Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
JobTailor Logo

See all jobs on JobTailor

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Pleo

Staff GRC Analyst

Pleo

Staff GRC Analyst automating security governance and compliance for Pleo’s spend management platform. Building GRC workflows, evidence collection, control testing, and reporting.

Posted 8/24/2026full-timeRemote • 🇬🇧 United KingdomLeadWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in automating governance, risk, and compliance processes, with a strong focus on ISO 27001, PCI-DSS, and cloud architectures. Capable of translating compliance requirements into technical specifications while effectively communicating with both technical and non-technical stakeholders.

Highest-signal resume keywords
Security GRC ExperienceCloud Architecture UnderstandingAI And Coding AutomationRegulatory Compliance FamiliarityCISM, CISSP, CISA Certifications

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Governance Risk And Compliance AutomationCompliance Reporting AutomationControl TestingEvidence CollectionAudit ProcessesInfrastructure MappingGRC Workflow EngineeringCompliance Metrics ReportingTechnical Specification TranslationDashboards Development
Soft Skills
CollaborationCommunicationStakeholder EngagementProject CoordinationProblem Solving
Tools & Technologies
Ticketing SystemsAsset Management PlatformsIdentity Management SystemsCloud PlatformsCompliance Tools
Certifications & Qualifications
CISMCISSPCISAPCI-Related Credentials
Industry Keywords
FintechPayments IndustryCybersecurityRegulatory ExpectationsAudit Cycles

Tech Stack

Tools & technologies
AWSCloudCyber Security

About the role

Key responsibilities & impact
  • Automate legacy governance, risk, and compliance systems for ISO 27001, PCI-DSS, DORA, UK Cyber Essentials, and relevant financial services regulations
  • Engineer GRC workflows integrating ticketing, asset management, identity, and cloud platforms
  • Design and build scalable GRC architectures and automation for evidence collection, control testing, and compliance reporting
  • Draft, review, and maintain security policies mapped to relevant control standards
  • Automate incoming customer and prospect security requests, questionnaires, review calls, and documentation
  • Automate third-party vendor assessments and track resolution of compliance and security gaps
  • Automate compliance metrics and KPI reporting for leadership visibility
  • Translate compliance requirements into technical specifications for engineering teams
  • Explain compliance topics to non-technical stakeholders
  • Coordinate complex, multi-team workstreams, dependencies, priorities, and delivery
  • Contribute to broader Cybersecurity team initiatives and shared goals
  • Report to the VP of Fraud & Security and collaborate with Risk and Compliance, Procurement, Legal, Finance, Engineering, and other teams

Requirements

What you’ll need
  • Significant experience in Security GRC
  • Understanding of auditing processes
  • Direct experience with both internal and external audit cycles
  • Demonstrated experience using AI and/or coding automation to build, implement, and operate controls
  • Strong understanding of cloud architectures, including AWS or equivalent
  • Experience mapping infrastructure decisions to security controls and audit evidence
  • Experience automating reporting for GRC programs, including dashboards and executive-level summaries
  • Fintech, payments industry, or IT audit background
  • Familiarity with regulatory expectations and payment platform architectures
  • Certifications such as CISM, CISSP, CISA, or PCI-related credentials
  • Degree in Cybersecurity, Engineering, Computer Science, Mathematics, or equivalent experience is a plus
  • Ability to work closely with colleagues without engineering backgrounds
  • Application must be submitted in English
  • Must be physically based in the chosen country with a valid right to work
  • Visa sponsorship is not available

Benefits

Comp & perks
  • Your own Pleo card
  • Catered meals or a lunch allowance based on your local office
  • Comprehensive private healthcare, with coverage options including Vitality, Alan or Médis depending on location
  • 25–28 days of holiday depending on location, plus public holidays
  • Hybrid and fully remote working options
  • Option to purchase 5 additional days of holiday through salary sacrifice
  • Free mental health and well-being support through MyndUp
  • Paid parental leave
  • Career development opportunities, including bigger projects, leadership opportunities, and acquiring new skills