Cybersecurity GRC (Governance, Risk & Compliance) Analyst

3 days, 14 hours ago
Full-time
Junior
Cybersecurity
Kora

Kora

Kora is a Pan African payment infrastructure that simplifies pay-ins, payouts, and settlements for businesses. With a single payment integration, businesses can scale safely across Africa, offering plug-and-play payment solutions to launch tailored pay...

Diversified Financial Services
51-250
Founded 2017

Description

  • Develop, review, and maintain information security policies, standards, and procedures.
  • Ensure security governance practices align with frameworks such as ISO 27001, NIST CSF, and CIS Controls.
  • Support the implementation and monitoring of security governance programs.
  • Drive security awareness initiatives and promote a culture of compliance.
  • Conduct enterprise, vendor, application, and infrastructure risk assessments.
  • Maintain and update the organization’s risk register.
  • Perform control gap assessments and recommend remediation actions.
  • Support third-party and vendor risk management processes.
  • Track and report on risk treatment plans, mitigation progress, and remediation of audit findings.
  • Coordinate internal and external audits, including evidence collection and walkthroughs.
  • Monitor compliance posture and assist with compliance reports and dashboards for management.
  • Collaborate with security and IT teams on control implementation, testing, and continuous monitoring.
  • Assist in incident response from a compliance and reporting perspective.
  • Maintain accurate documentation of policies, risk assessments, and control activities.

Requirements

  • 2–4 years of experience in cybersecurity, IT risk, compliance, or audit.
  • Minimum of a Bachelor’s degree certificate.
  • Strong understanding of information security frameworks and standards, including ISO 27001, NIST, SOC 2, and PCI DSS.
  • Experience with risk assessment methodologies and control frameworks.
  • Familiarity with regulatory requirements relevant to the industry, such as financial services regulations and data protection laws.
  • Experience with GRC tools.
  • Strong analytical and risk assessment skills.
  • Excellent communication, interpersonal, and stakeholder management skills.
  • Ability to translate technical risks into business impact.
  • Strong documentation, organizational, and project management abilities.
  • High level of integrity and professionalism.
  • Ability to handle stress appropriately and work well with others.
  • Positive attitude.

Benefits

  • Health insurance.
  • Sponsored and tailored training.
  • Paid parental leave.
  • Paid time off.
  • Flexible work style.
  • Low-interest loans.
  • Group life insurance.
  • Access to up to four therapy sessions monthly.
  • Day off on your birthday.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Sr. Information Systems Security Officer II (6587)

MetroStar 251-1K IT Services

MetroStar is hiring an Information Systems Security Officer to support government clients in achieving and sustaining Authority to Operate for federal information systems.

Cybersecurity Encryption
2 hours, 40 minutes ago

(fluent Ukrainian) Security Incident Response Specialist (remote)

SupportYourApp 251-1K Internet Software & Services

SupportYourApp is seeking a Security Incident Response Specialist to handle real security and operational incidents for its global client base and strengthen incident response and security processes.

Cybersecurity SIEM
8 hours, 47 minutes ago

Security Operations Analyst (SOC Analyst)

Ethics Code Diversified Consumer Services

Security Operations Analyst at the company, focused on monitoring devices and systems, investigating security incidents, and supporting compliance efforts using Microsoft security tools.

Cybersecurity SIEM
14 hours, 41 minutes ago

Security Operations Lead (SecOps)

SWORD Health 251-1K Health Care Providers & Services

Sword Health is hiring a Security Operations Lead in Porto to lead and scale its global security operations program, driving threat detection, investigation, response, and resilience across a fast-growing multi-continent environment.

AWS Bash Elasticsearch GCP Go LLM Machine Learning Python SIEM SOC Splunk
14 hours, 41 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers