At a Glance
- Tasks: Support global security by developing policies and delivering engaging training.
- Company: Join an award-winning company committed to ethical practices and diversity.
- Benefits: Up to £75,000 salary, hybrid work, health insurance, and discounts on high-street shops.
- Why this job: Make a real impact in cybersecurity while driving GRC initiatives.
- Qualifications: Experience with GRC tools, strong communication skills, and knowledge of compliance regulations.
- Other info: Excellent career progression opportunities in a dynamic and inclusive environment.
The predicted salary is between 54000 - 75000 £ per year.
The Governance, Risk & Compliance (GRC) Analyst will play a key role in strengthening our global security posture by supporting the development and maintenance of information security policies, delivering engaging security training, coordinating phishing simulations, and contributing to enterprise-wide risk management activities. This role is ideal for someone with a strong understanding of cybersecurity best practices and the ability to translate them into practical improvements across systems and business processes. You will help drive complex GRC initiatives from inception to successful delivery, ensuring alignment with relevant compliance frameworks and supporting a culture of continuous security enhancement.
What you can expect as a Governance, Risk & Compliance Analyst:
- Salary of up to £75,000
- Perm Hybrid or able to travel – Flexible
- Not only are we offering a competitive salary and a fantastic bonus scheme, you’ll also be entitled to loads of great benefits including discount and cash back on hundreds of high-street shops and private health insurance, plus much more.
Key responsibilities include:
- Develop and support information security governance policies, standards, and processes in collaboration with business and technical teams, and align them with business goals
- Prepare and deliver information security training, education, and awareness activities appropriate for target audiences
- Evaluate effectiveness of information security controls and recommending remediation or control re-design guidance where necessary
- Fine tune and drive adoption of an information security risk assessment framework and related processes; maintain Information Security risk registers and perform annual assessments
- Maintain knowledge of FTC Safeguards, PCI DSS, ISO 27001, and NIST CSF and ensure organizational compliance
- Partner with business leaders to gain a deeper understanding of their needs and provide solutions that meet their goals and objectives while aligning with security best practices and policy
- Maintain working knowledge of data privacy laws and regulations
- Mentor junior members of the GRC Team and support their professional development
We are looking for someone with:
- Proficiency in using GRC tools and software to streamline and automate risk and compliance processes (i.e., AuditBoard)
- Skilled in audit management and experience liaising with third party auditors
- Able to work in a complex, global environment, actively and effectively managing relationships with other business units and stakeholders
- Skilled in communicating technical requirements with non-technical stakeholders
- Excellent oral and written communication skills
- Excellent problem solving and analytical skills
- Strong time management skills, including effective responsibility prioritisation
- Strong analytical and problem-solving skills to identify and assess security risks and develop appropriate mitigation strategies
- Familiarity with relevant industry regulations and compliance requirements such as GDPR, CCPA, SOX, etc.
- Familiarity with various cybersecurity frameworks such as NIST Cybersecurity Framework, ISO 27001, CIS Controls, etc.
If this sounds like you and you’d like to join our rapidly expanding company that offers excellent career progression, then apply now!
Working for Cabot: You’ll be working for an award winning; Investors in People Gold accredited organisation. We’re passionate about the ethical treatment of our customers and employees. Our mission is to create pathways to economic freedom. Our vision is to make credit accessible by partnering with our consumers to restore their financial health.
Diversity and inclusion are very important to us at Cabot, and we value a multitude of diverse talent within our business. We want everyone to be themselves at work and encourage a culture that includes everyone. Our policies ensure that every candidate and employee are treated fairly and with equal opportunities.
At Cabot we are highly regulated by our clients, as such, any successful candidates will have to undergo a basic credit check and criminal background check. Please note that we are unable to proceed to interview stage if a CCJ, IVA or Bankruptcy appears on a credit file, or if you do not have full right to work in the UK – we are unfortunately unable to offer sponsorship.
GRC Analyst in Kings Hill employer: Encore Capital Group
Contact Detail:
Encore Capital Group Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land GRC Analyst in Kings Hill
✨Tip Number 1
Network like a pro! Reach out to folks in the GRC field on LinkedIn or at industry events. A friendly chat can open doors that a CV just can't.
✨Tip Number 2
Show off your skills! Prepare a portfolio or case studies that highlight your experience with GRC tools and frameworks. This will give you an edge during interviews.
✨Tip Number 3
Practice makes perfect! Conduct mock interviews with friends or mentors to refine your answers, especially around technical requirements and compliance regulations.
✨Tip Number 4
Apply through our website! It’s the best way to ensure your application gets noticed. Plus, we love seeing candidates who are genuinely interested in joining our team.
We think you need these skills to ace GRC Analyst in Kings Hill
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the GRC Analyst role. Highlight your experience with cybersecurity best practices and any relevant tools you've used. We want to see how your skills align with our needs!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about governance, risk, and compliance. Share specific examples of how you've contributed to security initiatives in the past.
Showcase Your Communication Skills: Since this role involves liaising with both technical and non-technical stakeholders, make sure to demonstrate your excellent communication skills in your application. We love candidates who can bridge the gap between tech and business!
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it shows you’re keen on joining our team!
How to prepare for a job interview at Encore Capital Group
✨Know Your GRC Frameworks
Make sure you brush up on your knowledge of relevant compliance frameworks like ISO 27001 and NIST CSF. Be ready to discuss how these frameworks can be applied in real-world scenarios, as this will show your understanding of the role and its requirements.
✨Showcase Your Communication Skills
As a GRC Analyst, you'll need to communicate complex security concepts to non-technical stakeholders. Prepare examples of how you've successfully done this in the past, and practice explaining technical terms in simple language to demonstrate your ability to bridge the gap.
✨Prepare for Scenario-Based Questions
Expect questions that ask you to solve hypothetical problems related to risk management or compliance. Think through potential scenarios beforehand and outline your thought process for addressing them, showcasing your analytical and problem-solving skills.
✨Highlight Your Training Experience
Since delivering engaging security training is part of the job, be prepared to discuss any experience you have in creating or delivering training sessions. Share specific examples of how you made the content relatable and effective for your audience.