Information Security Governance, Risk and Compliance Analyst

Information Security Governance, Risk and Compliance Analyst

Full-Time 50000 - 60000 £ / year (est.) No working from home possible
Trustpilot

At a Glance

  • Tasks: Join our team to enhance security and compliance in a fast-paced tech environment.
  • Company: Trustpilot, a leading consumer review platform with a mission to build trust.
  • Benefits: Enjoy rich learning opportunities, health plans, and flexible working arrangements.
  • Other info: Collaborative culture with diverse perspectives and excellent career growth potential.
  • Why this job: Be at the forefront of AI security and governance while making a real impact.
  • Qualifications: Experience in compliance frameworks and a passion for risk management.

The predicted salary is between 50000 - 60000 £ per year.

At Trustpilot, we are on an incredible journey. We are a profitable, high-growth FTSE-250 company with a big vision: to become the universal symbol of trust. We run the world’s largest independent consumer review platform, and while we have come a long way, there is still so much exciting work to do. Come join us at the heart of trust!

Ready to help us navigate a major shift in technology that brings both exciting opportunities and new security risks? Our Information Security team’s mission is to securely enable Trustpilot to be the universal symbol of trust. As our new Governance, Risk and Compliance Analyst, you will get hands-on with some of our most exciting initiatives yet. You will help mature our core compliance frameworks and play a key role in shaping our approach to AI security and governance.

Your work will directly strengthen our security posture. We are an open, inclusive and collaborative team of security enthusiasts who work closely with engineers and data scientists to solve complex problems. If you are a pragmatic technologist who loves balancing risk with fast-paced innovation, we want you to bring your unique perspective and ideas to our team.

  • Drive our ongoing compliance efforts for major industry standards, including SOC 2, ISO27001, ISO42001 and PCI DSS, ensuring we consistently meet commitments to our customers.
  • Evaluate and manage the security risks associated with our new artificial intelligence and machine learning systems, allowing our product teams to innovate safely and securely.
  • Streamline how we assess the security of our vendors and third-party tools, paying special attention to how we safely integrate external AI technologies into our business.
  • Help develop our internal standards for artificial intelligence, keeping us ahead of the curve on new global regulations like the EU AI Act.
  • Identify opportunities to replace manual, repetitive risk management tasks with smart, AI-driven automation.
  • Refresh our security policies and public-facing documents to clearly communicate our security posture to our customers, partners and auditors.
  • Act as an advocate for security awareness across the business, helping colleagues understand how balancing risk and innovation leads to better, safer products.

Who you are:

  • You have solid experience managing and auditing against core compliance frameworks, such as SOC 2, ISO27001 and PCI DSS.
  • You are well-versed in risk management processes, including risk identification, third-party risk management and vendor security due diligence.
  • You have practical experience developing, implementing and managing security policies and procedures.
  • You are a pragmatist who knows how to balance security risks with the pace of innovation, bringing a solid understanding of cloud environment risks.
  • Bonus points if you are familiar with emerging AI governance frameworks (like the EU AI Act, NIST AI RMF, and ISO/IEC 42001) or have a strong desire to learn them on the job.
  • Bonus points if you have experience with, or a keen interest in, using AI to automate manual tasks and drive efficiencies in GRC workflows.

What’s in it for you:

  • Rich learning and development opportunities are supported through the Trustpilot Academy and Blinkist.
  • Pension and life insurance.
  • Health cash plan, online GP, 24/7 Employee Assistance Plan.
  • Full access to Headspace, a popular mindfulness app to promote positive mental health.
  • Paid parental leave.
  • Season ticket loan and a cycle-to-work scheme.
  • Central office location complete with all the snacks and refreshments you can ask for.
  • Regular opportunities to connect and get to know your fellow Trusties, including company-wide celebrations and events, ERG activities, and team socials.
  • Access to over 4,000 deals and discounts on things like travel, electronics, fashion, fitness, cinema discounts, and more.

About us:

Trustpilot began in 2007 with a simple yet powerful idea that is more relevant today than ever — to be the universal symbol of trust, bringing consumers and businesses together through reviews. Trustpilot is open, independent, and impartial — we help consumers make the right choices and businesses to build trust, grow and improve. Today, we have more than 300 million reviews and 64 million monthly active users on average across the globe, with 140 billion annual Trustbox impressions, and the numbers keep growing.

We have more than 1,000 employees and we’re headquartered in Copenhagen, with operations in Amsterdam, Denver, Edinburgh, Hamburg, London, Melbourne, Milan and New York. We’re driven by connection. It’s at the heart of what we do. Our culture keeps things fresh –– it’s built on the relationships we create. We talk, we laugh, we collaborate and we respect each other. We work across borders and cultures to be the universal symbol of trust in an ever-changing world.

With vibrant office locations worldwide and over 50 nationalities, we’re proud to be an equal opportunity workplace with diverse perspectives and ideas. Our purpose to help people and businesses help each other is a tall order, but we keep it real. We’re a great bunch of humans, doing awesome stuff, without fuss or pretense. A successful Trustpilot future is driven by you –– we give you the autonomy to shape a career you can be proud of. If you’re ready to grow, let’s go. Join us at the heart of trust.

Trustpilot is committed to creating an inclusive environment where people from all backgrounds can thrive and where different viewpoints and experiences are valued and respected. Trustpilot will consider all applications for employment without regard to race, ethnicity, national origin, religious beliefs, gender identity or expression, sexual orientation, neurodiversity, disability, age, parental or veteran status. Together, we are the heart of trust.

Trustpilot is a global company and our data practices are designed to ensure that your personally identifiable information is appropriately protected. Please note that your personal information will be transferred, accessed, and stored globally as necessary for the uses and disclosures stated in our Privacy Policy. If you have a disability and would like to discuss any adjustments you might need either in submitting your application, or to the recruitment process more generally, please let us know by contacting our Talent Acquisition Team (talent.acquisition@trustpilot.com) quoting the role you wish to apply for. Any offer of employment for this position will be subject to our standard background checks.

Information Security Governance, Risk and Compliance Analyst employer: Trustpilot

At Trustpilot, we pride ourselves on being an exceptional employer, offering rich learning and development opportunities through the Trustpilot Academy, alongside a supportive work culture that values collaboration and inclusivity. Our central office location in Copenhagen is vibrant and equipped with all the amenities you could desire, fostering connections among our diverse team of over 1,000 employees. With a strong commitment to employee growth and well-being, including access to mental health resources and generous benefits, Trustpilot is the perfect place for those looking to make a meaningful impact in the field of information security.

Trustpilot

Contact Details:

Trustpilot Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Information Security Governance, Risk and Compliance Analyst

Tip Number 1

Network like a pro! Reach out to current employees at Trustpilot on LinkedIn or other platforms. Ask them about their experiences and any tips they might have for landing the role. Personal connections can make a huge difference!

Tip Number 2

Prepare for the interview by diving deep into Trustpilot's mission and values. Understand how your skills in governance, risk, and compliance align with their goals. Show them you’re not just another candidate, but someone who truly gets what they’re about.

Tip Number 3

Practice common interview questions related to information security and compliance. Think about real-life examples where you've successfully managed risks or improved compliance frameworks. This will help you stand out as a practical technologist.

Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen. Plus, it shows you’re genuinely interested in being part of the Trustpilot team. Let’s get you on board!

We think you need these skills to ace Information Security Governance, Risk and Compliance Analyst

Governance, Risk and Compliance (GRC)
SOC 2
ISO 27001
PCI DSS
Risk Management
Third-Party Risk Management
Vendor Security Due Diligence

Some tips for your application 🫡

Tailor Your Application:Make sure to customise your CV and cover letter for the Governance, Risk and Compliance Analyst role. Highlight your experience with compliance frameworks like SOC 2 and ISO27001, and show us how you can balance security with innovation.

Show Your Passion for Security:Let your enthusiasm for information security shine through! Share examples of how you've tackled security challenges in the past and how you stay updated on emerging AI governance frameworks. We love a proactive approach!

Be Clear and Concise:When writing your application, keep it straightforward. Use clear language and avoid jargon where possible. We want to understand your skills and experiences without having to decode complex terms.

Apply Through Our Website:We encourage you to submit your application directly through our website. It’s the best way to ensure your application gets into the right hands and shows us you're serious about joining our team at Trustpilot!

How to prepare for a job interview at Trustpilot

Know Your Compliance Frameworks

Make sure you brush up on your knowledge of SOC 2, ISO27001, and PCI DSS. Be ready to discuss how you've managed and audited against these frameworks in the past, as this will show your practical experience and understanding of compliance.

Showcase Your Risk Management Skills

Prepare examples of how you've identified and managed security risks, especially in relation to third-party vendors and AI systems. This is crucial for the role, so having specific scenarios ready will demonstrate your expertise and thought process.

Emphasise Collaboration

Trustpilot values teamwork, so be prepared to talk about how you've worked with engineers and data scientists in previous roles. Highlight any collaborative projects where you balanced security needs with innovation, as this aligns perfectly with their mission.

Stay Ahead of AI Regulations

Familiarise yourself with emerging AI governance frameworks like the EU AI Act. If you have any insights or ideas on how to integrate these into compliance practices, share them during the interview. It shows you're proactive and engaged with current trends.