At a Glance
- Tasks: Support governance, risk, and compliance activities while mapping controls against the COBIT framework.
- Company: Join a major organisation with a strong security function and inclusive culture.
- Benefits: Competitive rate of £500 - £600, flexible working, and a collaborative environment.
- Other info: Opportunity for personal growth in a dynamic and supportive workplace.
- Why this job: Make an impact in governance and risk management while working with diverse teams.
- Qualifications: Experience in GRC roles and strong knowledge of the COBIT framework required.
The predicted salary is between 65250 - 79750 £ per year.
Rate - £500 - £600 Inside IR35
Duration - 6 months initial
Location - Reading / Dorset - Twice a week on site
We're supporting a major organisation looking for an experienced GRC Analyst to join an established security function. This is an opportunity for someone who can quickly establish themselves, work independently and contribute to a governance and risk programme from day one. The role will focus heavily on governance, risk and control assurance activities, with a particular emphasis on COBIT control mapping and stakeholder engagement across the business.
Key Responsibilities
- Support governance, risk and compliance activities across the security function.
- Map and maintain controls against the COBIT framework.
- Review and assess audit findings and support remediation activities.
- Conduct control assurance and control effectiveness assessments.
- Work with technical and non-technical stakeholders to translate control requirements into practical business actions.
- Track and report on control maturity, risk posture and compliance activities.
- Support risk assessments and risk management processes.
- Provide clear reporting and updates to senior stakeholders.
Required Experience
- Proven experience working within a GRC, Risk or Information Security Governance role.
- Strong knowledge and practical experience of the COBIT framework.
- Experience mapping controls and developing control frameworks.
- Demonstrable experience managing audit findings and remediation activities.
- Strong background in control assurance and control effectiveness reviews.
- Ability to translate complex control and compliance requirements into language that business stakeholders can understand.
- Experience engaging with stakeholders across technology, security, risk and business teams.
- Comfortable working autonomously while contributing effectively within a wider team.
Reasonable Adjustments: Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications from people of all backgrounds and perspectives. Our success is driven by our people, united by the spirit of partnership to deliver the best resourcing.
GRC Analyst in Reading employer: Sanderson
Join a leading organisation in Reading/Dorset as a GRC Analyst, where you will be part of a dynamic and inclusive work culture that values diversity and collaboration. With a strong focus on employee growth, you will have the opportunity to enhance your skills in governance, risk, and compliance while working closely with both technical and non-technical stakeholders. Enjoy competitive rates and the flexibility of a hybrid work model, making this an excellent place for meaningful and rewarding employment.
StudySmarter Expert Advice🤫
We think this is how you could land GRC Analyst in Reading
✨Get Engaged in Cybersecurity Communities
Dive into online forums or local meetups, like OWASP events or Cybersecurity conferences. These spaces are packed with pros who can share insights and might even know about temporary roles at places like Sanderson.
✨Showcase Your Skills Publicly
Link your GitHub or create a series of blogs sharing your knowledge on cybersecurity topics. It’s a great way to demonstrate your expertise and attract attention from hiring managers, especially when they see your passion in action.
✨Stay On Top of Temp Opportunities
Keep an eye on platforms that list temporary positions specifically in tech. Websites focusing on contract roles in cybersecurity can lead straight to employers like Sanderson.
✨Make Contact with Recruiters Specialising in Cybersecurity
Reach out to recruitment agencies that focus on cybersecurity roles. They often have insights into temporary roles before they’re advertised and can put your name forward to companies like Sanderson.
We think you need these skills to ace GRC Analyst in Reading
Some tips for your application 🫡
Show Off Your Technical Skills:In cybersecurity, it's vital to highlight your skills with relevant tools and technologies. Make sure your CV showcases your experience with firewalls, intrusion detection systems, and any cybersecurity frameworks you've worked with. This gives Sanderson a clear view of your capabilities right off the bat.
Certifications Matter:If you’ve got any cybersecurity certifications, like CompTIA Security+ or CISSP, flaunt them! These not only validate your skills but also show that you’re committed to the field. Add a section to your CV specifically for this, because in a temporary role like this, those credentials can really set you apart.
Tailor Your Cover Letter to the Role:For a temporary position, we want to see your willingness to learn and adapt quickly. Make your cover letter specific to the role at Sanderson; mention why you’re excited about the opportunity and how it fits your career goals. A personal touch can make a big difference!
Don’t Forget the Soft Skills:In cybersecurity, technical skills are crucial, but so are soft skills like teamwork and communication. Make sure to weave examples of how you've collaborated with teams or communicated complex ideas into your application. This shows that you're not just a tech whizz but also a great team player, perfect for a temporary role at Sanderson.
How to prepare for a job interview at Sanderson
✨Brush Up on Technical Skills
Make sure you’re familiar with the latest cybersecurity tools and techniques, like firewalls, intrusion detection systems, and malware analysis. During the interview with Sanderson for the GRC Analyst, be prepared to discuss specific scenarios where you tackled security threats or vulnerabilities.
✨Show Your Problem-Solving Prowess
Cybersecurity is all about thinking on your feet. Expect technical questions that require you to demonstrate your problem-solving abilities. You might be presented with a mock security breach scenario, so practising your responses to potential threats can be a game changer!
✨Demonstrate Your Adaptability
As this is a temporary role, showing that you're adaptable and quick to learn is crucial. Talk about times you've picked up new skills or reacted to changing situations quickly. Employers want to know you can hit the ground running and keep things secure during your short stay at Sanderson.
✨Bring Relevant Certifications
If you have any relevant cybersecurity certifications, like CompTIA Security+ or CEH, be sure to mention them. This can really help you stand out during a temporary hiring process, as it showcases your commitment to the field and your readiness to take on the GRC Analyst role at Sanderson.