Cyber Security Analyst
Il y a 3 mois
Luxembourg
CSC
Temps plein
Gratuit avec email ou Google
Enregistrez cette offre et organisez votre recherche
Créez un compte gratuit pour enregistrer des offres d'emploi, créer des alertes et revenir à cette liste depuis votre tableau de bord.
Gratuit avec email ou Google
En continuant, vous acceptez nos Conditions d’utilisation & Politique de confidentialité.
Cyber Security Analyst – Audit
Luxembourg OR Amsterdam, Netherlands
Monday – Friday 8:00 am – 5:00 pm OR 9:00 am – 6:00 pm
Hybrid
Position Summary
We are seeking a Cybersecurity GRC Data and Reporting Analyst to manage the preparation, analysis, validation, and maintenance of technology controls, compliance and audit data within the organization’s GRC platform.
Operating within the first line of defense, this role consolidates data from approved business and technology sources and transforms it into accurate, consistent, and actionable information in the GRC platform. The Data Analyst will maintain datasets, dashboards, metrics, data dictionaries, and management reports while identifying opportunities to improve data quality, standardize reporting, and automate manual processes.
The role will also support Information Technology audits and regulatory examinations, including SOC 1, SOC 2, ISAE 3402, and ISO 27001. Responsibilities include coordinating data and evidence requests, validating submissions, maintaining audit records, monitoring deliverables, supporting remediation, and conducting pre-audit readiness assessments.
The role works closely with auditors, control owners, technology teams, and business stakeholders. The ideal candidate has two to four years of experience in data analytics, business intelligence, GRC data management, cybersecurity, technology risk, compliance, or IT audit support.
Essential Job Duties
• Collect, consolidate, cleanse, map, and analyze technology risk, compliance, control, evidence, issue, and audit data.
• Translate complex datasets and technical risks into clear, actionable business insights.
• Define and document data attributes, ownership, source systems, formats, validation rules, and reporting requirements.
• Validate data for accuracy, completeness, consistency, relevance, timelines and appropriate approval.
• Perform post-upload validation and reconcile GRC records against approved source data.
• Maintain data dictionaries, data mappings, reporting definitions, evidence standards, and audit records.
• Identify opportunities to standardize and automate data collection, validation, reconciliation, reporting, and evidence tracking.
• Identify opportunities to automate and standardize data collection, validation, reconciliation, reporting, and evidence tracking.
• Leverage GRC and reporting tools for data management, audit tracking, dashboards, and management reporting.
• Partner with global teams across Technology, Cybersecurity, Risk, Compliance, Legal, Internal Audit, and business operations.
• Support internal, external, and jurisdictional IT audits by coordinating evidence requests, walkthroughs, deadlines, and stakeholder communications.
• Track audit requests, findings, remediation actions, auditor feedback, and regulatory deliverables.
• Collect audit evidence from control owners and validate its accuracy, completeness, relevance, and approval before submission.
• Conduct pre-audit readiness assessments to identify control, documentation, and evidence gaps before formal testing.
• Work with business and technology owners to obtain corrected or remediated evidence.
• Improve IT compliance processes and identify automation opportunities for control activities.
• Maintain and enhance control frameworks aligned with regulatory and industry standards.
• Track and report compliance metrics and program effectiveness indicators.
• Respond to regulatory and jurisdictional requests for technology risk, control, and audit data. Qualification and Core Skills
• Bachelor’s degree in Computer Science, Information Technology, MIS, Data Analytics or related field (or equivalent experience).
• 2 to 4 years of experience in data analytics, business intelligence, technology reporting, GRC data management, IT audit, risk management, or cybersecurity.
• Demonstrated experience in data collection, cleansing, mapping, transformation, validation, reconciliation, analysis, and reporting.
• Strong spreadsheet and data-manipulation skills;
• Strong knowledge of Global regulatory frameworks such as SOX, GDPR, ISO, DORA, PCI, PSD2 and NIST.
• Familiarity with audit standards and frameworks (SOC 1 & 2, ISO 27001, NIST, COSO, COBIT).
• Knowledge of modern technologies including cloud, DevOps, application security, and AI.
• Experience working with/ customizing GRC tools (e.g., Archer, OneTrust, AuditBoard, Diligent).
• Strong analytical, communication, and problem-solving skills.
• Proactive approach towards available work requests and timely response.
• Ability to translate technical risks into business insights. Additional Qualifications
• Hands-on experience in IT disciplines and audit execution.
• Experience in global and multi-regulatory environments.
• Strong attention to detail and commitment to data accuracy and integrity.
• Ability to manage complex compliance requirements across jurisdictions.
• Strong organizational and proactive risk management skills.
• High integrity, accountability, and professional excellence. Certification Requirements
• Data analytics, Power BI, business intelligence, data management, or GRC-platform certifications.
• CISSP, CISM, CRISC, CISA, CIA, or other relevant cybersecurity, audit, or risk certifications. At CSC, compensation depends on several factors, including job location and the knowledge and experience of each individual. A reasonable estimate of the current range is €45,000
- €80,000. #CSC #CSCCareers #LI-HL1 CSC is a global business, legal, and financial services company based in Wilmington, Delaware, USA, providing knowledge-based solutions to clients worldwide. We have offices and capabilities in over 140 jurisdictions in the Americas, Europe, Asia Pacific, and the Middle East, and more than 8,000 colleagues. We are the business behind business.® Visit our careers site to learn more about CSC and our commitment to our clients, communities, and each other. CSC is committed to creating a feeling of belonging through a diverse and growth-oriented environment where everyone is valued. CSC colleagues have global career opportunities and excellent benefits, including annual success-sharing bonuses or commission plans based on individual performance. To learn more, visit cscglobal.com/service/careers.
We offer
a range of support to colleagues with disabilities, ensuring people have the necessary resources to thrive in their roles. We encourage candidates to work closely with our talent acquisition partners to convey their specific needs. Our commitment to accessibility reflects our broader dedication to diversity and belonging, CSC only accepts resumes from employment agencies that are part of our approved supplier program. Resumes submitted from other agencies either to talent acquisition, our hiring leaders, employees, or through any other mechanism other than our supplier process, will not be eligible to claim related fees and the submitted resumes will be considered property of CSC. We encourage candidates to apply directly to our website and not through third-party sources. Disclaimer: The information above describes the general nature and level of work performed by employees in this role. It is not intended to describe all duties, responsibilities, and qualifications. At CSC®, we’re always looking ahead, finding ways to innovate, challenge the status quo, and anticipate the needs of our clients. We exceed expectations by adapting client ambitions and goals as our own. This Fierce Client Spirit has helped us adapt and create solutions that have enabled businesses to run smoother and smarter for more than 125 years. It’s also the reason we’re the trusted partner of many of the world’s most successful organizations. CSC is committed to attracting, developing, and retaining talented people whose values align with ours. We empower our colleagues to bring the right solutions to market to meet client demand. That’s why we are the leading provider of business administration and compliance solutions.
• CSC is a great place to work with smart and dedicated people.
• We have won several employer recognition awards, including Top Workplace USA, Great Places to Work India, and Built In’s Best Places to Work.
•
We offer
fulfilling work and career opportunities. Most positions are filled with internal moves and employee referrals.
• Employees are eligible for Success Sharing, bonuses, or commission plans based on role and individual performance.
• CSC offers a competitive and comprehensive benefits package that includes annual leave, tuition reimbursement, referral bonuses, and more.
• As business needs allow, CSC offers hybrid or remote work schedules in alignment with local regulations. Specific details for this position will be discussed during the interview process.
• Collect, consolidate, cleanse, map, and analyze technology risk, compliance, control, evidence, issue, and audit data.
• Translate complex datasets and technical risks into clear, actionable business insights.
• Define and document data attributes, ownership, source systems, formats, validation rules, and reporting requirements.
• Validate data for accuracy, completeness, consistency, relevance, timelines and appropriate approval.
• Perform post-upload validation and reconcile GRC records against approved source data.
• Maintain data dictionaries, data mappings, reporting definitions, evidence standards, and audit records.
• Identify opportunities to standardize and automate data collection, validation, reconciliation, reporting, and evidence tracking.
• Identify opportunities to automate and standardize data collection, validation, reconciliation, reporting, and evidence tracking.
• Leverage GRC and reporting tools for data management, audit tracking, dashboards, and management reporting.
• Partner with global teams across Technology, Cybersecurity, Risk, Compliance, Legal, Internal Audit, and business operations.
• Support internal, external, and jurisdictional IT audits by coordinating evidence requests, walkthroughs, deadlines, and stakeholder communications.
• Track audit requests, findings, remediation actions, auditor feedback, and regulatory deliverables.
• Collect audit evidence from control owners and validate its accuracy, completeness, relevance, and approval before submission.
• Conduct pre-audit readiness assessments to identify control, documentation, and evidence gaps before formal testing.
• Work with business and technology owners to obtain corrected or remediated evidence.
• Improve IT compliance processes and identify automation opportunities for control activities.
• Maintain and enhance control frameworks aligned with regulatory and industry standards.
• Track and report compliance metrics and program effectiveness indicators.
• Respond to regulatory and jurisdictional requests for technology risk, control, and audit data. Qualification and Core Skills
• Bachelor’s degree in Computer Science, Information Technology, MIS, Data Analytics or related field (or equivalent experience).
• 2 to 4 years of experience in data analytics, business intelligence, technology reporting, GRC data management, IT audit, risk management, or cybersecurity.
• Demonstrated experience in data collection, cleansing, mapping, transformation, validation, reconciliation, analysis, and reporting.
• Strong spreadsheet and data-manipulation skills;
• Strong knowledge of Global regulatory frameworks such as SOX, GDPR, ISO, DORA, PCI, PSD2 and NIST.
• Familiarity with audit standards and frameworks (SOC 1 & 2, ISO 27001, NIST, COSO, COBIT).
• Knowledge of modern technologies including cloud, DevOps, application security, and AI.
• Experience working with/ customizing GRC tools (e.g., Archer, OneTrust, AuditBoard, Diligent).
• Strong analytical, communication, and problem-solving skills.
• Proactive approach towards available work requests and timely response.
• Ability to translate technical risks into business insights. Additional Qualifications
• Hands-on experience in IT disciplines and audit execution.
• Experience in global and multi-regulatory environments.
• Strong attention to detail and commitment to data accuracy and integrity.
• Ability to manage complex compliance requirements across jurisdictions.
• Strong organizational and proactive risk management skills.
• High integrity, accountability, and professional excellence. Certification Requirements
• Data analytics, Power BI, business intelligence, data management, or GRC-platform certifications.
• CISSP, CISM, CRISC, CISA, CIA, or other relevant cybersecurity, audit, or risk certifications. At CSC, compensation depends on several factors, including job location and the knowledge and experience of each individual. A reasonable estimate of the current range is €45,000
- €80,000. #CSC #CSCCareers #LI-HL1 CSC is a global business, legal, and financial services company based in Wilmington, Delaware, USA, providing knowledge-based solutions to clients worldwide. We have offices and capabilities in over 140 jurisdictions in the Americas, Europe, Asia Pacific, and the Middle East, and more than 8,000 colleagues. We are the business behind business.® Visit our careers site to learn more about CSC and our commitment to our clients, communities, and each other. CSC is committed to creating a feeling of belonging through a diverse and growth-oriented environment where everyone is valued. CSC colleagues have global career opportunities and excellent benefits, including annual success-sharing bonuses or commission plans based on individual performance. To learn more, visit cscglobal.com/service/careers.
We offer
a range of support to colleagues with disabilities, ensuring people have the necessary resources to thrive in their roles. We encourage candidates to work closely with our talent acquisition partners to convey their specific needs. Our commitment to accessibility reflects our broader dedication to diversity and belonging, CSC only accepts resumes from employment agencies that are part of our approved supplier program. Resumes submitted from other agencies either to talent acquisition, our hiring leaders, employees, or through any other mechanism other than our supplier process, will not be eligible to claim related fees and the submitted resumes will be considered property of CSC. We encourage candidates to apply directly to our website and not through third-party sources. Disclaimer: The information above describes the general nature and level of work performed by employees in this role. It is not intended to describe all duties, responsibilities, and qualifications. At CSC®, we’re always looking ahead, finding ways to innovate, challenge the status quo, and anticipate the needs of our clients. We exceed expectations by adapting client ambitions and goals as our own. This Fierce Client Spirit has helped us adapt and create solutions that have enabled businesses to run smoother and smarter for more than 125 years. It’s also the reason we’re the trusted partner of many of the world’s most successful organizations. CSC is committed to attracting, developing, and retaining talented people whose values align with ours. We empower our colleagues to bring the right solutions to market to meet client demand. That’s why we are the leading provider of business administration and compliance solutions.
• CSC is a great place to work with smart and dedicated people.
• We have won several employer recognition awards, including Top Workplace USA, Great Places to Work India, and Built In’s Best Places to Work.
•
We offer
fulfilling work and career opportunities. Most positions are filled with internal moves and employee referrals.
• Employees are eligible for Success Sharing, bonuses, or commission plans based on role and individual performance.
• CSC offers a competitive and comprehensive benefits package that includes annual leave, tuition reimbursement, referral bonuses, and more.
• As business needs allow, CSC offers hybrid or remote work schedules in alignment with local regulations. Specific details for this position will be discussed during the interview process.