Talent.com
This job offer is not available in your country.
Analyst - Governance Risk & Compliance

Analyst - Governance Risk & Compliance

Trimble(Transporeon), Poland
11 days ago
Job description

Your Title : Analyst - Governance Risk & Compliance

Job Location : Ukraine / Poland / Romania

Our Department : Corporate Cybersecurity

Trimble is transforming the way the world works by delivering products and services that connect the physical and digital worlds. Core technologies in positioning, modeling, connectivity and data analytics enable customers to improve productivity, quality, safety, and sustainability. From purpose built products to enterprise lifecycle solutions, Trimble software, hardware and services are transforming a broad range of industries such as agriculture, construction, geospatial and transportation and logistics.

In order to improve integrity between physical and digital worlds, Governance, Risk and Compliance (GRC) facilitates the integrated collection of capabilities necessary to support connected performance. GRC doesn't burden the business, it supports and improves it by adding value through establishing efficiencies, centralizing policy and creating metrics to reduce risk to maintain Trimble brand equity. GRC resides within the corporate Trimble Cybersecurity team.

To be considered for this position, you must be familiar with security frameworks and security control auditing; (, ISO 27001, ISO 27701, SOC 2, NIST

  • CSF), risk assessments and scoring, conducting gap analysis, internal audits, and external audit coordination. Proficiency in English is essential.

This Opportunity

You are a self-motivated, mildly technical but versatile individual contributor looking to fill a Cybersecurity Compliance Analyst role by joining a diverse and collaborative international cybersecurity team for a large dynamic publicly traded company. You will be responsible for helping to ensure Trimble’s product portfolio maintain compliance to an array of frameworks (ISO 27001, ISO 27701, SOC 1 & 2, NIST

  • You will be a crucial member of our organization, working to achieve our customers expectations in the area of Compliance & Audit.
  • The role requires an individual who works well independently and as part of a global team by adding value through processes optimization and managing a diverse portfolio of Trimble products seeking compliance to existing and new standards & frameworks.

    Key Responsibilities

    Perform ISO 27001, ISO 27701, SOC 2 & NIST 800-171 gap analysis and recommend process, procedural, documentation and tooling recommendations to remediate.

    Improve Compliance and certification scope efficiency via review and enhancements of the Trimble Common Control Framework

    Perform ISO 27001 & ISO27701 Internal Audits.

    Perform SOC 2, NIST 800-171 Internal & External Audits

    Contribute to annual policy revisions and maintenance of the IMS.

    Constantly coordinate with key business stakeholders and the external auditor

    Present metrics derived from the Integrated Management System, audit results, trends in risk, and corrective action plans to senior leadership.

    Contribute to the creation of processes and procedures that increase efficiency of the overall compliance program across all standards and frameworks.

    Collaborate with Cybersecurity team members, Trimble businesses across various geographies.

    Contribute to risk management processes to ensure business risk posture is properly calculated and proactively managed.

    Produce and analyze information that will accurately demonstrate the risk posture of each business and drive actions to reduce and manage technical risks.

    Be able to understand and communicate technical risks to a broad set of stakeholders.

    Communication

    The Trimble Cybersecurity team serves the entire organization. Trimble is divided into several Business focused Sectors and Divisions. This role will communicate with :

    Cybersecurity, IT and GRC teams

    Trimble leadership

    Divisional & Sector Cybersecurity representatives

    Software development staff

    Other global functions (Human Resources, Legal as required

    No communication with Trimble customers required

    Skills / Competencies

    Working knowledge of ISO 27001, ISO 27701, SOC 2 & NIST 800-171

    Designing audit controls spanning ISO 27001, ISO 27701, SOC 2 & NIST 800-171

    Ability to write policy and interpret complex business changes, as they arise

    Comprehensive understanding of risk management standards and guidelines.

    General IT knowledge (networking, cloud computing, software development)

    General knowledge in Data Privacy (GDPR, CCPA and other regulations)

    A passion for user-centric information that is clear and actionable, attention to detail focused on delivering accurate and creative metrics.

    Ability to make effective, timely decisions with clear reasoning

    Ability to quickly establish a broad understanding of an issue with limited available information and outline the steps required to bring it to a successful conclusion

    Excellent organizational and presentation skills

    Effective communication skills (verbal and written) and time management skills

    Flexible approach to working in a changing environment and can work well under pressure with dynamically changing priorities

    Ability to work as part of a collaborative global team, prepared to remain resilient to complete tasks to conclusion.

    Qualifications / Experience

    Preferable a relevant degree in Data Science, Computer Science or Engineering (Software or Electrical)

    Current general security certifications (, SEC+, GSEC) encouraged but not required

    ISO 27001 Certified Internal / Lead Auditor and or equivalent experience.

    2 years experience working with ISO 27001, ISO 27701, SOC 2 and or NIST 800-171

    Proficiency in English (written and oral)

    2 years experience in a risk management role, information security role or systems engineer / administrator role in a large, international software company

    Hands-on experience with business and GRC tools such as : Jira Service Desk

    Demonstrated experience in collecting information from disparate data sources and formulating into reports that can be presented to various audiences

    Intermediate level experience with Windows and Linux / Unix operating systems

    Intermediate level cloud knowledge within AWS, Azure and GCP

    Intermediate level scripting knowledge and experience of Splunk and creating queries

    Experience of using AI to reduce manual process and procedure

    Excellent analytical, problem-solving and decision making skills.

    Trimble's Inclusiveness Commitment

    We believe in celebrating our differences. That is why our diversity is our strength. To us, that means actively participating in opportunities to be inclusive. Diversity, Equity, and Inclusion have guided our current success while also moving our desire to improve. We actively seek to add members to our community who represent our customers and the places we live and work. We have programs in place to make sure our people are seen, heard, and welcomed and most importantly that they know they belong, no matter who they are or where they are coming from.

    Trimble’s Privacy Policy

    Create a job alert for this search

    Risk Analyst • (Transporeon), Poland

    Related jobs
    Information Security Specialist (Governance, Risk & Compliance)

    Information Security Specialist (Governance, Risk & Compliance)

    ParexelRemote, Poland
    When our values align, there's no limit to what we can achieve.Our Information Security Specialist is responsible for developing, implementing, and maintaining the organization's information Securi...Show moreLast updated: 21 days ago
    Risk, Regulation and Compliance Graduate Programme

    Risk, Regulation and Compliance Graduate Programme

    FDM GroupPoland
    If you are a graduate looking to begin your career in financial compliance and risk, this is an excellent opportunity to join the FDM Graduate Programme as a Junior KYC Analyst.No prior AML or KYC ...Show moreLast updated: 17 days ago
    Interim Group Security GRC Manager

    Interim Group Security GRC Manager

    HelprisePL
    Remote
    Quick Apply
    Join Helprise – one of the fastest growing outsourcing and consultancy firms providing the best talent, know-how and solutions for the execution of business processes. Be part of building an ecosyst...Show moreLast updated: 30+ days ago
    Senior Product Manager (Tech Compliance and Risk Enablement)

    Senior Product Manager (Tech Compliance and Risk Enablement)

    instinctoolsPoland
    Product management expertise in agile environments for GRC related use cases;.API calls, data pipelines, database solution such as Snowflake etc. AWS, Azure, Kafka, Google Cloud);.Governance Risk an...Show moreLast updated: 17 days ago
    Cyber GRC Consultant

    Cyber GRC Consultant

    InfosysPoland
    Consultant-Senior Consultant level.Do you want to boost your career and collaborate with expert, talented colleagues to solve and deliver against our clients' most important challenges? We are grow...Show moreLast updated: 17 days ago
    Business Analyst - Risk & Finance, Rzeczpospolita Polska

    Business Analyst - Risk & Finance, Rzeczpospolita Polska

    Axiom Software SolutionsRzeczpospolita Polska, Poland
    Business Analyst - Risk & Finance Business Analyst Risk Finance (5-6 years) Job type : Contract role Job Location : Remote from Poland Job Summary : A Business Analyst to manage a criti...Show moreLast updated: 30+ days ago
    Information Security Analyst @ Link Group

    Information Security Analyst @ Link Group

    Link GroupRemote, Poland
    At Link Group, we build tech teams for Fortune 500 companies and the world’s most innovative startups.Our mission is to connect talented professionals with opportunities that align with their exper...Show moreLast updated: 30+ days ago
    Cyber GRC Consultant

    Cyber GRC Consultant

    Infosys Consulting - EuropePL
    Remote
    Quick Apply
    Consultant-Senior Consultant level.Do you want to boost your career and collaborate with expert, talented colleagues to solve and deliver against our clients' most important challenges? We are grow...Show moreLast updated: 30+ days ago
    Cybersecurity Risk & Governance Analyst

    Cybersecurity Risk & Governance Analyst

    EuroclearPoland
    As part of Euroclear’s Cybersecurity Risk and Governance team, you will contribute to the secure development and maintenance of critical infrastructure. You’ll focus on risk assessments, compliance ...Show moreLast updated: 17 days ago
    GSC : Governance and Reporting Analyst

    GSC : Governance and Reporting Analyst

    HSBCPologne
    Some careers shine brighter than others.If you’re looking for a career that will help you stand out, join HSBC, and fulfil your potential. Whether you want a career that could take you to the top, o...Show moreLast updated: 12 days ago
    Business Analyst - Risk & Finance (5-6 years)

    Business Analyst - Risk & Finance (5-6 years)

    Axiom Software Solutions LimitedPL
    Remote
    Quick Apply
    Business Analyst – Risk & Finance (5-6 years).Job Location : Remote from Poland.A Business Analyst to manage a critical project for one of our biggest clients in banking domain.The Individual s...Show moreLast updated: 30+ days ago
    Job in Germany : Business Analyst / Asset Owner Governance - SAP Core Systeme (w / m / d)

    Job in Germany : Business Analyst / Asset Owner Governance - SAP Core Systeme (w / m / d)

    ING Deutschlandpoland
    Business Analyst / Asset Owner Governance - SAP Core Systems (f / m / d).Frankfurt or Nuremberg location.Diligence meets process understanding and you score points with organizational and communicative...Show moreLast updated: 30+ days ago
    Global Security GRC Analyst (Governance, Risk, and Compliance)

    Global Security GRC Analyst (Governance, Risk, and Compliance)

    DentonsPoland
    We are driven to always be the firm of the future, to challenge the status quo, and to provide holistic business solutions to our clients in new and innovative ways. We are the world's largest globa...Show moreLast updated: 17 days ago
    Senior Risk and Compliance Analyst – Risk Manager

    Senior Risk and Compliance Analyst – Risk Manager

    WomenTech NetworkPoland
    At Relativity, we have a world-class compliance team focused on maintaining an industry-leading approach to security, privacy, and enterprise risk management. We are building scalable processes and ...Show moreLast updated: 30+ days ago
    Third Party Risk Reporting - Associate

    Third Party Risk Reporting - Associate

    JPMorgan Chase & Co.Poland
    Are you ready to make an impact in a leading global financial services firm? At JPMorgan Chase & Co.As part of our Corporate Third Party Oversight (CTPO) program, you will play a pivotal role in en...Show moreLast updated: 18 days ago
    Digital and Business Compliance Analyst, (Computer Systems validation)

    Digital and Business Compliance Analyst, (Computer Systems validation)

    Astellas Pharma Inc.Poland
    Digital and Business Compliance Analyst, (Computer Systems validation) About Astellas : At Astellas we are a progressive health partner, delivering value and outcomes where needed.We pursue innovati...Show moreLast updated: 25 days ago
    Risk Management Specialist with French or Dutch

    Risk Management Specialist with French or Dutch

    SIX Payment ServicesPoland
    Risk Management Specialist with French or Dutch.Date posted 03 / 18 / Location Warsaw | Poland Company Worldline.We are the innovators at the heart of the payments technology industry, shaping how the...Show moreLast updated: 30+ days ago
    Business Analyst / Data Analyst @ Engenious

    Business Analyst / Data Analyst @ Engenious

    EngeniousRemote, Poland
    Business Analyst / Data Analyst.We are looking for a Business Analyst / Data Analyst to support the non-ERP application team within a global IT carve-out (separation) program.The analyst will play ...Show moreLast updated: 5 days ago