Governance Risk & Compliance Specialist

·
Full time
Location: Manchester
·
Job offered by: Vix Technology
·
Vix Technology Vix is a global leader in automatic fare collection, transit information, and transit analytics solutions. See how we can transform your business today. Vix Technology, a global leader in automatic fare collection, transit information, and transit analytics solutions, is seeking a highly skilled and experienced Field Engineer. With a presence in over 200 city and regional transport authorities worldwide, Vix has been at the forefront of transforming fare collection for more than 35 years. At Vix, we are committed to solving problems and delivering innovative solutions that are revolutionizing the world of public transit. We are a global organisation at Vix - embracing the strength that individual diversity brings to the collective. Bring your individual orientation, cultural heritage and distinctive thinking and experience – we want to hear from you! The Role We are on the hunt for a suitably experienced Governance, Risk & Compliance Specialist to focus on supporting the greater organisation in maintaining compliance with regulatory requirements, managing corporate risk related to information security, and reviewing and aligning security governance policy across Vix and ICM Mobility. You'll need significant experience across the key responsibilities listed below to be successful. The role is located on-site in Manchester and requires on-site attendance Monday to Friday. Key Responsibilities: Assist in identifying, assessing, and mitigating risks related to IT security. Maintain risk registers and track the implementation of risk treatment plans. Support periodic risk assessments to identify potential threats to information security. Monitor and report on risk exposures. Ensure adherence to UK-specific regulations like the GDPR (General Data Protection Regulation), NIS Regulations, and Data Protection Act 2018. Conduct regular audits and assessments to ensure compliance with internal policies, regulatory requirements, and international standards such as ISO 27001. Assist in the preparation and submission of compliance reports. Support the development and implementation of IT security policies, procedures, and guidelines. Assist in reviewing and updating governance frameworks in alignment with regulatory and business requirements. Coordinate with various teams to ensure that governance practices are integrated into the organization’s daily operations. Assist in the investigation and reporting of IT security incidents. Track and report on the resolution of incidents to ensure proper documentation and follow-up. Support the delivery of IT security awareness programs and training to staff. Help in creating materials for cybersecurity training and communication efforts to ensure employees understand their responsibilities in maintaining security and compliance. Assist in evaluating the security risks associated with third-party vendors and suppliers. Help conduct due diligence and assessments on vendors, ensuring they meet security and compliance standards. Work closely with internal and external auditors to provide documentation and evidence of compliance. Assist in tracking and addressing audit findings, ensuring timely implementation of corrective actions. Assist in drafting, reviewing, and maintaining IT security policies and procedures. Help in the alignment of policies with business objectives and regulatory requirements. What You'll Bring To The Role: Essential: Understanding of Regulatory Frameworks: Familiarity with GDPR, NIS Regulations, and other UK-based IT security regulations. Knowledge of Risk Management: Basic knowledge of risk identification, assessment, and mitigation techniques. Attention to Detail: Ability to identify potential issues and track compliance activities. Technical Aptitude: Familiarity with IT security concepts, frameworks like ISO 27001, and general cybersecurity best practices. AWS experience and/or certification. Bachelor’s degree in Computer Science or IT. Exposure to Security Standards (PCI, ISO). Experience with audits or compliance enforcement. Penetration testing experience (Kali Linux). Experience with site-to-site VPNs, network design, VLANs, routing, NAT. Creating PCI digital keys or security access modules. Beyond technical capability, we are looking for someone familiar with matrix organisational structure who functions effectively in both geographically and technically dispersed domains. You'll naturally be a person of integrity who practices discretion and confidentiality, excellent communication and relationship management skills, flexibility, inquisitiveness and adaptability. What’s in it for you? Besides the opportunity to work for a global company that is customer and people focused, we offer: A focus on learning and development A great team of like-minded professionals Income Protection Scheme Pension Group Life Assurance Cycle to Work Scheme Electric Car Benefit Scheme Employee Assistance Programme Eyecare and Spectacle Vouchers Sounds good? Then apply now. Get on board today! Add your resume and anything else to showcase why you would be a great addition to our team. We regret that this position is only available for UK&I citizens/Residents with indefinite leave to remain in the UK&I, with current full time work rights for the United Kingdom, currently residing in the UK. No recruitment agencies, please! We won’t accept any introductions. Vix Technology is an Equal Opportunity Employer and prohibits discrimination and harassment of any kind. We are committed to the principle of equal employment opportunity for all people and want to build a workforce as diverse as the community we serve. We aim to have a work environment where everyone feels included and everyone can realise their full potential.

#J-18808-Ljbffr

Recent Jobs

London (On site) · Full time

Are you a smart, driven professional who takes pride in making a difference in local communities? Turner & Townsend’s Real Estate division is experiencing significant growth and we’re looking for an experienced industry professional with health project experience to join our high-performing and collaborative Project Management team. Why Join Us? Impactful Work: Contribute to social [...]Read More... from Assistant Project Manager – Healthcare See details

Chasetown (On site) · Full time

My client, Autosmart International are a manufacturing success story! Site Operations Manager – leading fast-paced manufacturing and warehousing About Our Client Autosmart International is a manufacturing success story, leading the field in vehicle cleaning products. We are the No.1 choice of automotive trade customers across the UK. We have doubled in size in the last [...]Read More... from Site Operations Manager See details

London (On site) · Full time

CSS are looking for an experienced duty officer to join our client’s team who are a local council responsible for all areas within the Tendering district. Working hours: All shifts are 8 hours long with various start times available: Monday to Friday – start times between 6AM – 3PM Saturday & Sunday – 6AM – [...]Read More... from Duty Officer See details