Security GRC Analyst Operations · Bristol ·
- Location
- West of England, England, United Kingdom
certification: statement of applicability, evidence library, internal audit scheduling and external audit coordination. Work with IT to maintain security accreditations such as Cyber Essentials Plus and our ISO accreditations, plus the evidence set for the NCSC Cyber Assessment Framework where customers require it. Maintain the security exceptions register … coordinate the monthly risk register review with executive risk sponsors, and track treatment plans to closure. Draft register entries from audit findings, incident lessons, threat assessments and customer requirements, for CISO review, each with a proposed owner. Maintain the list of security-related product roadmap requests and coordinate prioritisation ...