Information Security Governance, Risk and Compliance Analyst in Edinburgh

Information Security Governance, Risk and Compliance Analyst in Edinburgh

Edinburgh Full-Time 50000 - 60000 £ / year (est.) No working from home possible
Trustpilot

At a Glance

  • Tasks: Join our team to enhance security and compliance in a fast-paced tech environment.
  • Company: Trustpilot, a leading consumer review platform with a mission to build trust.
  • Benefits: Enjoy rich learning opportunities, health plans, and a vibrant office culture.
  • Other info: Be part of a diverse team that values collaboration and fresh ideas.
  • Why this job: Make a real impact on AI security while working with innovative technologies.
  • Qualifications: Experience in compliance frameworks and a passion for risk management.

The predicted salary is between 50000 - 60000 £ per year.

At Trustpilot, we are on an incredible journey. We are a profitable, high-growth FTSE-250 company with a big vision: to become the universal symbol of trust. We run the world’s largest independent consumer review platform, and while we have come a long way, there is still so much exciting work to do. Come join us at the heart of trust!

Ready to help us navigate a major shift in technology that brings both exciting opportunities and new security risks? Our Information Security team’s mission is to securely enable Trustpilot to be the universal symbol of trust. As our new Governance, Risk and Compliance Analyst, you will get hands-on with some of our most exciting initiatives yet.

You will help mature our core compliance frameworks and play a key role in shaping our approach to AI security and governance. From risk-assessing new AI systems to helping us use AI to automate manual GRC workflows, your work will directly strengthen our security posture.

We are an open, inclusive and collaborative team of security enthusiasts who work closely with engineers and data scientists to solve complex problems. If you are a pragmatic technologist who loves balancing risk with fast-paced innovation, we want you to bring your unique perspective and ideas to our team.

You will partner with our security, risk and engineering teams to mature our core compliance programs and safely adopt exciting new AI technologies, directly strengthening the trust millions of people place in our platform.

  • Drive our ongoing compliance efforts for major industry standards, including SOC 2, ISO27001, ISO42001 and PCI DSS, ensuring we consistently meet commitments to our customers.
  • Evaluate and manage the security risks associated with our new artificial intelligence and machine learning systems, allowing our product teams to innovate safely and securely.
  • Streamline how we assess the security of our vendors and third-party tools, paying special attention to how we safely integrate external AI technologies into our business.
  • Help develop our internal standards for artificial intelligence, keeping us ahead of the curve on new global regulations like the EU AI Act.
  • Identify opportunities to replace manual, repetitive risk management tasks with smart, AI-driven automation.
  • Refresh our security policies and public-facing documents to clearly communicate our security posture to our customers, partners and auditors.
  • Act as an advocate for security awareness across the business, helping colleagues understand how balancing risk and innovation leads to better, safer products.

Who you are

  • You have solid experience managing and auditing against core compliance frameworks, such as SOC 2, ISO27001 and PCI DSS.
  • You are well-versed in risk management processes, including risk identification, third-party risk management and vendor security due diligence.
  • You have practical experience developing, implementing and managing security policies and procedures.
  • You are a pragmatist who knows how to balance security risks with the pace of innovation, bringing a solid understanding of cloud environment risks.
  • Bonus points if you are familiar with emerging AI governance frameworks (like the EU AI Act, NIST AI RMF, and ISO/IEC 42001) or have a strong desire to learn them on the job.
  • Bonus points if you have experience with, or a keen interest in, using AI to automate manual tasks and drive efficiencies in GRC workflows.

What’s in it for you

  • Rich learning and development opportunities are supported through the Trustpilot Academy and Blinkist.
  • Pension and life insurance.
  • Health cash plan, online GP, 24/7 Employee Assistance Plan.
  • Full access to Headspace, a popular mindfulness app to promote positive mental health.
  • Paid parental leave.
  • Season ticket loan and a cycle-to-work scheme.
  • Central office location complete with all the snacks and refreshments you can ask for.
  • Regular opportunities to connect and get to know your fellow Trusties, including company-wide celebrations and events, ERG activities, and team socials.
  • Access to over 4,000 deals and discounts on things like travel, electronics, fashion, fitness, cinema discounts, and more.

About us

Trustpilot began in 2007 with a simple yet powerful idea that is more relevant today than ever — to be the universal symbol of trust, bringing consumers and businesses together through reviews. Trustpilot is open, independent, and impartial — we help consumers make the right choices and businesses to build trust, grow and improve.

Today, we have more than 300 million reviews and 64 million monthly active users on average across the globe, with 140 billion annual Trustbox impressions, and the numbers keep growing. We have more than 1,000 employees and we’re headquartered in Copenhagen, with operations in Amsterdam, Denver, Edinburgh, Hamburg, London, Melbourne, Milan and New York.

We’re driven by connection. It’s at the heart of what we do. Our culture keeps things fresh –– it’s built on the relationships we create. We talk, we laugh, we collaborate and we respect each other. We work across borders and cultures to be the universal symbol of trust in an ever-changing world. With vibrant office locations worldwide and over 50 nationalities, we’re proud to be an equal opportunity workplace with diverse perspectives and ideas.

Our purpose to help people and businesses help each other is a tall order, but we keep it real. We’re a great bunch of humans, doing awesome stuff, without fuss or pretense. A successful Trustpilot future is driven by you –– we give you the autonomy to shape a career you can be proud of. If you’re ready to grow, let’s go.

Trustpilot is committed to creating an inclusive environment where people from all backgrounds can thrive and where different viewpoints and experiences are valued and respected. Trustpilot will consider all applications for employment without regard to race, ethnicity, national origin, religious beliefs, gender identity or expression, sexual orientation, neurodiversity, disability, age, parental or veteran status. Together, we are the heart of trust.

Trustpilot is a global company and our data practices are designed to ensure that your personally identifiable information is appropriately protected. Please note that your personal information will be transferred, accessed, and stored globally as necessary for the uses and disclosures stated in our Privacy Policy. If you have a disability and would like to discuss any adjustments you might need either in submitting your application, or to the recruitment process more generally, please let us know by contacting our Talent Acquisition Team quoting the role you wish to apply for. Any offer of employment for this position will be subject to our standard background checks.

Information Security Governance, Risk and Compliance Analyst in Edinburgh employer: Trustpilot

At Trustpilot, we pride ourselves on being an exceptional employer, offering a vibrant and inclusive work culture that fosters collaboration and innovation. Our commitment to employee growth is evident through rich learning opportunities via the Trustpilot Academy, alongside comprehensive benefits such as health plans, paid parental leave, and a central office location filled with amenities. Join us in shaping the future of trust while enjoying a supportive environment that values diverse perspectives and encourages personal development.

Trustpilot

Contact Details:

Trustpilot Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Information Security Governance, Risk and Compliance Analyst in Edinburgh

Tip Number 1

Network like a pro! Reach out to folks in the industry, especially those at Trustpilot. A friendly chat can open doors that a CV just can't.

Tip Number 2

Prepare for the interview by diving deep into Trustpilot's mission and values. Show us how your skills align with our vision of becoming the universal symbol of trust.

Tip Number 3

Be ready to discuss real-world examples of how you've tackled compliance challenges. We love hearing about your hands-on experience with frameworks like SOC 2 and ISO27001!

Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets the attention it deserves. Plus, we’re always on the lookout for passionate candidates like you!

We think you need these skills to ace Information Security Governance, Risk and Compliance Analyst in Edinburgh

Governance, Risk and Compliance (GRC)
ISO27001
SOC 2
PCI DSS
Risk Management
Vendor Security Due Diligence
Security Policy Development

Some tips for your application 🫡

Tailor Your CV:Make sure your CV is tailored to the role of Governance, Risk and Compliance Analyst. Highlight your experience with compliance frameworks like SOC 2 and ISO27001, and don’t forget to mention any hands-on work with AI security if you have it!

Craft a Compelling Cover Letter:Your cover letter is your chance to shine! Use it to explain why you’re passionate about information security and how your unique perspective can contribute to Trustpilot’s mission. Keep it engaging and personal.

Showcase Your Skills:In your application, be sure to showcase your skills in risk management and policy development. Use specific examples from your past experiences to demonstrate how you’ve successfully balanced security risks with innovation.

Apply Through Our Website:We encourage you to apply through our website for a smoother process. It’s the best way for us to receive your application and ensures you don’t miss out on any important updates from our team!

How to prepare for a job interview at Trustpilot

Know Your Compliance Frameworks

Make sure you brush up on your knowledge of SOC 2, ISO27001, and PCI DSS. Be ready to discuss how you've managed and audited against these frameworks in the past, as this will show that you understand the core compliance requirements Trustpilot values.

Showcase Your Risk Management Skills

Prepare examples of how you've identified and managed security risks, especially in relation to third-party vendors. Highlight any experience you have with AI systems and how you've balanced innovation with risk management, as this is crucial for the role.

Demonstrate Your Pragmatic Approach

Trustpilot is looking for someone who can balance security with fast-paced innovation. Think of specific instances where you've successfully implemented security policies while still allowing for technological advancement. This will resonate well with the team.

Be Ready to Discuss AI Governance

Familiarise yourself with emerging AI governance frameworks like the EU AI Act. Even if you're not an expert, showing a keen interest and willingness to learn about these regulations will impress the interviewers and align with Trustpilot's forward-thinking approach.