Cybersecurity GRC Analyst in Altrincham

Cybersecurity GRC Analyst in Altrincham

Altrincham Full-Time On-site
V

VPN Global Testing Services Ltd. have been established as a Software Development and Information Technology Services Company with main goal to provide quality IT services to clients globally. We deliver technology-driven business solutions that meet the strategic objectives of our clients. We develop, implement, maintain and support the IT applications by providing smart and intelligent solutions, high quality and low-cost service.

We believe that IT should actually help you to run your business more effectively and efficiently. We understand that the IT requirements of your business may vary as your company grows and changes, which is why we are committed to delivering cost effective Solutions. We are looking for a 3+ Experience Cybersecurity GRC Analyst for our growing team.

As a Cybersecurity GRC Analyst you will be responsible for the: Development, implementation, and continuous improvement of VPN’s Information Security and Risk Management framework, ensuring alignment with ISO 27001 standards and broader regulatory requirements like GDPR, Cyberessentional, CAF.

Key areas of responsibilities:

  • Establish, Support the maintenance and continuous improvement of the Information Security
  • Management System (ISMS) in line with ISO 27001 requirements
  • Assist with internal and external ISO 27001 audits, including preparation, evidence gathering, and follow-up actions
  • Monitor compliance with internal policies and procedures, tracking and escalating non-conformities where required
  • Maintain key ISMS documentation, including asset registers, risk assessments, and Statements of Applicability (SoA)
  • Provide support on third-party security and supplier risk assessments, ensuring appropriate controls are in place
  • Contribute to enterprise risk assessments, including identifying risks, assessing controls, and tracking remediation actions
  • Assist with control testing and compliance reviews across the business
  • Respond to and support risk, compliance, and regulatory queries from internal stakeholders
  • Support wider regulatory compliance processes, including checks, reviews, and continuous improvement initiatives
  • Collaborate with teams across the business to promote good risk and information security practices

Key skills we are looking for:

  • Previous experience within a risk, information security, compliance, or internal audit environment, ideally within a professional services firm
  • Working knowledge of ISO 27001, Cyber Essentials+ Information Security Management Systems (ISMS)
  • Strong attention to detail, with a high level of integrity and ability to handle confidential information
  • Well-organised and structured approach to managing tasks and priorities
  • Ability to communicate effectively with stakeholders at all levels, including confidence to escal…
  • Proactive, forward-thinking mindset with an interest in using technology to improve processes
  • Collaborative team player with the ability to work across multiple functions
  • Strong written and verbal communication skills,

Qualification:

  • Education : Bachelor's degree (or higher) in a related discipline
  • Certification : - Certifications in Information Security Management such as CISSP/CISM/CISA, ISO 27001 or equivalent
  • Previous experience in the information security domain

Location of the Job:

#J-18808-Ljbffr

V

Contact Details:

VPN Global Recruitment Team