SonicJobs Logo
Login
Left arrow iconBack to search

GRC Security Analyst

Cooper Lomaz Recruitment Ltd
Posted 20 hours ago, valid for a month
Location

Southampton, Hampshire SO152AE, England

Salary

£45,000 - £50,000 per annum

Contract type

Full Time

By applying, a CV-Library account will be created for you. CV-Library's Terms & Conditions and Privacy Policy will apply.

Sonic Summary

info
  • The GRC Security Analyst position is located in Southampton and offers a salary of up to £50,000 per annum, depending on experience.
  • The role requires a minimum of 3 years' experience in a GRC or IT security position.
  • Key responsibilities include developing security policies, leading compliance efforts for ISO 27001 and GDPR, and managing risk assessments.
  • Candidates should have strong knowledge of ISO 27001 compliance, proven experience in security governance, and excellent analytical skills.
  • This is a hybrid working opportunity that starts as office-based, with options for flexible working after onboarding.

Job Title: GRC Security Analyst
Location: Southampton
Salary: Up to 50,000 per annum (DOE)
Hours: 37.5 hours per week
Hybrid Working: Initially office-based, with hybrid options available after onboarding

Cooper Lomaz is partnering with a global organisation to recruit a GRC Security Analyst. This is a fantastic opportunity to join a growing team where you will play a pivotal role in governance, risk, and compliance (GRC), ensuring adherence to industry security standards and frameworks.

About the Role
As a GRC Security Analyst, you will work closely with the wider security team to develop, maintain, and enhance the organisation's ISMS. Your expertise in risk management, compliance, and security policies will help strengthen the organisation's security posture and ensure ongoing adherence to ISO 27001 and other regulatory requirements.

Key Responsibilities

  • Develop, implement, and maintain security policies, procedures, and governance frameworks.
  • Lead and support compliance efforts for ISO 27001, GDPR, and other relevant regulations.
  • Manage and maintain risk registers, conducting risk assessments and recommending mitigation strategies.
  • Conduct internal and external audits, address findings, and oversee continuous improvement initiatives.
  • Ensure effective security asset management, identifying and mitigating potential vulnerabilities.
  • Collaborate with internal stakeholders to strengthen security awareness and compliance culture.
  • Support incident response, ensuring swift resolution and future risk reduction.
  • Oversee patch management processes to ensure security risks are minimised.

Skills & Experience Required

  • Minimum 3 years' experience in a GRC or IT security role.
  • Certifications such as CompTIA Security+, ISO 27001 Lead Implementer/Auditor, CISSP, or CISM (desirable).
  • Strong understanding of ISO 27001 compliance, audits, and risk management.
  • Proven experience in developing and maintaining security policies and governance frameworks.
  • Hands-on experience managing an Information Security Management System (ISMS).
  • Excellent analytical and problem-solving skills, with the ability to assess risks and propose solutions.

Additional Information

  • Sponsorship is not available - applicants must have the right to work in the UK.
  • Candidates must be local to Southampton due to initial on-site requirements.

Our client is looking to hire quickly, so if you meet the criteria and are ready for your next challenge, apply now!

Apply now in a few quick clicks

By applying, a CV-Library account will be created for you. CV-Library's Terms & Conditions and Privacy Policy will apply.