Hiring.Camp

GRC Analyst

Io Tech Solutions Limited

·

Today

Location
Hong Kong
Type
Full-time
Closing date
Today
Source
CareersPage

Description

We are currently looking for a GRC Analyst to join a leading organisation in Hong Kong. This role will focus on Information Security Governance, Risk and Compliance, working closely with technology and business stakeholders to identify and manage security risks and ensure compliance with relevant standards and regulatory requirements.

Key Responsibilities

  • Support Information Security Governance, Risk and Compliance (GRC) activities across the organisation.
  • Conduct IT and Information Security risk assessments, control assessments and gap analyses.
  • Support the implementation and maintenance of ISO 27001 security controls and requirements.
  • Assist in reviewing security policies, standards, procedures and control frameworks.
  • Monitor security risks, exceptions and remediation actions, ensuring timely follow-up.
  • Support internal and external audits, including audit preparation, evidence collection and remediation tracking.
  • Assess applicable regulatory and compliance requirements and support their implementation within the organisation.
  • Prepare risk, compliance and security reports for management and relevant stakeholders.
  • Work closely with IT, cybersecurity and business teams to identify control gaps and recommend appropriate improvements.
  • Support ongoing security governance initiatives and maintain relevant risk and compliance documentation.

Requirements

  • Degree in Information Security, Cybersecurity, IT, Computer Science or a related discipline.
  • Min.2 years of relevant experience in GRC, Information Security, IT Risk, Technology Risk, IT Compliance or Security Governance.
  • Candidates with 8–10+ years of relevant Information Security / GRC / IT Risk experience are also welcome to apply for senior-level opportunities.
  • Practical experience with ISO 27001 is highly preferred.
  • Experience in risk assessment, control assessment, gap analysis or security compliance.
  • Knowledge of security frameworks such as NIST CSF, ISO 27001, COBIT or CIS Controls is an advantage.
  • Experience supporting security audits, regulatory assessments or compliance reviews.
  • Strong analytical, documentation and stakeholder management skills.
  • Good command of English and Cantonese; Mandarin is an advantage.

Skills

CybersecurityComplianceISO 27001

Similar Jobs

30

GRC Analyst

We are hiring! · Warsaw, Poland · Hybrid

3 days ago

GRC Analyst

American Tower Global · Boston, MA, United States, US · Hybrid

2 weeks ago

GRC Analyst

Indianapolis & Marion County

2 weeks ago

GRC Analyst

Paxos · Remote - India · Remote

3 weeks ago

GRC Analyst

Mypassglobal · Cebu · Hybrid

1 month ago

GRC Analyst

Zip · San Francisco · Hybrid

1 month ago

GRC Analyst

Northmark · Dallas - Victory Commons, United States of America

1 month ago

GRC Analyst

Fluidstack · New York, NY · Onsite

1 month ago

GRC Analyst

Vercel · Remote - United States +1 · Remote

1 month ago

GRC Analyst

Hempel · India - Pune · Remote

4 months ago

GRC Analyst

Hempel is · India - Pune · Remote

4 months ago

GRC Analyst

Rogo · New York City · Onsite

4 months ago

Senior GRC Analyst

"Gusto, Inc." · San Francisco, CA - Hybrid · Hybrid

Today

GRC (Governance, Risk, and Compliance) Analyst

Yipitdatajobs · US Remote +1 · Remote

Today

Senior GRC Analyst

Litmos · India +1

Yesterday

Security GRC Analyst II

Diligent Corporation · Bengaluru, Karnataka, India

Yesterday

Governance, Risk & Compliance (GRC) Analyst

Chaosindustries · El Segundo, California, United States +1 · Remote, Onsite

Yesterday

Senior Staff GRC Analyst - Strategic Account Partner

Diligentcorporation · Vancouver, British Columbia, Canada

2 days ago

Cybersecurity Analyst 1 - GRC

Arizona State University · UNIVERSITY SERVICES, United States of America · Hybrid

4 days ago

Federal Exchange GRC Analyst

Integritymarketing · SSC - Dallas, TX, United States of America

1 week ago

Information Security GRC Analyst III - CISSP preferred

CareSource mission is known as · Dayton, OH, United States of America · Remote

1 week ago

Analyste GRC / GRC Analyst

Explorance · Montreal, Quebec, Canada

1 week ago

GRC & Privacy Analyst

Thriveglobal · Remote (United States) · Remote

1 week ago

Senior Analyst-GRC

Berry Appleman & Leiden · Richardson, TX

1 week ago

Security GRC & AI Analyst

PoloWorks · Cheltenham

1 week ago

User Access Management - SAP GRC Access Control Analyst

Jj · IN004 Bangalore, India +1 · Hybrid

1 week ago

Principal Security GRC Analyst

Rescale · Remote (United States) · Remote

1 week ago

Senior GRC / Third-Party Risk / Data Protection Analyst

Peraton · , US · Remote

2 weeks ago

Senior Analyst, Enterprise Risk Management (GRC Tool Implementation & Third-Party Risk Focus)

TMX group of companies includes · Toronto - 100 Adelaide St W, Canada · Hybrid, Onsite

2 weeks ago

Senior GRC Analyst

Preply · Barcelona · Hybrid

2 weeks ago