Senior GRC Analyst
Location: Greece (Remote)

We're looking for a Senior GRC Analyst to join a growing Information Security team as an individual contributor. You'll split your time between running risk assessments across third parties, applications and internal systems, and supporting the day-to-day running of the Governance, Risk and Compliance function, including two brand-new initiatives the team is building out.

Responsibilities
  • Run security risk assessments and cybersecurity posture reviews across third parties, applications and internal systems, turning findings into clear, actionable remediation plans.
  • Lead regular internal and business-facing workshops, communicating risk clearly to both technical and non-technical stakeholders.
  • Contribute to a new AI governance and security initiative — helping shape good AI use cases and, over time, taking ownership of AI-related risk issues.
  • Support the build-out of a new in-house IT risk assessment capability as the team scales its internal expertise.
  • Support third-party risk management (TPRM) activities where relevant.
  • Bring genuine technical security credibility to governance, policy and standards work across the function.
Requirements
  • A career built primarily in information security or cybersecurity, with GRC, risk or compliance experience layered on top 
  • Solid experience in IT risk assessment or wider risk management, ideally gained within a security context 
  • Exposure to third-party risk management (TPRM) 
  • Exposure to AI governance or AI security is a strong plus, though full training will be provided.