GRC Analyst + (Data Analyst)

  • Contract

Company Description

Our client, a fast startup, is based in Essex, London. They are an international healthcare company that offers authorised and proper Fit-to-Fly COVID Testing and Certificates for Travel. The company is a digital health-tech company established by a core group of medical and technology professionals who aspire to help the country in its economic recovery in the midst of the COVID-19 pandemic.

Job Description

Purpose of the Role:
To administer compliance monitoring plan and carry out reviews across the business to ensure key procedures in relation to both regulatory and non-regulatory work are being adhered to.

The prospective analyst will report to the Head of Risk and Compliance, and work closely with the compliance managers based in London, United Kingdom.

Key Responsibilities:
Work with the Head of Risk and Compliance and the compliance Managers to create a comprehensive monitoring plan for all key procedures within the business.

Assist to produce and administer a regular testing programme of procedures on a biannual rolling basis.

Support to produce a standard reporting format for monitoring reviews to be used in board reports.

Carry out reviews as agreed in the testing programme.

Report findings to the Head of Risks and Compliance and Compliance Managers.

Acknowledge remediation work, support and monitor completion of same.

Report regularly to the Head of Risk and Compliance.

Support the Head of Risk and Compliance with ad-hoc projects when required.

Reporting Line:
The prospective job holder will report directly to the Head of Risk & Compliance with dotted reporting lines to the Compliance Managers in London, United Kingdom.

Key Competencies:
Practical experience operating within a risk management environment.

Involvement with monitoring programmes and carrying out reviews testing adherence to laid down procedures.

Good working knowledge of Microsoft Excel and Word packages and preferably Sharepoint.

Support internal and external audit process for relevant compliance concerns including PCI-DSS, SOX, GDPR, Point of care testing (POCT) etc.

Assist in preparing analysis reports for the stakeholders to understand the data-analysis steps, enabling them to take important decisions based on various facts and trends.

Qualifications

Professional qualifications such CRISC & ISO 27005 or 31000 certification, and proficiency in GRC automation, visualisation, reporting, and  integration tools, such as Fusion Framework, ServiceNow, Enablon, RiskRate, and Compliance 360, will be an added advantage.

Additional Information

Experience in health, with appreciation of UK healthcare regulations will be an added advantage.