Apply on Cognism’s siteWHO ARE WE
Cognism is the leading provider of European B2B data and sales intelligence. Ambitious businesses of every size use our platform to discover, connect, and engage with qualified decision-makers faster and close more deals. Headquartered in London with global offices, Cognism’s contact data and contextual signals are trusted by thousands of revenue teams to eliminate the guesswork from prospecting. At Cognism, the security of our data, our systems and our clients' systems is a business priority. Information security is embedded in the way we work, and we are driving a culture where the fastest path is the securest path. As our Information Security team continues to mature, we are now hiring for a GRC Analyst to help us run and strengthen our governance, risk, and compliance programme.
Support operation of ISO 27001 and SOC 2 frameworks
Own evidence collection and control tracking
Take risk-based approach to all work
Work closely with Engineering, IT Operations, and Compliance
Build relationships that drive remediation closure
Grow your GRC career in data-intensive product environment.
Within 12 months, you will have
Become trusted owner of evidence and control monitoring across ISO 27001 and SOC 2
Built strong relationships enabling tracked remediation to closure
Applied risk-based lens to prioritise impactful gaps over low-value items
Improved at least one recurring security process for speed or efficiency
Developed working knowledge of AI security and control intersections
What You'll Own
Support day-to-day GRC programme operations including control monitoring and audit readiness
Maintain and improve documentation: policies, procedures, risk registers, control mappings
Support internal and external audits, questionnaires, vendor risk assessments
Take risk-based approach to prioritising work and effort allocation
Partner with Engineering, IT Operations, Compliance to track remediation closure
Build trusted relationships where teams bring problems early
Identify and implement process improvements for efficiency and automation
Stay current on emerging risks including AI-related exposures
Flag AI risk intersections with existing controls and programmes
What We Need
1-2 years experience in security, GRC, IT audit, or related risk function
Working knowledge of ISO 27001 and/or SOC 2 fundamentals
Detail-oriented: notice inconsistencies and gaps others miss
Process-driven: build and follow repeatable, well-documented processes
Strong written and verbal communication skills
Explain risk and compliance concepts to technical and non-technical audiences
Comfortable working across Engineering, IT Operations, and Compliance teams
Build trust and hold risk-based mindset in practice
Weigh likelihood and impact rather than treat all requirements equally
Comfortable with ambiguity and willing to ask questions
Curious about AI: risks, potential, and compliance applications
AI security and risk working knowledge is strong plus, not mandatory
Builder mentality: energised by bringing structure to processes
Pragmatic about sequencing and focused on outcomes over box-ticking
WHY COGNISM
At Cognism, we’re not just building a company - we’re building an inclusive community of brilliant, diverse people who support, challenge, and inspire each other every day . If you’re looking for a place where your work truly makes an impact , you’re in the right spot!
Our values aren’t just words on a page—they guide how we work, how we treat each other, and how we grow together. They shape our culture, drive our success, and ensure that everyone feels valued, heard, and empowered to do their best work.
Here’s what we stand for:
🤝 We Own the Outcome Together. 🤓 We Deeply Understand our Customers. 🏆 We Celebrate Impact Wherever It Comes From.
At Cognism, we are committed to fostering an inclusive, diverse, and supportive workplace. We welcome applications from individuals typically underrepresented in tech, so if this role excites you but you’re unsure if you meet every requirement, we encourage you to apply!
This role is published by Cognism on greenhouse. SwiftFit is not the employer and does not accept applications.