We are looking for an experienced GRC Cyber Security Analyst to join a leading insurance organisation based in the heart of Dublin City Centre.
This is an exciting opportunity to join a busy and fast-moving security environment, supporting a significant programme of projects and gaining excellent exposure to new technologies, security initiatives and transformation projects.
The initial contract will be for 6 months, with a strong possibility of either an extension or a permanent position for the right person.
Due to the volume and pace of the current project workload, this is a fully onsite role in Dublin City Centre. The onsite environment will provide excellent opportunities to work closely with Cyber Security, Technology, Risk and business stakeholders.
Key Responsibilities
- Support the delivery of Governance, Risk and Compliance (GRC) activities across the organisation.
- Assess and manage cyber security risks, controls and compliance requirements.
- Support security assessments and risk reviews for projects, applications, technologies and third-party suppliers.
- Assist with the development, maintenance and improvement of security policies, standards and procedures.
- Conduct control assessments and identify areas for remediation and improvement.
- Support regulatory, audit and compliance activities.
- Work closely with technology and project teams to ensure security requirements are embedded throughout project lifecycles.
- Provide GRC input into the adoption of new technologies and security initiatives.
- Track security risks, issues and remediation activities through to resolution.
- Produce clear reports and documentation for senior security, technology and business stakeholders.
We are looking for someone with experience in a Cyber Security GRC, Risk, Compliance or Information Security environment.
You will ideally have:
- Experience working within Cyber Security GRC, Risk or Compliance.
- Strong understanding of information security principles, governance and risk management.
- Experience conducting security or risk assessments.
- Experience working with project and technology teams.
- Familiarity with security frameworks and standards such as ISO 27001, NIST, CIS Controls or similar.
- Experience working within a regulated industry or highly regulated environment is a strong advantage.
- Exposure to DORA (Digital Operational Resilience Act) or other financial services / regulatory requirements would be highly beneficial.
