Junior/Medior Security Compliance Specialist (GRC, Info-Sec)

Related skills

aws gcp gdpr iso 27001 grc

๐Ÿ“‹ Description

  • Own Third-Party Trust (TPRM): Lead 5โ€“10 vendor security assessments monthly; review SIG questionnaires and evidence.
  • Architect Compliance: Lead PCI-DSS and NIS2 audit readiness; translate requirements into tasks.
  • Modernize Policy: Update Information Security Policy library to ISO 27001 and NIST.
  • Master the Tools: Admin for OneTrust; optimize workflows for seamless compliance.
  • Influence Culture: Create security awareness content and phishing simulations via Saba.

๐ŸŽฏ Requirements

  • Experience: 1โ€“3+ years in IT Risk, Audit, or GRC (Fintech or ecommerce preferred).
  • Technical Literacy: Cloud security AWS/GCP, network controls, vulnerability management.
  • Regulatory Fluency: GDPR, PCI-DSS, and NIS2.
  • Analytical Skepticism: Look past Yes/No answers to underlying risk.
  • The AI Mindset: Use AI tools to automate documentation and research regulatory changes.
  • Communication: Fluent English (C1+) with the ability to explain hurdles to non-technical stakeholders.

๐ŸŽ Benefits

  • Flexible global environment across GMT-6 to GMT+5.
  • AI-driven tools to automate risk documentation.
  • Autonomy in a security team with global impact.
  • Growth opportunities in a fast-moving AI-first company.
Share job

Meet JobCopilot: Your Personal AI Job Hunter

Automatically Apply to All Other Jobs. Just set your preferences and Job Copilot will do the rest โ€” finding, filtering, and applying while you focus on what matters.

Related All Other Jobs

See more All Other jobs โ†’