Senior InfoSec GRC Specialist in England

Senior InfoSec GRC Specialist in England

England Full-Time 60000 - 80000 ÂŁ / year (est.) No home office possible
C

At a Glance

  • Tasks: Lead security compliance efforts and optimise customer engagement processes.
  • Company: Clearwater Analytics, a leader in software development with a focus on security.
  • Benefits: Full-time role with competitive salary and opportunities for professional growth.
  • Other info: Join a collaborative environment that values flexibility and innovation.
  • Why this job: Make a real impact in information security while working with a dynamic team.
  • Qualifications: 7+ years in InfoSec, strong communication skills, and knowledge of SOC2 and ISO 27001.

The predicted salary is between 60000 - 80000 ÂŁ per year.

The Senior InfoSec GRC Specialist plays a pivotal role across multiple dimensions. They are instrumental in crafting responses to security inquiries within "request for proposals" (RFPs) and ensuring their prompt delivery. As the initial point of contact for addressing customer security concerns, they actively seek avenues to optimize the efficiency of the security customer engagement process. Moreover, they utilize structured methods and protocols to identify and assess risk, implement pertinent controls, formalize agreements, and diligently follow through on necessary procedures. Effective communication is at the core of their responsibilities, encompassing the dissemination of strategies, standards, policies, procedures, and awareness campaigns to all business partners. They take purposeful actions to guarantee global business units' compliance with relevant frameworks and conduct comprehensive reviews of proposed vendor engagement terms and conditions. Additionally, they apply the company's risk profile, offer pertinent feedback, and meticulously document any deviations from the established processes.

Responsibilities

  • Assists in the production of response to security questions in “request for proposals” (RFP’s) or customer assessments (Due Diligence Questionnaires).
  • Acts as first point of escalation for security/compliance questions for current and prospective customers.
  • Review third party vendors for security and compliance controls; assesses risk based on a given risk assessment framework (Third Party Risk Management/Vendor Assessment).
  • Assists and/or takes the lead in managing/overseeing annual SOC2 & ISO27001 audits.
  • Contributes in annual InfoSec Policies review/edits/updates and provides considered input.
  • Review proposed client engagement terms and conditions and apply the company risk profile, providing the appropriate feedback as to any changes needed and documenting exceptions to the process.
  • Assists in the collation of Enterprise Risk, control and mitigation updates, along with KRIs.
  • Identifies efficiency improvements in the security customer engagement process.
  • Communicates strategies, standards, policies, procedures, communications, and awareness efforts with all business partners.
  • Takes actions as directed to ensure compliance of global business units in actions necessary to ensure compliance with applicable frameworks.
  • Keeps up to date with evolving regulations and legislation related to privacy and security as they pertain to Clearwater.
  • Ability to manage time effectively by hitting assigned deadlines and milestones.
  • Requires minimum supervision to work on daily tickets and tasks, can use documentation and team resources to complete most tasks.
  • Capably resolves all but the most complex operational issues without the need for escalation.
  • Willingness and ability to maintain a positive, quality‑oriented, reliable and flexible attitude.
  • Actively seeks opportunities for improving key processes and systems without requiring daily direction.
  • Demonstrates the ability to take on an assignment, project, or problem and lead, define, and implement a solution to completion.

Requirements

  • Knowledge of SOC2 and ISO 27001 control frameworks.
  • Knowledge of risk frameworks and risk management processes.
  • Ability to work effectively in a team environment and across all organizational levels, where flexibility, collaboration, and adaptability are important.
  • Excellent attention to detail and strong documentation skills.
  • Excellent verbal, written and interpersonal communication skills.
  • Experienced in Atlassian (JIRA) and proficient in Microsoft Office.

Experience

  • 7+ years of role-specific experience, preferred.
  • Demonstrated experience in owning, managing and responding to Client/Prospect Security Assessments (DDQs, RFPs etc.).
  • Experience working with Third Party Risk Management/Vendor Assessment tasks.
  • Demonstrated experience with SOC 1, SOC 2, and/or ISO 27001 audits and monitoring control activities.
  • Experience in owning/editing/contributing to Information Security Policies.
  • Experience performing or undergoing internal and external audits.
  • Experience with compliance, audit, or operations including development of internal controls, policies, and procedures.
  • Experience assisting in risk management processes, control frameworks, KRIs.
  • Experience communicating technical controls and processes with customers and stakeholders.
  • Demonstrated professional application of information security, compliance, assurance and/or other security practices and principles.

Seniority level: Mid‑Senior level

Employment type: Full‑time

Job function: Information Technology and General Business

Industries: Software Development

Senior InfoSec GRC Specialist in England employer: Clearwater Analytics (CWAN)

Clearwater Analytics is an exceptional employer that prioritises employee growth and development, offering a dynamic work culture where collaboration and innovation thrive. With a strong commitment to compliance and security, employees are empowered to take on meaningful challenges while enjoying comprehensive benefits and a supportive environment in the heart of Europe. Join us to be part of a forward-thinking team that values your contributions and fosters professional advancement.
C

Contact Detail:

Clearwater Analytics (CWAN) Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Senior InfoSec GRC Specialist in England

✨Tip Number 1

Network like a pro! Reach out to your connections in the InfoSec field, attend industry events, and join relevant online forums. The more people you know, the better your chances of hearing about job openings before they even hit the market.

✨Tip Number 2

Prepare for interviews by brushing up on your knowledge of SOC2 and ISO 27001 frameworks. Be ready to discuss how you've handled security assessments and vendor evaluations in the past. Show them you’re not just a candidate, but the right fit for their team!

✨Tip Number 3

Don’t underestimate the power of follow-ups! After an interview, send a quick thank-you email to express your appreciation and reiterate your interest in the role. It keeps you fresh in their minds and shows your enthusiasm.

✨Tip Number 4

Apply through our website for a smoother process! We love seeing applications come directly from our platform, and it helps us keep track of all the amazing talent out there. Plus, it shows you’re genuinely interested in joining our team!

We think you need these skills to ace Senior InfoSec GRC Specialist in England

Risk Management
Information Security Compliance
SOC 2
ISO 27001
Third Party Risk Management
Vendor Assessment
Attention to Detail
Documentation Skills
Communication Skills
Project Management
Audit Experience
Technical Controls Communication
Process Improvement
Team Collaboration
Adaptability

Some tips for your application 🫡

Tailor Your Application: Make sure to customise your CV and cover letter for the Senior InfoSec GRC Specialist role. Highlight your experience with SOC2, ISO 27001, and risk management processes, as these are key to what we’re looking for.

Showcase Your Communication Skills: Since effective communication is crucial in this role, don’t shy away from demonstrating your verbal and written skills. Use clear, concise language in your application to reflect how you would communicate strategies and policies with our business partners.

Highlight Relevant Experience: Be sure to emphasise your experience with security assessments, vendor management, and compliance audits. We want to see how your background aligns with the responsibilities outlined in the job description.

Apply Through Our Website: We encourage you to submit your application through our website. It’s the best way for us to receive your details and ensures you’re considered for the role. Plus, it’s super easy!

How to prepare for a job interview at Clearwater Analytics (CWAN)

✨Know Your Frameworks

Make sure you brush up on SOC2 and ISO 27001 control frameworks before the interview. Being able to discuss these in detail will show that you’re not just familiar with them, but that you can apply them effectively in real-world scenarios.

✨Prepare for RFP Questions

Since you'll be crafting responses to security inquiries in RFPs, practice answering common security questions. Think about how you would address customer concerns and articulate your thought process clearly during the interview.

✨Showcase Your Communication Skills

Effective communication is key in this role. Be ready to demonstrate your ability to convey complex information simply. You might even want to prepare a brief example of how you've communicated strategies or policies in the past.

✨Highlight Your Problem-Solving Abilities

The role requires identifying efficiency improvements and resolving operational issues. Prepare examples of challenges you've faced in previous roles and how you led the solution process. This will illustrate your proactive approach and leadership skills.

Senior InfoSec GRC Specialist in England
Clearwater Analytics (CWAN)
Location: England

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>