Senior GRC Analyst
od 5000 EUR/ mies.UoP
SeniorFull-time·Umowa o pracę
#448477·Dodano wczoraj·0
Źródło: FyulTech Stack / Keywords
ISO 27001SOC 2AIGRCCISACISSPCISM
Firma i stanowisko
FYUL is the engine that powers on-demand commerce at global scale. Formed in 2024 through the merger of Printful, Printify, and Snow Commerce, it brings together tech, talent, and infrastructure to help people turn ideas into products. FYUL supports a diverse clientele from solo creators to entertainment giants, maintaining certifications such as ISO 27001, and operates globally with offices in Riga, Vilnius, Tallinn, Barcelona, and Warsaw.
Wymagania
- 5+ years of experience in cybersecurity GRC, IT audit, or security compliance, including hands-on participation in complete ISO 27001 and/or SOC 2 audit cycles
- Strong communication and negotiation skills; confident under pressure from auditors, vendors, and stakeholders
- Proven automation capability with scripts, integrations, GRC platform implementations, or AI-assisted workflows
- Self-directed working style with strong ownership and ability to complete ambiguous problems independently
- Excellent written and spoken English
Nice to have:
- Relevant certifications such as ISO 27001 Lead Implementer/Lead Auditor, CISA, CISSP, CISM
Obowiązki
Audit management:
- Plan and execute internal and external audit activities across ISO 27001, SOC 2, and related frameworks
- Collect evidence, ensure control readiness, communicate directly with external auditors, and follow through on findings until closure
- Represent the function confidently during audit interactions and professionally decline inappropriate requests
GRC automation:
- Design and implement automation for evidence collection and recurring compliance activities
- Apply compliance-as-code practices and leverage AI-based agents and workflows to reduce manual effort
- Maintain knowledge of commercial GRC platform landscape and prefer established industry solutions
Vendor security operations:
- Conduct security assessments of third-party vendors during onboarding and annual reviews
- Continuously improve the efficiency of the vendor security process
Risk management:
- Maintain the risk register by performing risk assessments, tracking remediation plans, and ensuring timely closure of identified risks
Policies, documentation, and security awareness:
- Develop and maintain information security policies and procedures in collaboration with the manager
- Contribute to security awareness materials and training delivery
Benefity
- Monthly salary EUR 5,000+ gross depending on experience, education, and skills
- Opportunity to work remotely or in a modern office in Riga
- Flexible working hours (start as late as 11 AM)
- Private health insurance
- 2 extra paid days off for mental or physical well-being
- 1 extra paid day off for Birthday or other celebrations
- Internal and external learning opportunities
- Access to mentorship, internal meetups, and hackathons
- Free healthy lunch in the Riga office
- Employee discount on platform merch
- Exciting team-building events and parties
Elastyczne godziny
Opieka zdrowotna
Płatny urlop
Dofinansowanie szkoleń
Spotkania integracyjne
Firmowa stołówka
Fyul
9 aktywnych ofert