Senior Security GRC Analyst
Role details
Job location
Tech stack
Job description
- Operate across core Enterprise Security GRC services, with accountability for improving risk and assurance outcomes
- Lead risk assessments and control reviews, ensuring outputs are actionable and reflected in the Enterprise Risk Register via ServiceNow IRM
- Drive third-party risk activities, including supplier assessments, contract reviews, and customer due diligence
- Identify gaps and coordinate remediation for audit findings, policy exceptions, and control failures
- Improve processes and workflows to strengthen audit readiness and reduce manual effort through automation
- Drive critical asset governance through clear classification and effective control assurance
- Maintain Arm's Enterprise Security Governance Framework
Requirements
The Senior Security GRC Analyst role is suited to someone motivated by impact, who thrives with autonomy in a fast-paced environment. This is your chance to help build a truly innovative, AI-enabled, and efficient GRC function!, * Solid cybersecurity and GRC fundamentals and hands on experience with security risk management and control assurance, including organisational, technical and physical security controls
- Superior communication and engagement skills with a wide range of audience
- A thorough understanding of frameworks such as ISO 27001, NIST CSF, or equivalent
- Comfortable working in evolving environments autonomously, with a focus on improving processes for better business outcomes.
"Nice to Have" Skills and Experience:
- Experience with ServiceNow IRM or other GRC tools including automation or AI in GRC workflows
- Certifications such as CRISC, CISM, CISSP, or similar
Benefits & conditions
This role offers competitive salary and benefits package, the opportunity to shape a modern GRC function, working with evolving technologies and practices, supported by ongoing development and a collaborative, distributed team.