Job Details

Information Security
On-site
Full time
Apr 8

ICT GRC Analyst

KoronaPay is seeking an ICT GRC Analyst for their fintech company in Limassol, Cyprus. The role involves supporting ICT compliance, security governance, and operational resilience activities. Full-time, office-based position.

KoronaPay is a European fintech company operating in a regulated environment and we are looking for a hands-on ICT GRC Analyst to support the day-to-day execution of ICT compliance, security governance, and operational resilience activities. Responsibilities -Maintain and support control documentation. -Collect, organize, and validate evidences for internal controls, audits, compliance initiatives, and regulatory readiness activities. -Support activities related to DORA and other applicable ICT/security governance requirements. -Prepare materials and evidence packs for internal audits, external audits, due diligence requests, and other assessments. -Track documentation and records related to change management, access reviews, backup checks, resilience testing, exceptions, and other governance processes. -Support risk and issue management processes. -Assist with vendor and outsourcing governance activities. -Support policy lifecycle activities. -Prepare recurring reporting materials, dashboards, and governance summaries for the CISO and internal stakeholders. -Support post-incident follow-up activities.

-2-3+ years of experience in ICT compliance, security GRC, IT audit, IT risk, operational risk, or a similar control-focused role. -Practical experience with evidence collection, audit support, control documentation, registers, and action tracking. -Understanding of IT/security controls and structured governance processes. -Good organizational skills and strong attention to detail. -Ability to work across multiple teams and follow up on action items consistently. -Good written English communication skills. Nice to have -Experience in fintech, payments, banking, or another regulated environment. -Familiarity with DORA, NIS2, GDPR, ISO 27001, NIST, COBIT, and ITIL/ITSM. -Experience supporting audits, vendor governance, outsourcing records, or resilience-related activities. -Experience with Jira, Confluence, Excel, or GRC tools. -Exposure to business continuity, disaster recovery, incident governance, or operational resilience processes.

The position does not offer remote work, the work format is office-based in Limassol.

Cyprus
compliance
GRC
NIST
COBIT
Security Governance
DORA
Jira
Confluence
IT Audit
ISO 27001
ITIL

Don't miss a single job

Subscribe to our Telegram channel

Subscribe

Similar jobs

IT Asset Accountant

GC EFKO is looking for an IT Asset Accountant in Moscow or Tolyatti. Full-time position. Skills: Microsoft Word, Microsoft Excel, Data Analysis, 1C:ERP, Literacy, Teamwork.

Russia
G
GC EFKO

IT Director / Head of IT Department

IT Director role focusing on digital transformation (ERP, AI) and strategic IT infrastructure management. Responsibilities include team management, IT infrastructure development, project management, vendor coordination, budget control, and IT strategy formulation. Requires 7+ years of IT leadership experience, broad technical knowledge, and experience with ERP, AI solutions, and Bitrix24. Location: Moscow.

Russia
К
Квант

System Analyst (Information Security)

Company InfoTeCS is looking for a System Analyst (Information Security) in Penza, Russia. Full-time position. Skills: middle, BPMN, UML, System Analysis.

Russia
I
Infotecs