Risk Assurance and Governance Analyst – Trading House
This job does not exist anymore.
Try running a new search or browse our vacancies.
Or fill in the form below to receive job alerts.
Job Type | Permanent |
Area | City, UK |
Sector | ComplianceRisk |
Salary | £70k - £85k + benefits + bonus |
Currency | GBP |
Start Date | |
Job Ref | VAC-12447 |
Job Views | 32 |
- Description
- Global trading house based in the City is seeking to strengthen its Governance, Risk and Compliance Team with the addition of a GRC Analyst to the London Team. Working in a global team of 7, the successful applicant will be responsible for supporting the Governance, Risk and Compliance function with regard to policy compliance, developing company policies and risk management to ensure the effectiveness of the information security programme.
The information security programme will require you to work on the following:
- Policy and compliance: align policy to comply with regulator and customer requirements.
- Request for information: respond to requests for information from regulators, customers and internal audit on organisational policies, the cybersecurity program etc.
-
Risk Management:
- Conduct internal risk assessments (critical applications/controls testing), maintain risk registry (including information security risk registry) and risk reporting framework in line with regulatory requirements.
- Conduct vendor risk assessments and monitoring
- Conduct IT risk assessments and monitoring
- Maintain understanding of emerging information risk trends
- Develop a third line of defense compliance management framework for reviews and results
- Develop and maintain the IT Control Framework and deliver information security awareness training.
The successful candidate will have:
- Previous recent relevant experience working in governance, risk and compliance gained in a financial services / banking environment
- Previous experience working on regulatory compliance reviews
- Good understanding of information security risk management frameworks ISO 27001, COBIT, NIST, NIST 800-53, etc.
- Project management exposure
- Current Information Security Certification (e.g. CISSP, CISM, CISA, or related security certification) would be preferred.
- Educated to undergraduate degree level as a minimum (or equivalent), Masters’ degree would be preferred.