Information Security GRC Analyst in London

Information Security GRC Analyst in London

London Full-Time 40000 - 42500 € / year (est.) No home office possible
G

At a Glance

  • Tasks: Conduct risk assessments and support compliance with security frameworks like ISO 27001.
  • Company: Join GEDU, a dynamic group transforming lives through education.
  • Benefits: 33 days annual leave, flexible benefits, and opportunities for professional growth.
  • Other info: Inclusive workplace committed to diversity and personal development.
  • Why this job: Make a real impact in information security while developing your career.
  • Qualifications: Bachelor's degree in IT or related field; experience in GRC and ISO 27001 compliance.

The predicted salary is between 40000 - 42500 € per year.

Working Pattern: Full-Time - 40 hrs Per Week

Salary Range: £40,000 to £42,500

Our Vision: Changing lives through education. We’re looking for an Information Security GRC professional to join our team! If you have experience in risk, compliance, and frameworks like ISO 27001 or NIST, this is a great opportunity to make an impact across GBS and the GEDU Group. Please note, we are unable to offer sponsorship for this position.

What the role involves:

  • Perform risk assessments in line with security best practice and GBS/GEDU information security policies and procedures.
  • Support the Information Security Manager in maintaining the corporate IS risk register and compiling monthly reporting to Senior Management via monthly and ad-hoc dashboards and summaries.
  • Support the Information Security Manager to implement ISO 27001 framework for GBS and GEDU Group.
  • Work with stakeholders to identify corrective action plans and reduce risks to acceptable levels.
  • Continually improve the information security risk assessment process and documentation.
  • Carry out third-party risk assessments for GBS and GEDU group.
  • Produce, update and review all information security policies, and provide appropriate training where needed.
  • Maintain and ensure compliance with all external regulatory requirements.
  • Track and report on external and internal information security audit findings to ensure successful closure and completion.
  • Maintain and assist in the regular update and provision of security awareness training to all levels of staff.
  • Assist in efforts to plan and track progress toward security certifications (e.g., Cyber Essentials Plus).
  • Assist with technical analysis and investigations by working collaboratively with technical analysts and the Information Security Manager.

QUALIFICATIONS:

  • Bachelor’s degree in information technology, Computer Science, or a related field.

ESSENTIAL SKILLS and EXPERIENCE:

  • Proven experience in implementing ISO 27001 compliance and Business Continuity/ITDR is mandatory.
  • Experience in working with Governance Risk Compliance (GRC) and GRC reporting.
  • More than 5 years of experience in Information Security, Risk and IT.
  • Experience in performing impact, likelihood and risk analyses / assessments.
  • Ability to ‘translate’ technical security issues into business risk.

DESIRABLE SKILLS and EXPERIENCE:

  • Knowledge of cyber audit and frameworks desirable.
  • Ability to form complex communications/messages/policies in a simple, clear and concise manner to various stakeholders and interested parties.
  • Analytical mindset and creative problem-solving links.

What we offer:

  • Time off that fits your lifestyle – 33 days annual leave (including bank holidays), 1-day extra leave per year of service (up to 5 days) and Buy/Sell additional holidays (up to 5 days).
  • Opportunities for growth – tuition reimbursement for career development courses, wide variety of training courses.
  • Pension Scheme and Flexible Benefits (via salary sacrifice) - Cycle to Work, Workplace Nursery, Tech, Health, Dental and Life Assurance schemes, Women's Health scheme (via Hertlity), and much more.
  • Discounts, Perks and Employee Assistance: Perks@Work discounts platform, Employee Assistance Programme (EAP), discounted gym membership, eyecare vouchers and much more.
  • Reward for your impact - annual salary increase reviews, annual discretionary bonus, £500 award, employee referral scheme.

GBS is committed to equality, diversity and inclusion and providing a workplace free from discrimination or harassment. We welcome applications from all backgrounds and communities. We take our core values seriously and work hard to create an environment where everyone feels welcomed.

About Us: GEDU Global Education is a dynamic and innovative group of education providers. Across our institutions, programmes are designed to have a direct impact on the lives of our students, apprentices and trainees; to equip them with the skills, knowledge and experience necessary for success in their chosen field.

Information Security GRC Analyst in London employer: GEDU CAREERS

At GEDU Global Education, we pride ourselves on being an exceptional employer that values the growth and well-being of our employees. With a strong commitment to work-life balance, we offer 33 days of annual leave, flexible benefits, and numerous opportunities for professional development, including tuition reimbursement for career advancement. Our inclusive work culture fosters collaboration and innovation, making it an ideal environment for Information Security GRC Analysts looking to make a meaningful impact in the education sector.

G

Contact Detail:

GEDU CAREERS Recruiting Team

StudySmarter Expert Advice🤫

We think this is how you could land Information Security GRC Analyst in London

Tip Number 1

Network like a pro! Reach out to folks in the industry on LinkedIn or at local meetups. A friendly chat can lead to opportunities that aren’t even advertised yet.

Tip Number 2

Prepare for interviews by researching the company and its culture. We want to see how you fit into our vision of changing lives through education, so be ready to share your thoughts on that!

Tip Number 3

Show off your skills! Bring examples of your past work or projects related to risk assessments and compliance. We love seeing how you’ve tackled challenges in the past.

Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining our team.

We think you need these skills to ace Information Security GRC Analyst in London

ISO 27001 Compliance
Risk Assessment
Governance Risk Compliance (GRC)
GRC Reporting
Information Security
Impact Analysis
Likelihood Analysis

Some tips for your application 🫡

Tailor Your CV:Make sure your CV is tailored to the Information Security GRC Analyst role. Highlight your experience with ISO 27001 and risk assessments, as these are key for us. Use specific examples that showcase your skills in compliance and frameworks.

Craft a Compelling Cover Letter:Your cover letter is your chance to shine! Explain why you're passionate about information security and how your background aligns with our vision of changing lives through education. Keep it concise but impactful!

Showcase Your Analytical Skills:We love candidates who can think critically! In your application, mention any experiences where you've successfully performed risk analyses or developed corrective action plans. This will show us you can translate technical issues into business risks.

Apply Through Our Website:Don’t forget to apply through our website! It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it gives you a chance to explore more about our company culture and values.

How to prepare for a job interview at GEDU CAREERS

Know Your Frameworks

Make sure you brush up on ISO 27001 and NIST frameworks before the interview. Be ready to discuss how you've implemented these in past roles, as this will show your practical experience and understanding of compliance.

Prepare for Risk Assessments

Since the role involves performing risk assessments, think of specific examples where you've conducted these in line with security best practices. Be prepared to explain your methodology and how you identified corrective action plans.

Showcase Your Communication Skills

You’ll need to translate technical security issues into business risks. Practice explaining complex concepts in simple terms, as this will demonstrate your ability to communicate effectively with various stakeholders.

Stay Updated on Compliance Trends

Familiarise yourself with current trends in information security and compliance. Being able to discuss recent developments or changes in regulations will show that you're proactive and engaged in the field.