.
- Analytical mindset with the ability to identify, assess, and mitigate risks.
- Good project management skills with ISMS and control implementation experience.
- Knowledge of GRC software tools and technology.
- Attention to detail and commitment to high-quality deliverables that meet business and compliance objectives.
At WiseTech Global, we don't just offer a job; we provide an opportunity to excel. We believe in hiring the best talent who can drive themselves and our business to greater heights. Join us in our mission to transform global trade, one innovation at a time. Join WiseTech Global and be a part of a dynamic and innovative team dedicated to transforming global trade.
From time to time, WiseTech Global may use an external service provider to assess applications on our behalf. Accordingly, by applying for this role and providing your personal information to WiseTech Global, you consent to WiseTech Global providing this information to our external service providers who are required to treat such information with strict confidentiality in line with privacy and data protection laws and regulations.
Senior GRC Analyst employer: CargoWise
Contact Detail:
CargoWise Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Senior GRC Analyst
✨Tip Number 1
Network like a pro! Reach out to current or former employees at WiseTech Global on LinkedIn. A friendly chat can give you insider info and maybe even a referral, which can really boost your chances.
✨Tip Number 2
Prepare for the interview by brushing up on your GRC knowledge. Make sure you can discuss how you've tackled compliance challenges in the past. We want to see your strategic mindset in action!
✨Tip Number 3
Showcase your technical skills! If you've got experience with cybersecurity tools or frameworks like ISO 27001 or NIST, make sure to highlight that during your discussions. It’s all about proving you can hit the ground running.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you're genuinely interested in joining our team at WiseTech Global.
We think you need these skills to ace Senior GRC Analyst
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Senior GRC Analyst role. Highlight your experience in governance, risk, and compliance, especially any work with acquisitions. We want to see how your skills align with our needs!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're the perfect fit for WiseTech Global. Share specific examples of your past experiences that relate to the job description, and don’t forget to show your enthusiasm for the role.
Showcase Relevant Certifications: If you’ve got certifications like ISO27001:2022 Lead Implementer or CISA, make sure they’re front and centre in your application. These qualifications are key for us, so let’s see them!
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it’s super easy!
How to prepare for a job interview at CargoWise
✨Know Your GRC Stuff
Make sure you brush up on your Governance, Risk, and Compliance knowledge. Familiarise yourself with frameworks like ISO 27001 and NIST, as well as the specific compliance requirements relevant to WiseTech Global. Being able to discuss these confidently will show that you're serious about the role.
✨Showcase Your Integration Skills
Prepare examples from your past experience where you've successfully managed acquisitions or integrations. Highlight how you identified gaps and harmonised policies. This will demonstrate your ability to handle the key responsibilities of the role effectively.
✨Communicate Like a Pro
Since this role involves a lot of stakeholder management, practice articulating your thoughts clearly. Be ready to explain complex GRC concepts in simple terms. Good communication skills can set you apart, especially when discussing integration plans and progress.
✨Bring Your Cybersecurity Knowledge
Given the technical aspect of the role, be prepared to discuss your background in cybersecurity. Share any hands-on experience you have, whether it's in security operations or incident response. This will help you connect with the technical teams you'll be collaborating with.