GRC Analyst

Rhymetec
London, UK
1 day ago
Apply on startup.jobs
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
4 years minimum
Working hours
Regular working hours
Languages
French, German
Job source

Tech stack

Amazon Web Services Microsoft Azure Software as a Service Cloud Computing Security Cyber Security DevOps Infrastructure as a Service (IaaS) Intrusion Detection Systems Logical Security Systems Integration Datadog Information Security Management System
+5 more
Google Cloud Cloud Platform System Performance Monitor Casper Suite Unified Endpoint Management

Job description

We are seeking a GRC Analyst to join our growing team in the UK! The CSA will be responsible for supporting the development and implementation of solutions that help Rhymetec’s clients achieve, manage and measure security metrics and compliance requirements. The role will work closely with their Security Program Manager to help design and deliver security and compliance objectives and have the ability to help drive foundational changes in internal cloud platforms to enhance their security posture. The ideal candidate will have a team first mentality and fit within the core values and culture at Rhymetec. This person will be responsive to both customers and team members with communications, be detail oriented, and hold a high level of autonomy to complete work on time and with quality., * Prepare agendas and supporting materials for client business.

  • Conduct meetings with clients regularly.
  • Configure performance monitoring alarms in AWS, Azure, GCP, Datadog and other cloud infrastructures.
  • Configure Security alarms and Intrusion Detection Systems in AWS, GCP, Azure.
  • Set up supporting security applications.
  • Set up mobile device management applications such as Jamf, Jumpcloud, Microsoft Endpoint manager, Hexnode, etc.
  • Configure and maintain compliance monitoring platforms.
  • Conduct internal audits, risk assessments, and generate reports.
  • Conduct Incident Response Tabletop exercises with clients.
  • Conduct Business Continuity and Disaster recovery tabletop exercises with clients.
  • Support clients in mapping frameworks/controls such as SOC 2 Type 2, ISO 27001, GDPR, and DORA into actionable items for clients.
  • Conduct employee access reviews, SaaS vendor security assessments, and Gap assessments.
  • Triage bug/vulnerability reports from security researchers.
  • Complete security questionnaires on behalf of clients.
  • Draft supporting documents for clients’ information security management systems and information security policies.
  • Gather & maintain evidence of compliance for various frameworks.
  • Lead engagements with auditors on behalf of clients.
  • Communicate tasks to clients’ employees and educate clients on security best practices.

Requirements

  • Knowledge of compliance and regulatory frameworks (PCI, ISO/IEC, SOC 2, DORA, GDPR)
  • Strong logical security skills, with experience in cloud security
  • Understanding of cloud environments (AWS, GCP, Azure) and integrating security controls through DevOps and Infrastructure as a Service (IaaS) techniques
  • Experience in customer service and ability to develop professional relationships with customers

Must Haves:

  • Bachelor’s degree or equivalent experience related to the technology or cyber security field
  • Bilingual in German and/ or French
  • 4+ years of work experience in technology or cybersecurity.
  • Ability to flex and adapt to innovative and changing work demands.
  • Travel up to 2 weeks out of the calendar year.

Benefits & conditions

  • Comprehensive, company-funded private medical insurance for employees
  • Dental and Vision benefits
  • Generous annual leave package, plus sick time and 8 Paid Holidays
  • Workplace pension
  • Wellbeing Support: An annual subscription to TalkSpace, our online counselling and therapy service

Rhymetec is committed to creating a diverse environment and is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment regardless of race, colour, religion, gender, gender identity or expression, sexual orientation, national origin, genetic background, disability, age, or veteran status.

About the company

Rhymetec was founded in New York City in 2015, growing steadily in the areas of compliance, cybersecurity and data privacy. Our mission is to ensure our clients are compliant faster, so they can focus on their core business and less on the complexities of building effective and compliant infosec programs.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on startup.jobs
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

1:36 min

Visualizing memory limits and isolating suspicious endpoints

Dina Matveev Dina Matveev · Europe 2026 Virtual

2:17 min

Mapping the maturity roadmap for scaled devops adoption

Dominik Krichbaum Dominik Krichbaum · World Congress 2026 Europe

2:47 min

Exploring career opportunities and recruitment open positions

Kurt Eder · LIVE

1:08 min

Analyzing error logs and root causes using artificial intelligence

Nishil Patel Nishil Patel · World Congress 2025

3:18 min

Scaling global network engineering through DevOps culture

Stuart Clark · LIVE

Videos

See all

Related articles

See all