Analyst, GRC Client Assurance

Analyst, GRC Client Assurance

Full-Time 55000 - 65000 £ / year (est.) No working from home possible
Storyful

At a Glance

  • Tasks: Assist with security assessments and client inquiries to ensure our security posture is top-notch.
  • Company: Join a leading global business in the heart of London with a focus on innovation.
  • Benefits: Hybrid work model, competitive salary, and opportunities for professional growth.
  • Other info: Dynamic role with excellent career advancement opportunities in a supportive environment.
  • Why this job: Make a real impact in cybersecurity while collaborating with diverse teams.
  • Qualifications: 3+ years in Cyber Security, strong communication skills, and relevant certifications preferred.

The predicted salary is between 55000 - 65000 £ per year.

The Governance, Risk and Compliance (GRC) Client Assurance Analyst will have a good understanding of information security and privacy principles as well as a sound understanding of regulatory and compliance requirements affecting a global business.

What’s the role?

  • Assist with security questionnaires, RFPs, and assessments from Dow Jones’ corporate customers to verify our organization's security posture, often against tight deadlines.
  • Respond to client inquiries related to SOC2, ISO27001, GDPR, risk management, and other security controls.
  • Support Sales during enterprise deals, renewals, and escalations by providing security related information.
  • Participate in customer meetings to share evidence of security controls.
  • Maintain standardized responses, evidence, and customer-facing security documentation.
  • Collaborate frequently with Product, Technology, Legal, and other Cyber SMEs to gather accurate, timely information and validate responses.
  • Track ownership, status, and deadlines for assurance deliverables to ensure on-time completion.
  • Track and manage control gaps, risks, and remediation efforts.
  • Support in the implementation of key security initiatives across the organisation.
  • Assist in the development and maintenance of effective measurement and simplified reporting for the Client Assurance program.
  • Assist with additional Cyber related projects as needed.

Who are you?

  • 3+ years’ experience within Cyber Security or related fields.
  • Experience in a B2B SaaS or a cloud-native environment.
  • Demonstrated experience working in a highly cross-functional environment.
  • Strong knowledge and experience with Industry Frameworks and Standards such as NIST CSF, and ISO 27001.
  • Knowledge of the Dow Jones B2B products (Risk & Compliance, Factiva, Newsplus) is a bonus.
  • Good working knowledge of Cloud infrastructure, preferably AWS.
  • Strong oral and written communication skills with the ability to translate technical security concepts into clear, customer-friendly language.
  • Qualification in Information Security, Computer Science, Engineering or similar.
  • Professional security certifications such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified Information Systems Auditor (CISA), Certified in Risk and Information Systems Control (CRISC) or similar are preferred.

Analyst, GRC Client Assurance employer: Storyful

At Dow Jones, we pride ourselves on being an exceptional employer, offering a dynamic work environment in the heart of London. Our hybrid model promotes a healthy work-life balance while fostering collaboration across teams, ensuring that our employees have ample opportunities for professional growth and development. With a commitment to diversity and inclusion, we provide a supportive culture where every voice is valued, making it an ideal place for those seeking meaningful and rewarding careers in Cyber Security.

Storyful

Contact Details:

Storyful Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Analyst, GRC Client Assurance

Tip Number 1

Network like a pro! Reach out to folks in the industry, attend events, and connect with people on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.

Tip Number 2

Prepare for interviews by practising common questions related to GRC and Cyber Security. We recommend doing mock interviews with friends or using online platforms to get comfortable with articulating your experience and knowledge.

Tip Number 3

Showcase your skills! Create a portfolio or a presentation that highlights your achievements in Cyber Security. This can be a great way to visually demonstrate your expertise during interviews.

Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining our team.

We think you need these skills to ace Analyst, GRC Client Assurance

Information Security Principles
Privacy Principles
Regulatory Compliance
Security Questionnaires
RFPs
SOC2
ISO27001

Some tips for your application 🫡

Tailor Your Application:Make sure to customise your CV and cover letter for the Analyst role. Highlight your experience in Cyber Security and any relevant frameworks like NIST CSF or ISO 27001. We want to see how your skills align with what we're looking for!

Showcase Your Communication Skills:Since you'll be translating technical concepts into customer-friendly language, it's crucial to demonstrate your strong written communication skills. Use clear and concise language in your application to show us you can do this effectively.

Highlight Cross-Functional Experience:We love candidates who can work across different teams! Make sure to mention any experience you've had collaborating with Product, Technology, or Legal teams. This will show us you're a great fit for our cross-functional environment.

Apply Through Our Website:Don't forget to submit your application through our website! It’s the best way for us to receive your details and ensures you’re considered for the role. We can't wait to see what you bring to the table!

How to prepare for a job interview at Storyful

Know Your Stuff

Make sure you brush up on your knowledge of information security and privacy principles. Familiarise yourself with regulatory requirements like SOC2, ISO27001, and GDPR. Being able to discuss these confidently will show that you're the right fit for the role.

Prepare for Client Scenarios

Think about potential client inquiries you might face during the interview. Prepare clear, concise responses that demonstrate your ability to translate complex security concepts into customer-friendly language. This will highlight your communication skills and understanding of client needs.

Showcase Your Cross-Functional Experience

Since this role involves collaboration with various teams, be ready to share examples of how you've successfully worked in cross-functional environments before. Highlight specific projects where you’ve collaborated with Product, Technology, or Legal teams to solve problems.

Ask Insightful Questions

Prepare some thoughtful questions about the company’s security initiatives and how they align with industry standards. This not only shows your interest in the role but also demonstrates your proactive approach to understanding their security posture and challenges.