GRC Analyst (Governance, Risk & Compliance)
APPIT Software Inc.
Employer Active
Posted on 9 Apr
Send me Jobs like this
Nationality
Any Nationality
Gender
Not Mentioned
Vacancy
1 Vacancy
Job Description
Roles & Responsibilities
Responsibilities
- Manage and maintain compliance programs across ISO 27001, SOC 2, NESA, and GDPR frameworks
- Conduct enterprise risk assessments, maintain the risk register, and track risk treatment plans to completion
- Coordinate internal and external audit activities, manage evidence collection, and ensure timely remediation of findings
- Develop, review, and update information security policies, standards, and procedures aligned with business objectives
- Perform third-party vendor risk assessments and manage the vendor security review lifecycle
- Prepare compliance reports and risk dashboards for executive leadership and board-level stakeholders
Requirements
- 4+ years of experience in GRC, IT audit, or information security compliance roles
- Strong working knowledge of ISO 27001/27002, SOC 2, NIST CSF, and regional frameworks (NESA IAS)
- Experience managing audit cycles end-to-end including scoping, evidence collection, and remediation tracking
- Understanding of risk management methodologies (FAIR, NIST RMF, ISO 31000)
- Familiarity with GRC platforms such as ServiceNow GRC, OneTrust, or Archer
- Excellent written and verbal communication skills with the ability to translate technical risks for business audiences
Nice to Have
- CISA, CRISC, or ISO 27001 Lead Auditor certification
- Experience with UAE NESA and DIFC data protection regulations
- Knowledge of PCI DSS compliance requirements
Skills
Desired Candidate Profile
4+ years of experience in GRC, IT audit, or information security compliance roles
Strong working knowledge of ISO 27001/27002, SOC 2, NIST CSF, and regional frameworks (NESA IAS)
Experience managing audit cycles end-to-end including scoping, evidence collection, and remediation tracking
Understanding of risk management methodologies (FAIR, NIST RMF, ISO 31000)
Familiarity with GRC platforms such as ServiceNow GRC, OneTrust, or Archer
Excellent written and verbal communication skills with the ability to translate technical risks for business audiences
CISA, CRISC, or ISO 27001 Lead Auditor certification
Experience with UAE NESA and DIFC data protection regulations
Knowledge of PCI DSS compliance requirements
Company Industry
Department / Functional Area
Keywords
- GRC Analyst (Governance
- Risk & Compliance)
Disclaimer: Naukrigulf.com is only a platform to bring jobseekers & employers together. Applicants are advised to research the bonafides of the prospective employer independently. We do NOT endorse any requests for money payments and strictly advice against sharing personal or bank related information. We also recommend you visit Security Advice for more information. If you suspect any fraud or malpractice, email us at abuse@naukrigulf.com
APPIT Software Inc.
Drive governance, risk, and compliance programs across multiple frameworks, managing audits and risk assessments for APPIT Software Solutions in Dubai.
https://www.appitsoftware.com/careers/grc-analyst-governance-risk-compliance-dubai