Hempel
Tech / AI / Software
GRCAnalyst
Neural analysis suggests this role is
optimal for Mid-Senior level candidates.
“GRC Analyst at Hempel. Skills: Governance, Risk, and Compliance (GRC) programs, Information Security Management, Cybersecurity Governance, Risk Management, Security frameworks and standards, Regulatory requirements, GRC platforms. Ensure effective implementation and continuous implementation of policies and procedures. Maintain and improve Governance, Risk, and Compliance (GRC) programs to stay aligned with legal, regulatory and contractual requirements”
What You'll Achieve.
Double our impact; Contribute to better business performance
Industry & Context.
Identify vulnerabilities and update mitigation strategies
What They're Looking For.
Must Have
Minimum 5 years of experience in information security management, cybersecurity governance, or risk management, Bachelor’s degree or higher in Information Security, Computer Science, or a related field, understanding of IT risk, compliance processes, and audit readiness, Project leadership and communication skills, proficiency in English, both written and verbal
Nice to Have
Relevant certifications such as CISSP, CRISC, CISA, or similar are preferred, Experience with regulatory areas likes NIS2, GDPR and AI Act is preferred, Experience in developing and conducting security training and awareness programs is an advantage
What You'll Do.
Ensure effective implementation and continuous implementation of policies and procedures
Maintain and improve Governance
and Compliance (GRC) programs to stay aligned with legal
regulatory and contractual requirements
Conduct third party risk assessments
Performs risk assessments and control testing for IT systems
Lead ongoing information security training and awareness programs to strengthen organizational security culture
Facilitate collaboration with IT and other departments to integrate security measures into all business processes
Coordinate Business Impact Assessments and risk assessments to identify vulnerabilities and update mitigation strategies as necessary
Provide up-to-date security reports to the CISO and other stakeholders
How You'll Work.
Team & Collaboration
Facilitate collaboration with IT and other departments to integrate security measures into all business processes; Inspire and collaborate to build a brighter future together; Bringing together the most diverse perspectives and talents, we can achieve great things, together
Communication Scope
communication skills; proficiency in English, both written and verbal
Process & Methodology
Project leadership
Full Job Description
**Do you have the drive and ambition to help shape a brighter future?** * Ensure effective implementation and continuous implementation of policies and procedures. * Maintain and improve Governance, Risk, and Compliance (GRC) programs to stay aligned with legal, regulatory and contractual requirements. * Conduct third party risk assessments. * Performs risk assessments and control testing for IT systems. * Lead ongoing information security training and awareness programs to strengthen organizational security culture. * Facilitate collaboration with IT and other departments to integrate security measures into all business processes. * Coordinate Business Impact Assessments and risk assessments to identify vulnerabilities and update mitigation strategies as necessary. * Provide up-to-date security reports to the CISO and other stakeholders. **What are we looking for?** * Bachelor’s degree or higher in Information Security, Computer Science, or a related field. * Minimum 5 years of experience in information security management, cybersecurity governance, or risk management. * Relevant certifications such as CISSP, CRISC, CISA, or similar are preferred. * Experience working with various security frameworks and standards like **ISO27001 & CIS18 and ITGC**. * Experience with regulatory areas likes NIS2, GDPR and AI Act is preferred * Hands-on experience with GRC platforms (e.g., Audit Board, ServiceNow GRC). * Strong understanding of IT risk, compliance processes, and audit readiness. * Project leadership and strong communication skills. * Strong proficiency in English, both written and verbal. * Experience in developing and conducting security training and awareness programs is an advantage. **Can you balance ambition with care for your colleagues?** * You’ll join our Digital Group Information Security global team. * You’ll enjoy professional development and progression in a growing global company where we inspire and collaborate to build a brighter future together. * You
Applying for this GRC Analyst role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
How to Apply on Workday
- Workday has a multi-step form — save your progress after every section.
- "Apply With LinkedIn" can fail or lose data; manual entry is more reliable.
- Watch for the "Submit for Review" final step — hitting "Save" alone does not submit.
- Job requisition numbers are useful when following up with HR by email.
ANONYMOUS · UNFILTERED
What do employees actually say about Hempel?
Real rants from real employees. Read before you apply.