My client is looking for a Senior GRC Specialist with a minimum of 7 years of experience to join their organisation. The successful candidate can be based in Cork or Galway. This is a permanent role.
Key Skills and Experience
- Minimum of 7 years' experience in Governance, Risk & Compliance, Information Security, Risk Management, or a related field.
- Strong knowledge of security and compliance frameworks including ISO 27001, NIST CSF, SOC 2, GDPR, and other relevant regulatory standards.
- Proven experience conducting enterprise risk assessments and developing effective risk mitigation strategies.
- Experience working with internal and external auditors, supporting compliance assessments, and managing remediation activities.
- Excellent stakeholder management, communication, and influencing skills with the ability to engage at all levels of the business.
- Relevant certifications such as CISSP, CISM, CRISC, ISO 27001 Lead Implementer/Auditor, or equivalent are highly desirable.
Responsibilities
- Lead governance, risk, and compliance initiatives to ensure alignment with business objectives and regulatory requirements.
- Develop, maintain, and improve information security policies, standards, procedures, and control frameworks.
- Conduct risk assessments, monitor risk treatment plans, and provide regular reporting to senior leadership.
- Coordinate internal and external audits, ensuring timely completion of corrective actions and compliance activities.
- Partner with cross-functional teams to embed security and compliance requirements into business processes and technology initiatives.
- Monitor emerging regulatory changes, industry standards, and security risks, providing recommendations to strengthen the organization's security posture.
