Responsibility grc analyst
a compliance manager is responsible for ensuring a company's policies and procedures comply with regulatory and ethical standards. Also referred to as compliance specialists, these highly analytical professionals perform regular audits, implement company policies, and design control systems.
Activities
· develop and implement company policies and regulations.
· oversee all business operations relating to compliance including policies, investments, and procedures.
· design and monitor control systems to deal with violations of legal rules and internal policies.
· regularly assess the efficiency of control systems and recommend effective improvements.
· review and evaluate company procedures and reports to identify hidden risks or common issues.
· coordinate with different department managers to review all departmental compliance policies.
· perform periodic audits on company procedures and processes.
· lead employee training sessions on legal and compliance issues.
· supervise compliance officers and team.
Required knowledge
· ba/bs in a business related field and/or equivalent years of education and experience working in a related field
· 3-5 years experience in information technology or information security experience.
· certified information systems security professional (cissp) preferred
· knowledge of policies and procedures related to gdpr, ccpa, and pci
· excellent interpersonal, verbal, and written communication skills with the ability to communicate compliance related concepts to a broad range of technical and non-technical staff
· successful experience working, collaborating, and establishing credibility and relationships with senior leadership, colleagues, and clients
· demonstrated success working with internal audit, external auditors, outside consultants, and legal affairs
· demonstrated experience leading large-scale projects
· ability to use gitlab
competencies, skills and experience
· 3-5 years of hands-on it experience in a technical/helpdesk role.
· 3-5 years of hands-on experience with at least one infrastructure technology (for example: unix or windows or databases or mainframe)
· solid knowledge in microsoft excel (power query highly desirable)
· good organization and planning skills
· strong communication and document processing skills.
· desirable advanced level of english. Technical english is required.
· ease of responding to multiple scenarios and highly dynamic work environments
· interested in constantly updating your knowledge
· proactive
· teamwork.
· highly motivated, driven and willing to work independently while receiving instruction through supervision in a highly regulated environment.
· desire to learn and grow with a team of security access professionals.
#nuvitservice