Job Description

An exciting opportunity has arisen for a Senior Security Analyst to join the ASOS Governance Risk and Compliance (GRC) Team in Cyber Security.

Reporting to the Information Security, Governance, Risk and Compliance Manager, this role will assist in the development, enhancement and execution of ASOS’s information security risk and compliance function. This will include activities such as helping to maintain our compliance with the Payment Card Industry Data Security Standard (PCI DSS), maintenance of our security policies and standards, and managing third-party supplier risk. We’re passionate about protecting our colleagues and the ASOS brand, so we would love someone who can thrive and develop in an ever growing and changing security landscape.

You will need to operate at several different levels: from being a team player in the GRC team, working alongside the wider Cyber Security Team and helping other colleagues in all ASOS business areas with their risk and compliance requirements.

Key Responsibilities

Responsibilities include, although not limited to:

  • Management and maintenance of ASOS compliance projects and certifications (e.g. PCI DSS and ISO 27001), including co-ordination of internal audit activities
  • Assist in maintaining the CISO’s cyber security risk registers and conduct cyber security risk assessments/risk workshops as required
  • Management and tracking of corrective action plans for security audit findings, standards exceptions and control deficiencies
  • Supporting other Cyber Security Teams and ASOS business areas with their risk and compliance requirements
  • Authorship and maintenance of ASOS security policies and standards
  • Management and support for the security assessment of third-party suppliers using ASOS third-party risk management platform
     

What Success Looks Like

  • Being an integral member of the GRC Team to support the smooth running of GRC activities
  • Building effective relationships across ASOS business areas
  • Providing mentorship and guidance to junior GRC Team members
Type:
Permanent
Contract Length:
N/A
Job Reference:
406000228710678
Job ID:
1258000000000270661

Remember: You should never send cash or cheques to a prospective employer, or provide any financial information. Please get in touch if you see any roles asking for payments or financial details from you. For more information, visit jobsaware.co.uk.

Create new Job Alert

Create a new Job Alert to make sure you see the best new jobs first!

Your search has been saved and has been added to your Job Alerts