
Senior Analyst, Governance, Risk & Compliance
Mondelēz International
full-time
Posted on:
Location Type: Remote
Location: Greece
Visit company websiteExplore more
Job Level
Tech Stack
About the role
- Execute risk assessment testing supporting the Risk Manager.
- Document risk assessment results.
- Support Risk Manager in drafting risk assessment reports.
- Perform administrative management of risk register (additions/editions/deletions, etc).
- Document risk acceptance/exemptions that have been approved per the program.
- Manage quarterly/annual review of risk acceptance/exceptions.
- Manage risk assessment results in relevant dashboards.
- Document Issues and Remediation activities for all exceptions noted during risk assessments.
- Perform quarterly compliance assurance testing.
- Document compliance testing results.
- Maintain Management Action Plan (MAP) catalog with due dates.
- Manage monthly audit MAPs. Includes the timely communication of open MAPs an escalation as needed of risks to completing MAPs at their agreed delivery dates.
- Perform administrative activities in GRC Solution for compliance related activities.
- Provide administrative support for ad-hoc external audits.
- Provide administrative support for internal audits.
- Support compliance program reporting activities.
Requirements
- 3 years in Information Security field, with at least 2 years working in GRC.
- Experience with GRC tools (e.g., Archer).
- Knowledge of security concepts and methodologies such as risk assessments, risk & controls, policies & standards, enterprise security strategies, network, and cloud security.
- Knowledge of security frameworks such as CIS and NIST.
- Excellent written and verbal communications skills, including presentational skills and able to clearly communicate issues to management and other key stakeholders.
Benefits
- No Relocation support available
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard skills
risk assessmentcompliance testingrisk managementadministrative managementdocumentationaudit managementrisk acceptanceremediation activitiesGRCsecurity frameworks
Soft skills
written communicationverbal communicationpresentational skillsstakeholder communicationorganizational skills