At a Glance
- Tasks: Shape governance, risk, and compliance strategies in a fast-evolving environment.
- Company: Fortris, a leading digital asset integration provider with a global team.
- Benefits: Remote-first culture, 25 vacation days, private health insurance, and personal training budget.
- Why this job: Join a top-rated workplace and make a real impact in fintech compliance.
- Qualifications: 5+ years in GRC, strong communication skills, and knowledge of regulatory frameworks.
- Other info: Collaborative environment with excellent career growth and cutting-edge tech.
The predicted salary is between 36000 - 60000 £ per year.
Fortris is a leading provider of digital asset integration services for enterprise treasury operations. Founded in 2017 by a team of payment and security veterans, Fortris gives organizations the technology and expertise to embrace digital asset transformation in a secure and simplified manner. With people from all across the globe, our talented team has built a working environment that encourages both personal and professional growth.
Your Mission: We’re looking for a Senior GRC Analyst with a sharp eye for risk, deep understanding of compliance frameworks, and a passion for protecting what matters most. In this role, you’ll help shape our governance, risk, and compliance posture as we scale in a highly regulated and fast-evolving environment. You’ll support our global risk strategy, drive control implementation, and act as a bridge between compliance obligations and day-to-day business operations. You will work closely with the Security, Product Security, and Engineering teams, taking ownership of cross-functional risk and compliance initiatives while ensuring Fortris stays one step ahead of regulatory requirements.
What You'll Do:
- Execute and continuously enhance GRC processes, including risk assessments, compliance monitoring, and policy governance.
- Maintain and update the enterprise risk register, mapping controls and mitigation efforts to key risks.
- Support audit readiness and lead evidence collection for frameworks like ISO27001, SOC2, GDPR, DORA and other regulatory regimes.
- Coordinate internal control reviews and ensure that controls are effectively designed, implemented, and maintained.
- Contribute to the development and refinement of policies, standards, and procedures across the organization.
- Collaborate with Security, Product Security and Engineering to integrate governance and compliance into operational practices.
- Track regulatory changes and assess their impact on Fortris’s compliance and risk landscape.
- Support compliance training and awareness initiatives across all business functions.
- Work cross-functionally to assess risk in third-party vendors and support onboarding diligence.
- Generate clear, actionable reports and dashboards for internal stakeholders, including leadership.
What You'll Bring:
- Fluent level of English and strong written communication skills.
- Minimum 5+ years of experience in GRC, Compliance, Risk Management or related functions.
- In-depth knowledge of regulatory frameworks and standards like ISO27001, SOC2, NIST, GDPR, and others relevant to fintech/crypto.
- Hands-on experience with risk assessments, control design, compliance audits, and policy management.
- Experience working with GRC platforms (e.g. LogicGate, ServiceNow GRC, OneTrust) and audit workflows.
- Familiarity with security and privacy best practices in SaaS or financial services environments.
- Excellent problem-solving abilities and a pragmatic approach to risk mitigation.
- Strong interpersonal skills with the ability to influence across teams.
- Certifications such as CRISC, CISA, CGRC, or similar are a plus.
What We Offer:
- A remote-first culture, empowering you to work from anywhere.
- 25 paid vacation days + in lieu allowance for public holidays (depending on location).
- Flexible working hours.
- Private health insurance (or equivalent benefits based on location).
- Free optional English lessons.
- Personal training budget to support your development.
- Team building and company social events.
- Cutting-edge tech and Apple equipment.
Senior GRC Analyst employer: P2P
Contact Detail:
P2P Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Senior GRC Analyst
✨Tip Number 1
Network like a pro! Reach out to current employees at Fortris on LinkedIn or other platforms. Ask them about their experiences and any tips they might have for the interview process. It’s all about making connections!
✨Tip Number 2
Prepare for those tricky questions! Brush up on your knowledge of compliance frameworks and risk management. Be ready to discuss how you’ve tackled challenges in past roles, especially in GRC. We want to see your problem-solving skills in action!
✨Tip Number 3
Show off your passion for digital assets! Make sure to highlight any relevant experience or projects that demonstrate your understanding of fintech and crypto. This will help us see how you can contribute to our mission at Fortris.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets noticed. Plus, you’ll find all the info you need about our values and perks there. Let’s get you on board!
We think you need these skills to ace Senior GRC Analyst
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Senior GRC Analyst role. Highlight your experience with compliance frameworks and risk management, and don’t forget to mention any relevant certifications. We want to see how your skills align with what we’re looking for!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you’re passionate about governance, risk, and compliance. Share specific examples of how you’ve tackled challenges in previous roles. We love hearing your story!
Showcase Your Communication Skills: Since strong written communication is key for this role, make sure your application is clear and concise. Avoid jargon unless necessary, and keep your language professional yet approachable. We appreciate clarity and directness!
Apply Through Our Website: We encourage you to apply through our website for the best experience. It’s super easy, and you’ll get all the info you need about the role and our company culture. Plus, we love seeing applications come directly from our site!
How to prepare for a job interview at P2P
✨Know Your GRC Frameworks
Make sure you brush up on your knowledge of key regulatory frameworks like ISO27001, SOC2, and GDPR. Be ready to discuss how you've applied these in your previous roles, as this will show your depth of understanding and practical experience.
✨Showcase Your Problem-Solving Skills
Prepare examples that highlight your problem-solving abilities, especially in risk mitigation. Think of specific challenges you've faced in past roles and how you tackled them, as this will demonstrate your pragmatic approach to compliance.
✨Communicate Clearly and Confidently
Since strong written communication skills are essential for this role, practice articulating your thoughts clearly. You might be asked to explain complex concepts, so being able to convey your ideas simply and effectively is key.
✨Engage with Cross-Functional Collaboration
Be ready to discuss your experience working with different teams, such as Security and Engineering. Highlight how you've successfully integrated governance and compliance into operational practices, as this aligns perfectly with what Fortris is looking for.