Overview

IT Governance, Risk & Compliance (GRC) Specialist Jobs in Rosebank at Cartrack

A bit about us
This organisation needs no introduction and is recognised as a key leader in the mobility Software-as-a-Service sector. The culture is demanding, but for individuals with a proactive mindset and strong attention to detail, the opportunities for growth and development are significant. The business is committed to investing in its people and maintaining high standards across governance, compliance and security practices.

If you are driven, analytical and looking to advance your career within IT Governance, Risk & Compliance (GRC), Information Security Compliance or Audit, this role offers excellent progression opportunities in a fast paced and evolving environment.

To be successful in this role, you will require a solid understanding of IT governance, risk management, compliance frameworks, audit processes and information security principles, with experience in ISO 27001, SOX, local and international audits, policy development, control frameworks and regulatory compliance being highly advantageous. Exposure to cybersecurity, Linux environments, networking and security operations would be beneficial, particularly within Software-as-a-Service (SaaS) environments.

You want to:

  • Ensure compliance with local, national and international regulations, frameworks and standards including ISO 27001, SOX, NIST and relevant privacy regulations
  • Support and manage internal and external IT audits, ensuring readiness, evidence collection and remediation tracking
  • Develop, maintain and improve IT governance structures, policies, procedures and controls
  • Conduct risk assessments, control reviews and gap analyses, recommending remediation plans
  • Monitor adherence to information security policies, governance frameworks and regulatory obligations
  • Drive implementation and maintenance of security and compliance controls across infrastructure, networks and business systems
  • Coordinate ISO 27001 certification activities, control testing and continuous improvement initiatives
  • Support audit findings remediation, ensuring corrective actions are implemented and tracked
  • Ensure effective governance, risk and compliance (GRC) processes are embedded across technology teams
  • Work with stakeholders to strengthen risk management frameworks and security maturity
  • Assist with third party/vendor risk assessments and compliance reviews
  • Maintain documentation for policies, standards, controls, risk registers and audit evidence
  • Support incident reviews to ensure alignment with governance requirements and regulatory obligations
  • Keep updated on changes in security regulations, standards and compliance requirements
  • Educate stakeholders on security governance, compliance responsibilities and best practices
  • Collaborate with IT, Security and Business teams to ensure governance objectives align with operational delivery

You have:

  • Bachelor’s degree or equivalent in IT, Computer Science, Information Systems or related field preferred
  • Strong understanding of IT Governance, Risk & Compliance (GRC) principles
  • Experience with ISO 27001 implementation, maintenance or audit support
  • Knowledge of SOX controls, IT General Controls (ITGCs) and compliance requirements
  • Experience supporting local and international audits
  • Understanding of risk management frameworks, control environments and governance structures
  • Experience creating and maintaining policies, standards, procedures and audit documentation
  • Familiarity with security frameworks including ISO27001, NIST and CIS
  • Experience in control testing, remediation tracking and audit evidence gathering
  • Knowledge of privacy regulations and regulatory compliance requirements
  • Understanding of security operations, incident response and risk management
  • Exposure to Linux, Windows, networking and SIEM platforms would be advantageous rather than essential
  • Understanding of infrastructure and cloud environments beneficial
  • Strong reporting, stakeholder engagement and documentation skills
  • IT GRC Specialist experienced in using AI enabled platforms to enhance audit insights, streamline compliance tracking, and support data driven risk decisions.
  • Ability to interpret technical controls and translate them into governance and compliance requirements
  • Relevant certifications advantageous: ISO 27001 Lead Implementer/Auditor, CISA, CRISC, COBIT, Security+, ITIL

Work Location: In person

Title: IT Governance, Risk & Compliance (GRC) Specialist

Company: Cartrack

Location: Rosebank

 

Upload your CV/resume or any other relevant file. Max. file size: 800 MB.