GRC Analyst supporting ISO27001 certification preparation at Asiera. Collaborating with technical teams for documentation and compliance.
Responsibilities
Supporting technical teams to meet their requirements to prepare for certification by coaching and developing ISO27001 related documentation.
Supporting internal audits and ensuring ongoing conformity and effectiveness.
Support the review, improvement, and standardisation of technical and operational documentation across Technical Services teams.
Assist with the development and monitoring of Key Performance Indicators (KPIs) and operational metrics related to ISMS processes.
Support teams in improving documentation quality, consistency, and process clarity across technical operations.
Assist with the collection, organisation, and maintenance of evidence required for ISO 27001 compliance and audit readiness.
Provide operational support to activities related to NIS2 readiness and regulatory compliance.
Assist with maintaining structured repositories for operational documentation, registers, and reports.
Requirements
Minimum 3 years ISO experience in IT/Technical environments
Excellent communication and interpersonal skills with proven experience partnering with key technical stakeholders and project champions
Experience and understanding of security technologies and concepts ideally with professional certifications or industry experience in networking, IT or Service Delivery
Strong documentation skills - ability to understand technical processes and transfer into documentation that meets ISO27001 requirements
Familiarity with Information Security Management Systems (ISMS) and ISO 27001 frameworks and experience of audit & certification processes.
Experience with reporting tools, operational tracking tools, workflow automation and operational metrics is beneficial but not essential
Benefits
Flexible Work-Life Balance framework
Flexible start/finish times
Health insurance for employees
Defined contribution pension scheme
On-going wellbeing initiatives
Employee Assistance Programme (EAP)
Tax Saver Ticket scheme
Cycle to Work scheme
Professional education support
Comprehensive group and individual training & development initiatives
Junior Compliance Officer at DXC managing compliance with regulations and standards across teams. Focus on governance, risk, and technology to improve processes and support teams.
Quality Technician at Henry Schein ensuring compliance with ISO 9001 through quality system maintenance and audit participation. Collaborating across departments for effective quality management in healthcare.
Regulatory Affairs Specialist managing complex product registrations and compliance in LATAM. Collaborating with regulatory authorities and providing documentation for approvals in the food sector.
Regulatory Specialist enabling compliant innovation and successful market access in health and biosciences across Latin America. Collaborating with various teams to ensure regulatory compliance and successful product launches.
Compliance Manager at TD Bank overseeing regulatory compliance for Digital Banking and vendor oversight. Leading compliance monitoring and providing guidance on regulatory requirements with a focus on consumer banking.
Senior Analyst in governance of accesses ensuring critical access requests at Riachuelo. Responsible for data governance and risk control strategies in São Paulo.
Compliance Analyst ensuring adherence to legal and company standards at Copa Energia, monitoring training programs and supporting data protection compliance.
Regulatory Compliance Specialist ensuring compliance with payment card regulations. Collaborating with cross - functional teams to develop and maintain compliant programs in a fintech environment.
Head of Compliance & AMLCO leading compliance and AML/CTF function for Cyprus - regulated Electronic Money Institution. Serving as the primary point of contact with the Central Bank of Cyprus.
Cyber GRC Senior Consultant supporting companies in enhancing cybersecurity and compliance. Collaborating with client teams to implement cybersecurity policies and conduct risk assessments.