Junior Risk & Compliance Analyst

Sofia/Plovdiv

Reward Gateway

Boost engagement by simplifying and uniting employee recognition, rewards, communications and more in one easy-to-use employee engagement platform.

View all jobs at Reward Gateway

Apply now Apply later

Junior Risk & Compliance Analyst

Application Deadline: 3 March 2025

Department: Security

Employment Type: Full Time

Location: Sofia/Plovdiv

Reporting To: Head of Governance, Risk & Compliance

Compensation: лв.45,000 - лв.48,000 / year


Description

Reward Gateway, together with Edenred, is a global market leader in benefits and employee engagement. We help our clients and their leaders to transform employee experience that will attract, engage, and retain top talent through employee benefits, strategic reward and recognition, well-being, and much more.

An opportunity has become available for a Junior Risk & Compliance Analyst to support our Governance, Risk & Compliance, and Information Security operations and be part of a growing business. 

At Reward Gateway we already understand that Compliance and Security are paramount to our success and that’s reflected in the culture. Our Leadership Team is fully committed to Compliance and Information Security and you won’t have to spend your time convincing stakeholders to care - you’ll be empowered to get on with improving the company.

We have a longstanding ISO 27001 and PCI DSS programme and SOC2 Type II and Cyber Essentials Plus compliance. We are as of 2024 certified in ISO 9001, 14001, and 22301 as well. These standards structure everything we do and enable our business to grow by providing a high level of assurance to our customers.

Some of Your Responsibilities & Core Duties will be:

  • Support our control framework covering current ISO certifications, SOC 2 Type II, PCI DSS, Cyber Essentials Plus.
  • Ensure ISO readiness/compliance by supporting the GRC team in conducting periodic internal audits and participate in providing evidence for ISO registrar audits, Deloitte Information Security audits and Cyber Essentials Plus certifications.
  • Assist with analysis, documentation and remediation actions for detected audit observations via the company's Non-conformance process.
  • Support the Head of GRC and process owners in tracking timely updates of company processes and procedures.
  • Reporting on the status of completion of the yearly Information Security Training programme.
  • Maintain the compliance automation platform with up-to-date evidence from respective process owners for achieving streamlined compliance activities.
  • Support the Head of GRC and Risk Owners with the risk management process.

The Experience and Key Skills you will have:

  • At least 6+ months experience working in Information Security Compliance/Internal Audit within a multinational organisation.
  • Experience with a compliance framework (ISO27001, ISO 9001, ISO 22301, or SOC 2 Type II). You’re not expected to have expertise in ALL these frameworks.
  • Understanding of information security concepts and technology.
  • Previous exposure to cloud technologies and cloud security is beneficial.
  • Experience in Document Management (incl. Good Documentation Practices) and procedure review.
  • Excellent English communication skills.
  • Comfortable working across multiple projects, geographical locations, and assignments simultaneously.
  • Have a risk-based approach to problem-solving. 

The Interview Process:

  • A screening interview with the Senior Talent Partner.
  • Interview with the Head of Governance Risk & Compliance and the Risk & Compliance Analyst.
  • Final stage interview with the Director of Information Security and the Head of Governance Risk & Compliance.

Be comfortable. Be you.At Reward Gateway, we want all of our employees to feel comfortable bringing their passion, creativity and individuality to work. We value all cultures, backgrounds and experiences, as we truly believe that diversity drives innovation. Express yourself, join our community and help us Make the World a Better Place to Work.
We hire BETTER.  From perks to people, our BETTER approach to hiring earns us more trust, happier people and more world-class talent that help us to make the world a better place to work. Find out more about Reward Gateways approach to benefits, equality, talent, technology, empathy and what you’ll get in return for joining our Mission at rg.co/lifeatrg.
Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  4  2  0

Tags: Audits Automation Cloud Compliance Governance ISO 22301 ISO 27001 PCI DSS Risk management SOC SOC 2

Perks/benefits: Career development

Region: Europe
Country: Bulgaria

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.