Job Search and Career Advice Platform

Enable job alerts via email!

GRC Information Security Analyst

Hireful Ltd

City of London

Hybrid

GBP 60,000 - 65,000

Full time

29 days ago

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Job summary

A global software technology company is seeking an experienced GRC Information Security Analyst to join their team in London. The role involves supporting compliance with various frameworks and engaging with cloud environments while providing strong communication and stakeholder management. This full-time position offers a hybrid working model with a competitive salary ranging from £60K to £65K plus a bonus and benefits package.

Qualifications

  • Experience in GRC Security and audits.
  • Familiarity with compliance frameworks and regulations.
  • Mid-senior level experience in IT Security.

Responsibilities

  • Support compliance with various frameworks such as ISO 27001 and PCI DSS.
  • Engage with cloud environments and ensure security compliance.
  • Communicate effectively with internal teams and external auditors.

Skills

Strong communication skills
Stakeholder management
Expertise in ISO 27001
Experience with PCI DSS
Knowledge of SOC2 compliance
Understanding of GDPR

Tools

Drata
Vanta
OneTrust
Job description
GRC Information Security Analyst

Join a global software technology company in the UK as an experienced GRC Information Security Analyst.

You will work closely with external auditors and internal departments in a hybrid environment with flexibility for remote work. You may need to be in the office 1‑2 days a week, or occasionally up to 3 days, or even zero.

Location

Central London office. Hybrid workplace with flexibility.

Salary

£60K‑£65K basic + 10% bonus + excellent benefits package.

Responsibilities
  • Support ISO 27001, PCI DSS, SOC2, NIST, and CIS benchmarking and compliance.
  • Maintain compliance with relevant legislation such as DPA, GDPR.
  • Engage with cloud environments (AWS, Azure) and Windows/Linux environments (non‑technical role).
  • Report directly to the IT Security GRC Director; provide strong communication and stakeholder management skills.
Preferred Experience
  • IT Security Risk & Compliance automated tooling such as Drata, Vanta, OneTrust.
  • CISA or Lead Auditor certifications.
Qualifications

Experience in the GRC Security space, including audits, auditors, ISO27001, PCI DSS, SOC2, NIST and current compliance regulations.

Strong communications & internal/external stakeholder management skills.

Seniority level

Mid‑Senior.

Employment type

Full‑time.

Job function

Information Technology – Computer and Network Security.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.