GRC Analyst – 3-month contract – Fully Remote My Customer is looking for an experienced GRC Analyst to join the organisation to strengthen governance, risk, and compliance practices and will lead the delivery of ISO 27001 certification within the next 12 months. The GRC Analyst will focus on maintaining current ISO and SOC 2 standards within the business. Technical understanding would be beneficial but not essential. Knowledge of the requirements of the above standards in relation to contracts and vendor relationships is essential. Key Skills & Experience from the GRC Analyst: Proven experience in a GRC, security risk, or compliance role Certifications for ISO 27001 (Lead Implementer/Auditor), would be required Strong knowledge of frameworks such as ISO 27001, NIST, SOC 2, CIS, and data protection standards Onboarding/vendor risk management experience Hands-on experience supporting or leading ISO 27001 certification activities Solid understanding of risk assessment, control design, and audit processes Experience working with GRC tooling, evidence management, and reporting Experience/Knowledge around high volume data process would be beneficial Strong documentation, communication, and organisational skills Experience operating in regulated or security-conscious environments Experience in the Finance Sector would be beneficial Key Responsibilities of the GRC Analyst: Develop and maintain security policies, standa...