hero

Portfolio Careers

Our companies are always looking for talented people to join their growing teams.

Information Security GRC Analyst

OneTrust

OneTrust

IT
Madrid, Spain
Posted on Wednesday, August 30, 2023

Strength in Trust

At OneTrust, we help businesses around the world to make trust a competitive advantage. Our category-defining enterprise platform enables organizations to operationalize trust across privacy, security, data governance, GRC, third-party risk, ethics, and compliance, and ESG.

The Challenge

This role will support IT and InfoSec by performing various governance, risk, and compliance activities as part of the OneTrust InfoSec GRC team. In addition, this role will collaborate with our sales team to address customer audits, assist with RFPs/RFQs and internal audits, manage the issues and risk acceptance process, and execute risk management processes to support ongoing compliance efforts.

Your Mission

  • Supports ongoing compliance and audit processes
  • Works with IT and business owners to collect evidence of effective controls
  • Updates or defines policy, standard, and process documentation to align with compliance requirements
  • Responds to customer inquiries, security questionnaires, and RFP/RFQs to provide appropriate answers
  • Supports customer audits as needed
  • Collaborate with IT, InfoSec, and within the GRC team to mature the compliance process
  • Follow our ongoing risk and control self-assessment, audit management, and security risk assessment processes
  • Provide front line support to customer meetings and audit requests to ensure that OneTrust’s customers understand the security program and controls and how it meets the requirements of the customer
  • Support multiple audits simultaneously
  • Become a trusted advisor to IT, InfoSec, and the business

You Are

Your Experience Includes:

  • 2-5 yrs of related experience/similar roles
  • Understanding of applicable laws and regulations, including but not limited to, GDPR, CCPA, PCI-DSS, SOC 2, ISO, and FedRAMP
  • Understanding of technology domains including governance, risk management, security, privacy, and information technology and business continuity
  • Planning, supporting, and or executing audits (customer-driven, internal, external)
  • A relationship builder: Ability to listen, build rapport, and credibility as a strategic partner vertically and horizontally
  • An Innovator: Possess the ability to seek alternatives and recommend best solutions that gain all parties support and lead to win-win results
  • Value Driven: You are detail oriented with an eye for quality
  • Ability to work with minimal oversight
  • Ability to execute given high level direction

Extra Awesome

  • Consulting and/or international experience
  • Certifications: Security+, CISSP, CISM, CCSP, CISA, Azure

Benefits

As an employee at OneTrust, you will be part of the OneTeam. That means you’ll receive support physically, mentally, and emotionally so that you can do your best work both in and out of the office. This includes comprehensive healthcare coverage, hybrid workplace flexibility, flexible PTO, equity stock options, annual performance bonus opportunities, retirement account support, 14+ weeks of paid parental leave, career development opportunities, company-paid privacy certification exam fees, and much more. Specific benefits differ by country. For more information, talk to your recruiter or visit onetrust.com/careers.

Resources

Check out the following to learn more about OneTrust and its people:

Your Data

You have the right to have your personal data updated or removed. You also have the right to have a copy of the information OneTrust holds about you. Further details about these rights are available on the website in our Privacy Overview. You can change your mind at any time and have your personal data removed from our database. In order to do this you must contact us and let us know you wish to be removed. The request should be made on the Data Subject Request Form.