GRC Analyst
London
Posted 15 days ago
Early applicant
Hybrid
Full-time
Mid Level
Your role What you'll be doing What We Need Corpay is currently looking to hire a GRC Analyst. This position falls under our IT line of business, located in London. In this role, you will support the organisation in managing governance, risk management, and compliance processes. You will collaborate closely with IT, Security, Legal, and other business teams to ensure the organisation meets its regulatory, legal, and operational requirements, while proactively mitigating risks to protect company assets and data. How We Work As a GRC Analyst, you will be expected to work in a hybrid environment. Corpay will set you up for success by providing: •Assigned workspace in our London office •Company-issued equipment •Formal, hands-on training Role Responsibilities •Supporting the development, maintenance, and continuous improvement of governance frameworks, policies, and procedures. •Conducting risk assessments to identify, evaluate, and prioritise risks across departments. •Maintaining and updating risk registers and ensuring accurate documentation. •Collaborating with stakeholders to develop risk mitigation strategies and track remediation actions. •Supporting supplier and third-party risk management processes, including security reviews and assessments. •Assisting in responding to client due diligence and security questionnaires. •Supporting organisational adherence to relevant laws, regulations, and industry standards. •Contributing to the creation and review of policies related to information security, compliance, and ethics. •Working closely with IT and other departments to ensure the security and protection of data. •Preparing reports and dashboards on GRC metrics for leadership and key stakeholders. •Delivering employee training and awareness initiatives on information security topics, including phishing simulations. •Identifying opportunities to improve risk, compliance, and governance processes. Qualifications & Skills •Diploma or Degree in Information Technology, Computer Science, Business Administration, or a related field. •3–5 years of experience in governance, risk management, compliance, or related areas. •Experience in IT security or data privacy is considered a plus. •Strong knowledge of security frameworks such as NIST CSF, ISO 27001, and SOC 2. •Experience with risk assessments, risk registers, and third-party risk management. •Strong analytical skills and attention to detail. •Excellent communication skills, with the ability to collaborate across technical and non-technical teams. •Relevant certifications are preferred (CISM, CISA, CISSP, CRISC, ISO 27001 Lead Implementer, ISO 27001 Lead Auditor). Benefits & Perks •Holiday entitlement: 25 days per annum + 8 bank holidays •Additional Leave: Option to buy or sell up to 5 days of annual leave once per year during the annual benefits enrolment window •Pension: Minimum 3% employee contribution with up to 5% contribution from Corpay •Private Medical Insurance: Vitality cover with no excess (Corpay covers the £250 excess charge) •Access to our benefits portal: Gratitudes (flexible discounts, supermarket savings of 4–5%, and more) •LinkedIn Learning: Free access Our Company & Purpose CORPAY is a global leader in business payments, laser focused on developing smarter ways for businesses to pay their expenses. Since 2000, CORPAY has developed innovative digital solutions that help businesses better track, manage, and pay their expenses. Today, CORPAY is an S&P 500 company with hundreds of thousands of customers using our products in over 100 countries. Companies of all sizes, industries and geographies rely on our product portfolio to manage spending more quickly, efficiently and securely than ever before. We embrace a culture grounded in five key values: integrity, collaboration, innovation, execution and people. These values offer you the opportunity to ‘thrive & grow’ through career development, volunteer, community, and wellness initiatives. This allows you to create a balance between professional goals and personal achievement. CORPAY is also committed to building and nurturing a culture of diversity, inclusion, equality, and belonging by: •Welcoming people of different backgrounds, cultures, ethnicities, genders, and sexual orientations. •Empowering our people to share their experiences and ideas through open forums and individual conversations; and •Valuing each person’s unique perspectives and individual contributions. Embracing diversity enables our people to “make the difference” as CORPAY and its more than 8,000 employees continue to shape the future of global payments. Learn more by visiting www.CORPAY.com or following CORPAY on LinkedIn. Equal Opportunity/Affirmative Action Employer CORPAY is an Equal Opportunity Employer. CORPAY provides equal employment opportunities to all employees and applicants without regard to race, color, gender (including pregnancy), religion, national origin, ancestry, disability, age, sexual orientation, gender identity or expression, marital status, language, ancestry, genetic information, veteran and/or military status or any other group status protected by federal or local law. If you require reasonable accommodation for the application and/or interview process, please notify a representative of the Human Resources Department. About Corpay Corpay is a global technology organisation that is leading the future of commercial payments with a culture of innovation that drives us to constantly create new and better ways to pay. Our specialized payment solutions help businesses control, simplify, and secure payment for fuel, general payables, toll and lodging expenses. Millions of people in over 80 countries around the world use our solutions for their payments. All offers of employment made by Corpay (and its subsidiary companies) are subject to the successful completion of satisfactory pre-employment vetting by an independent supplier (Experian). This is in accordance with Corpay's Resourcing Policy and include employment referencing, identity, adverse financial, criminal and sanctions list checks. We do this to meet our legal and regulatory requirements. Corpay is dedicated to encouraging a supportive and inclusive culture among our employees. It is within our best interest to promote diversity and eliminate discrimination in the workplace. We seek to ensure that all employees and job applicants are given equal opportunities. Notice to Agency and Search Firm Representatives: Corpay will not accept unsolicited CV's from agencies and/or search firms for this job posting. Resumes submitted to any Corpay employee by a third party agency and/or search firm without a valid written & signed search agreement, will become the sole property of Corpay. No fee will be paid if a candidate is hired for this position as a result of an unsolicited agency or search firm referral. Thank you. Fast-growing, global, rewarding, fun, involved – at Corpay, we are all of these and more. If you are an experienced and self-motivated professional who can perform at a high level, you will be rewarded. If you have great ideas, we want to hear them. If you want your career to grow at the same rapid pace as our organization, this is the place for you. Whatever your area of expertise, you can take it to the next level at Corpay.
Skills
Governance
Risk management
Compliance
IT security
Data privacy
NIST CSF
ISO 27001
SOC 2
Risk assessments
Third-party risk management
Policy development
Analytical skills
Communication skills
Reporting
Stakeholder management
Location
London