Staff GRC Analyst
PleoSpend Management company
United KingdomLead
Bain Capital Ventures
Thrive Capital
Creandum
Kinnevik
Seedcamp
Coatue Management
Legal & ComplianceNew
About the role
TL;DR
Automate and scale compliance and governance frameworks for Pleo's Information Security team.
- •We're looking for a Staff GRC Analyst to join our Information Security team.
- •You'll help scale compliance by building compliance automation and supporting our governance operating model.
- •Key Responsibilities Automate GRC frameworks like ISO 27001, PCI-DSS, DORA, and UK Cyber Essentials.
- •Engineer GRC workflows with internal systems for compliance by design.
- •Design and build scalable GRC architectures for evidence collection, control testing, and reporting.
- •Automate customer and prospect security requests and third-party vendor assessments.
- •Track and report on compliance metrics and KPIs.
- •Requirements Significant experience in Security GRC and auditing processes.
- •Demonstrated experience using AI and/or coding automation for controls.
- •Strong understanding of cloud architectures (AWS or equivalent).
- •Experience automating reporting for GRC programs.
- •Fintech, payments industry, or IT audit background is a plus.
Required skills
AWSPythonJavaScriptSQLBashGitLinuxJiraConfluenceREST API
Domain expertise
fintechcybersecurity
Benefits & perks
Pleo card, Catered meals or lunch allowance, Comprehensive private healthcare, 25-28 days of holiday + public holidays, Hybrid and fully remote working options, Option to purchase 5 additional days of holiday, Free mental health and well-being support, Paid parental leave
Tech stack
AWSPythonJavaScriptSQLBashGitLinuxJiraConfluencePostmanREST API