Emprego
Meus anúncios
Meus alertas email de emprego
Fazer login
Encontrar um emprego Fichas de empresas
Procurar

Grc analyst

Viseu
Primer
Anunciada dia 29 maio
Descrição

About the Role

We're looking for a GRC Analyst to take ownership of our Governance, Risk & Compliance program. As our regulatory footprint and customer trust requirements have grown, we're investing in a dedicated GRC function to ensure we maintain a strong, continuous compliance posture.

This is a mid-level, individual contributor role reporting into the engineering/security organisation. You'll partner closely with engineers as subject-matter experts while owning the day-to-day execution and operational rhythm of GRC across the business.

What You'll Own

Audit Readiness & Evidence Operations

Maintain a year-round evidence calendar, run continuous control monitoring, and coordinate with external auditors.

External Trust Requests

Own inbound security questionnaires, vendor assessments, and RFP responses. Maintain a response library so we can turn these around quickly and consistently, keeping deals and procurement moving.

Framework-Driven Programs

Coordinate risk assessments, partner on security awareness and training programs, and govern vulnerability management processes. With obligations spanning PCI DSS, DORA, NIS2, and the EU AI Act, you'll help us stay ahead of evolving requirements.

Policy Lifecycle Management

Maintain policies, manage exceptions, monitor for violations, and drive remediation follow-through. You'll be the single point of accountability for keeping our policy framework current and enforceable.

Certification & Expansion

Drive future certification efforts, including ISO 27001, and support the operationalisation of new regulatory frameworks as they come into scope.

What We're Looking For

Experience

- 3–5 years in a GRC, compliance, or information security governance role

- Hands‐on experience coordinating external audits (SOC 2, PCI DSS, ISO 27001, or similar)

- Familiarity with EU regulatory frameworks such as GDPR, DORA, NIS2, and the EU AI Act

- Experience managing vendor risk assessments and third-party due diligence

- Track record of maintaining evidence and controls on a continuous (not just annual) basis

Skills & Qualities

- Strong organisational skills

- Clear, concise communicator who can work across engineering, legal, and leadership teams

- Comfortable working with compliance tooling and GRC platforms (such as Vanta, Drata, OneTrust, or similar)

- Detail-oriented with a bias for proactive, systematic work over reactive cleanup

- Able to operate independently while knowing when to pull in subject‐matter experts

Nice to Have

- Familiarity with IAM processes and access review cycles

- Relevant certifications (CISA, CRISC, ISO 27001 Lead Implementer, or similar)

- Experience in a payments, fintech, or regulated technology environment, particularly with PCI DSS compliance

Our benefits

- Fully remote and globally distributed; and have been since day one

- Competitive share options

- Uncapped holiday, with 25 days minimum to be taken

- Co-working space access

- Workations & Company Retreat

- The best equipment for your role

- £500 towards your home office setup

- Generous learning budget

- Private Medical Insurance

- A broad set of additional perks and benefits (depending on location)

At Primer, we're dedicated to building a diverse, inclusive, and authentic workplace. If you're excited about this role but your past experience doesn't align perfectly with every qualification in the job description, we encourage you to apply.

Primer is committed to the equal treatment of all current and prospective employees regardless of background or beliefs.

Primer adopts a zero-tolerance approach to discrimination. We are committed to providing equal opportunities to all current and prospective employees regardless of age, disability, sex, sexual orientation, pregnancy and maternity, race or ethnicity, religion or belief, gender identity, or marriage and civil partnership.

#J-18808-Ljbffr

Se candidatar
Criar um alerta
Alerta activado
Salva
Salvar
Ofertas parecidas
Emprego Viseu
Emprego Distrito de Viseu
Página principal > Emprego > GRC Analyst

Jobijoba Portugal

Encontre ofertas

  • Ofertas de emprego por função
  • Pesquisa de ofertas de emprego por sector
  • Empregos por empresas
  • Empregos por localização

Contacto / Parceria

  • Entre em contacto
  • Publique as suas ofertas no site Jobijoba

Menções legais - Menções legais e termos de utilização - Política de dados - Gerir os meus cookies - Acessibilidade: Não conforme

© 2026 Jobijoba Portugal - Todos os direitos reservados

Se candidatar
Criar um alerta
Alerta activado
Salva
Salvar