Grc Analyst
6 months ago
The purpose of the GRC Analyst role:
Governance, risk management, and compliance are three related facets that aim to assure an organization reliably achieves objectives, addresses uncertainty and acts with integrity.
- Governance is the combination of processes established and executed by management that are reflected in the organization's structure and how it is managed and led toward achieving business goals.
- Risk management is predicting and managing risks that could hinder the organization from reliably achieving its objectives under uncertainty.
- Compliance refers to adhering to the mandated boundaries (laws and regulations) and voluntary boundaries (company's policies, procedures)
The GRC function conducts recurring activities with relevant stackeholders to follow up, maintain and improve compliance with the defined control environment.
The GRC Analyst role responsibilities will include:
- Be the custodian, develop and maintain an effective policy and control framework
- Manage and lead information security governance
- Facilitate and own risk analysis and Cloud Services risk register
- Conduct internal audit review and meetings and to support external audit facilitation work covering creating audit checklist, manage audit interview with internal control owners, follow up on remediation action plan for identified findings, issue audit report.
- Establish, monitor and continuously improve risk management procedures
- Provide oversight and management of review and audit finding remediation, including generating requirements for full remediation
- Providing feedback and suggestions on responses to findings, and tracking progress and providing status and updates to the management team
**Required Skills**:
- Strong communication skills and able to keep a good relationship to internal and external stakeholders
- Strong written and verbal English communication skills
- Work independently, proactive and feel comfortable in taking difficult decisions
- Experience in developing, documenting and maintaining GRC methodologies
- Structured, analytical and persistent
- Ability to work well under mínimal supervision with lots of self-drive
Required Experience
Qualifications for the GRC Analyst role:
- Minimum 2 years of work experience in a GRC role
- Bachelor's degree in information systems or equivalent work experience
- Certifications like CISA or similar are an advantage but not a requirement.
- Strong knowledge of common information security management frameworks, such as SOC2, ISO 2700x, PCI DSS, NIST, is a mandatory requirements
- Experience in developing, documenting, and maintaining security policies, processes, procedures, and standards
**_Tungsten Automation Corporation, Inc. is an Equal Opportunity Employer M/F/Disability/Vets_
-
Assistant Business Controls Analyst
7 months ago
Kuala Lumpur, Malaysia British American Tobacco Full time**BAT is evolving at pace - truly like no other organisation.** **To achieve the ambition, we have set for ourselves, we are looking for colleagues who are ready to live our ethos every day. Come be a part of this journey!** **BAT DIGITAL BUSINESS SOLUTION** **IS LOOKING FOR AN ASSISTANT BUSINESS CONTROLS ANALYST** **SENIORITY LEVEL**:Non...
-
Business Controls Analyst
6 months ago
Kuala Lumpur, Malaysia British American Tobacco Full time**BAT is evolving at pace - truly like no other organisation.** **To achieve the ambition, we have set for ourselves, we are looking for colleagues who are ready to live our ethos every day. Come be a part of this journey!** **BAT DIGITAL BUSINESS SOLUTION** **IS LOOKING FOR BUSINESS CONTROLS ANALYST - IT** **SENIORITY LEVEL**:Non...
-
Business Control Analyst
7 months ago
Kuala Lumpur, Malaysia British American Tobacco Full time**BAT is evolving at pace - truly like no other organisation.** **To achieve the ambition, we have set for ourselves, we are looking for colleagues who are ready to live our ethos every day. Come be a part of this journey!** **BAT DIGITAL BUSINESS SOLUTIONS IS LOOKING FOR BUSINESS CONTROLS ANALYST - IT** **JOB TITLE: Business Controls Analyst -...
-
Governance, Risk, Compliance Analyst
7 months ago
Kuala Lumpur, Malaysia Novotech Asia Full time**Brief Position Description**: This role will be primarily responsible for the operation of Novotech's Information Security Management System. The GRC Specialist acts as a primary point of contact for all ISMS and works with IT Compliance Director, Information Security Specialists, System Owners, Clinical Systems Team, QA team and Business Operation teams...
-
Risk Officer Asia
7 months ago
Kuala Lumpur, Malaysia Aon Corporation Full timeRisk Officer Asia **Risk Officer** We're hiring! We are looking for a Risk Officer to support the Australia Pacific Risk function and report into the APAC Chief Risk Officer. This position represents an exciting opportunity to help frame the risk based decisions of the APAC business. **Aon is in the business of better decisions** At Aon, we shape...
-
Risk Officer Asia
8 months ago
Kuala Lumpur, Malaysia Aon Corporation Full timePosting Description: **Risk Officer**: We’re hiring! We are looking for a Risk Officer to support the Australia Pacific Risk function and report into the APAC Chief Risk Officer. This position represents an exciting opportunity to help frame the risk based decisions of the APAC business. **Aon is in the business of better decisions**: At Aon, we shape...