ppWe are looking for a GRC Senior Analyst to own and scale our Governance, Risk, and Compliance function within a fast-growing product company. /p h3What you will do /h3 ul liOwn and lead the company’s GRC implementation across ISO 27001 and GDPR. /li liBuild and manage the Information Security Management System (ISMS) aligned with ISO 27001. /li liEnsure GDPR compliance across all data processing activities, including data mapping, data leaks, and encryptions. /li liAct as the primary point of contact for auditors and prepare the company for ISO audits. /li liIdentify compliance gaps and drive remediation plans with technical and non-technical teams. /li liDevelop governance policies, procedures, and risk management frameworks. /li liPartner closely with Engineering and Security teams to embed controls into systems and SDLC processes. /li liMonitor regulatory and compliance changes and translate them into actionable requirements. /li /ul h3Mandatory Requirements /h3 ul li8+ years of experience in GRC, Risk,
Compliance, or IT Audit roles /li li5+ years of strong hands-on experience with ISO 27001 and experience managing or supporting ISMS implementation. /li li3+ years of practical experience with GDPR data mapping, reviewing systems from the tech side. /li li5+ years of experience from a product tech company with integral client reach in the US EU (companies above 100 people). /li liExperience working with internal and external auditors /li liVery strong stakeholder management and communication skills across technical and non-technical teams. /li liFluent English /li /ul h3Nice to have /h3 ul liFamiliarity with cloud environments (AWS, GCP, Azure). /li liSecurity certifications (CISA, CISM, ISO 27001 Lead Implementer/Auditor). /li liOther security experience. /li /ul br/ p#LI-OK1 /p /p #J-18808-Ljbffr