GRC Specialist at Optasia enhancing compliance and security protocols for fintech platform operations across departments. Supporting audits, risk assessments, and security awareness training.
Responsibilities
Maintain and enhance the company’s Information Security Management System (ISMS) aligned to ISO 27001:2022.
Support the planning, execution, and maintenance of SOC 2 Type II controls and evidence collection.
Prepare and maintain compliance documentation (policies, procedures, guidelines, control matrices, risk registers).
Coordinate and track compliance across departments, ensuring timely closure of audit findings and corrective actions.
Act as the point of contact for internal and external audits (ISO 27001, SOC 2, customer and partner audits).
Support and manage Customer Audit activities — including responding to security and compliance questionnaires, coordinating input from multiple departments, collecting, and validating evidence, and ensuring timely and accurate responses.
Prepare structured evidence packages, liaise with control owners, and manage communications with auditors and customers.
Conduct internal control reviews and readiness assessments ahead of certification or customer audits.
Participate in regular risk assessments and reviews of security controls.
Assist in maintaining the risk register, monitoring remediation plans, and validating control effectiveness.
Coordinate and deliver security awareness initiatives for employees (e-learning, workshops, newsletters).
Promote a risk-aware culture and support departmental champions to strengthen overall security posture.
Monitor changes in applicable regulations, standards, and best practices (ISO, SOC, GDPR, etc.) and recommend updates.
Support automation and digitalization of compliance activities through GRC platforms and dashboards.
Contribute to incident and issue management reviews to ensure lessons learned are captured and controls improved.
Requirements
At least 3 years of experience in GRC, Information Security, or Audit roles.
Solid understanding of ISO 27001, SOC 2, and general IT security control frameworks (NIST, COBIT, etc.).
Strong organizational skills and ability to coordinate across departments.
Excellent written and verbal communication in English.
Experience supporting or participating in audits and compliance assessments.
Strong customer-facing and communication skills, with the ability to interact confidently with clients, auditors, and internal stakeholders.
Conceptual understanding of key security technologies such as EDR, UTM/Firewall, SIEM, and Vulnerability Management systems to evaluate related controls and compliance evidence.
Benefits
💸 Competitive remuneration package
🏝 Extra day off on your birthday
💰 Performance-based bonus scheme
👩🏽⚕️ Comprehensive private healthcare insurance
📲 💻 All the tech gear you need to work smart
🎌 Be a part of a multicultural working environment
🎯 Meet a very unique and promising business and industry
🌌 🌠 Gain insights for tomorrow market’s foreground
🎓 A solid career path within our working family is ready for you
📚 Continuous training and access to online training platforms
🥳 CSR activities and festive events within any possible occasion
🍜 Enjoy comfortable open space restaurant with varied meal options every day
🎾 🧘♀️ Wellbeing activities access such as free on-site yoga classes, plus available squash court on our premises
Corporate Compliance Analyst supporting the development of a global compliance program at Vantage Data Centers. Engaging in risk assessments, training, and compliance monitoring to drive process improvements.
Senior Executive/Executive in charge of compensation and compliance at Orfium, ensuring legal adherence and proper employee relations while managing benefits and compensation strategies.
Compliance Reporting Assistant supporting compliance activities and gaining hands - on experience in a dynamic international environment. Assist in preparing reports and dashboards while collaborating with various stakeholders.
Environmental Compliance Specialist managing compliance with environmental laws for natural gas projects in multi - state areas. Supervising consultants, preparing compliance reports, and conducting audits.
Compliance Analyst ensuring adherence to Federal Energy Regulatory Commission and ERCOT standards. Collaborating with various teams to manage compliance documentation and processes.
Manage compliance testing for Manulife within the Canada Segment team. Analyze key business controls and recommend improvements for compliance in financial institutions.
Senior Gas Pipeline Compliance Analyst maintaining safe, reliable natural gas operations at Enbridge. Analyzing regulations and partnering with teams for federal and state compliance.
Regulatory Analyst managing compliance obligations associated with regulatory requirements at Tallgrass, an energy infrastructure company. Involved in preparation, analysis, and administration in relevant areas.
Trainee supporting product compliance and legal regulation at ZF, engaging in training activities and various legal assistance tasks. Collaborating with experts on compliance projects.
VAT Compliance Specialist managing VAT - relevant data and ensuring compliance in an international team. Collaborating with various departments to maintain data quality and support documentation processes.