-
SNI

GRC Analyst

SNI
Poland · Temporary · Mid-Senior

Job details:


  • Permanent position
  • Senior / Expert level
  • Location: Łódź
  • Full-time
  • Hybrid work
  • Candidates have to be located in Poland
  • Relocation to Lodz, Poland is possible
  • Industry: Food / Manufacturing



The client is on a mission to lead the digital revolution in the chocolate industry, and we're looking for a GRC Analyst for our Risk & Compliance team to shape this transformative journey. Reporting to the Head of Digital Risk & Compliance, you will ensure the organization as well as third parties comply with regulatory requirements, manage risks effectively, and maintain strong governance practices. You will conduct risk assessments, monitor compliance and cyber security, respond to regulatory requirements, and collaborate with internal teams to implement policies and procedures that align with legal and operational standards. This position involves an understanding of regulatory requirements and the ability to translate them into operational controls that are precisely aligned with our company's risk profile.


Key responsibilities:


  • Develop comprehensive risk management strategies in alignment with organizational goals.
  • Implement risk and compliance policies and procedures mitigating potential threats to BC’s digital assets.
  • Monitor and ensure compliance with regulatory requirements and internal policies.
  • Implement and monitor BC’s information security common control framework, to protect sensitive data and ensure data privacy compliance.
  • Assess and manage risks associated with third-party vendors, suppliers, and partners.
  • Collaborate with procurement and legal teams to establish third-party risk management requirements and controls.
  • Support incident response efforts, including investigating security incidents and breaches.
  • Collaborate with various departments to implement risk mitigation strategies.
  • Perform audits and reviews to verify compliance with policies and assess the effectiveness of controls.
  • Utilize and manage GRC tooling for effective risk and compliance tracking.
  • Support the modernization of digital risk and compliance tools, procedures, and policies.
  • Provide regular reports on governance, risk, and compliance activities.
  • Support the creation of training programs to promote compliance awareness.
  • Guide and mentor junior colleagues.


Skills:


  • Graduate degree in information technology, cybersecurity, business administration, or a comparable field.
  • Proficient in English.
  • Minimum 10 years of relevant experience in cybersecurity, governance, risk & compliance management.
  • Deep understanding of risk management principles, methodologies, and tools, and the development of effective mitigation strategies.
  • Experience in implementing Information Security Management Systems (ISMS) and Governance, Risk, and Compliance (GRC) frameworks such as ISO 27001, CIS, NIST, CoBIT.
  • Experience with GRC tools such as RSA Archer, ServiceNow GRC, or similar.
  • Independent and self-driven personality with a structured and organized approach.
  • Ability to coach and mentor colleagues.
  • Ability to create internal and external partnerships/networks across the organization.
  • Ability to analyze complex situations and develop actionable improvement plans in collaboration with diverse teams.
  • Competence in managing workloads, and effectively prioritizing tasks to meet deadlines.

Key Skills

Ranked by relevance

cybersecurity incident response cyber security nist cis
Login to Apply
Posted
Dec 23, 2024
Type
Temporary
Level
Mid-Senior
Location
Lodz Metropolitan Area
Company
SNI

Industries

IT Services IT Consulting Manufacturing

Categories

Engineering Information Technology

Related Jobs

3 roles aligned with this opportunity

View all jobs
View Job Details
Atos
Related

Leading Expert Cyber Security (m/f/d)

2026-05-28

Temporary
Not Applicable
Austria
Computer
Engineering
View Job Details
Atos
Related

Fullstack Engineer

2026-05-24

Temporary
Not Applicable
United Kingdom
Computer
Engineering
View Job Details
Astek
Related

Process Project Engineer / Process Project Manager (CAPEX) - m/k - Katowice (Śląskie), Polska

2026-05-23

Full-time
Not Applicable
Poland
IT Services
Engineering