GRC Analyst at Trayport
London, England, United Kingdom -
Full Time


Start Date

Immediate

Expiry Date

09 Jun, 25

Salary

0.0

Posted On

10 Mar, 25

Experience

1 year(s) or above

Remote Job

Yes

Telecommute

Yes

Sponsor Visa

No

Skills

Good communication skills

Industry

Information Technology/IT

Description

We are seeking an individual eager to expand their expertise in Governance, Risk, and Compliance (GRC). This role supports the GRC team in safeguarding company data and operations by helping to implement, monitor, and enhance security controls. You will collaborate closely with stakeholders and cross-functional teams to ensure compliance with key security frameworks such as ISO27001, as well as regulations like DORA and GDPR.
While this position is not technical, it offers an excellent opportunity for someone looking to grow their GRC skills and expand their knowledge in Cybersecurity.

Key Responsibilities:

  • Champion Information Security awareness across the organization through initiatives such as cybersecurity awareness campaigns, annual training sessions, and regular InfoSec news bulletins.
  • Assist in the maintenance and update of security policies within the Information Security Management System (ISMS) alongside the InfoSec management team.
  • Coordinate and manage logistics for both internal and external audits.
  • Support compliance assessments and audits, ensuring effective engagement with relevant stakeholders.
  • Identify opportunities for continuous improvement in security practices and processes.
  • Review and track risk actions, working with owners to ensure timely updates.
  • Monitor Information Security Incidents, liaising with incident handlers to ensure accurate and timely reporting.
  • Produce reports, metrics, and dashboards to evaluate and report on the effectiveness of security controls.

The Ideal Person:

  • 1-2 years of experience in a GRC or Information Security Analyst role.
  • Familiarity with ISO27001 or other security standards and frameworks like SOC or NIST is advantageous but not required.
  • Strong interpersonal and communication skills, with the ability to simplify complex issues for stakeholders at all levels.
  • Self-motivated, with a genuine passion for learning more about Cybersecurity.
  • A proactive problem-solver with a keen eye for detail.

Trayport is committed to creating and sustaining a collegial work environment in which all individuals are treated with dignity and respect and one which reflects the diversity of the community in which we operate. We provide accommodations for applicants and employees who require it.
About Us
Our Culture:
At Trayport, our people power our success. We are a place where talented people never stop learning, innovating and working together to make an impact!
We offer you more than a job - we offer you the opportunity to work with, and learn from the most respected industry and thought leaders in the business. We’re always pushing the boundaries, rapidly expanding our global presence across London, Vienna, Singapore, Bremen and North America.
At Trayport, we understand that our people are crucial to our future. We strive to provide a challenging and inspirational atmosphere; employing intelligent, enthusiastic, adaptable individuals and giving them the
freedom, training, and guidance to allow them to consistently achieve their potential.
If you share our vision and are motivated to challenge the status quo - we want to hear from you!

Responsibilities
  • Champion Information Security awareness across the organization through initiatives such as cybersecurity awareness campaigns, annual training sessions, and regular InfoSec news bulletins.
  • Assist in the maintenance and update of security policies within the Information Security Management System (ISMS) alongside the InfoSec management team.
  • Coordinate and manage logistics for both internal and external audits.
  • Support compliance assessments and audits, ensuring effective engagement with relevant stakeholders.
  • Identify opportunities for continuous improvement in security practices and processes.
  • Review and track risk actions, working with owners to ensure timely updates.
  • Monitor Information Security Incidents, liaising with incident handlers to ensure accurate and timely reporting.
  • Produce reports, metrics, and dashboards to evaluate and report on the effectiveness of security controls
Loading...