GRC Analyst (Governance, Risk & Compliance)

APPIT Software Inc.

Employer Active

Posted on 9 Apr

Experience

4 - 9 Years

Education

Any Graduation

Nationality

Any Nationality

Gender

Not Mentioned

Vacancy

1 Vacancy

Job Description

Roles & Responsibilities

Responsibilities

  • Manage and maintain compliance programs across ISO 27001, SOC 2, NESA, and GDPR frameworks
  • Conduct enterprise risk assessments, maintain the risk register, and track risk treatment plans to completion
  • Coordinate internal and external audit activities, manage evidence collection, and ensure timely remediation of findings
  • Develop, review, and update information security policies, standards, and procedures aligned with business objectives
  • Perform third-party vendor risk assessments and manage the vendor security review lifecycle
  • Prepare compliance reports and risk dashboards for executive leadership and board-level stakeholders

Requirements

  • 4+ years of experience in GRC, IT audit, or information security compliance roles
  • Strong working knowledge of ISO 27001/27002, SOC 2, NIST CSF, and regional frameworks (NESA IAS)
  • Experience managing audit cycles end-to-end including scoping, evidence collection, and remediation tracking
  • Understanding of risk management methodologies (FAIR, NIST RMF, ISO 31000)
  • Familiarity with GRC platforms such as ServiceNow GRC, OneTrust, or Archer
  • Excellent written and verbal communication skills with the ability to translate technical risks for business audiences

Nice to Have

  • CISA, CRISC, or ISO 27001 Lead Auditor certification
  • Experience with UAE NESA and DIFC data protection regulations
  • Knowledge of PCI DSS compliance requirements

Skills

ISO 27001SOC 2Risk AssessmentAudit ManagementNIST CSFVendor Risk ManagementPolicy Development

Desired Candidate Profile

4+ years of experience in GRC, IT audit, or information security compliance roles

Strong working knowledge of ISO 27001/27002, SOC 2, NIST CSF, and regional frameworks (NESA IAS)

Experience managing audit cycles end-to-end including scoping, evidence collection, and remediation tracking

Understanding of risk management methodologies (FAIR, NIST RMF, ISO 31000)

Familiarity with GRC platforms such as ServiceNow GRC, OneTrust, or Archer

Excellent written and verbal communication skills with the ability to translate technical risks for business audiences

CISA, CRISC, or ISO 27001 Lead Auditor certification

Experience with UAE NESA and DIFC data protection regulations

Knowledge of PCI DSS compliance requirements

Company Industry

Department / Functional Area

Keywords

  • GRC Analyst (Governance
  • Risk & Compliance)

Disclaimer: Naukrigulf.com is only a platform to bring jobseekers & employers together. Applicants are advised to research the bonafides of the prospective employer independently. We do NOT endorse any requests for money payments and strictly advice against sharing personal or bank related information. We also recommend you visit Security Advice for more information. If you suspect any fraud or malpractice, email us at abuse@naukrigulf.com

APPIT Software Inc.

Drive governance, risk, and compliance programs across multiple frameworks, managing audits and risk assessments for APPIT Software Solutions in Dubai.

https://www.appitsoftware.com/careers/grc-analyst-governance-risk-compliance-dubai