Skip to content

Open nowPosted 48 days ago

GRC Consultant

Workable (global search)108,016 open roles

Where
Nicosia, Cyprus
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowGRC ConsultantWorkable (global search) · Nicosia, Cyprus
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on Workable (global search)'s own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

7.9% of postings close within 7 days. Measured by our own scanner across the market. Workable (global search) postings stay open a median of 7 days.

Share of postings closed within
  1. 1.6%1 day
  2. 3.6%3 days
  3. 7.9%7 days
  4. 14.9%14 days
  5. 34.0%30 days
This job: posted 48 days ago

Workable (global search) median: 7 days open

The posting

We are looking for a motivated and knowledgeable GRC Consultant to join our team in Nicosia, Cyprus, and support our customers in strengthening their Governance, Risk, and Compliance frameworks.

The ideal candidate will contribute to the delivery of consulting projects related to information security governance, risk management, regulatory compliance, business continuity, and information security management systems. The role involves assessing customer environments, identifying gaps, developing policies and procedures, and supporting organizations in achieving and maintaining compliance with regulatory requirements and international standards.

Responsibilities

  • Participate in GRC consulting projects related to Information Security Management, Risk Management, Business Continuity, Information Classification, Security Awareness, and Regulatory Compliance
  • Conduct gap assessments against applicable standards and regulatory frameworks, including ISO/IEC 27001, ISO 22301, PCI DSS, GDPR, NIS2, and other relevant requirements
  • Support the implementation and continuous improvement of Information Security Management Systems (ISMS) and other management systems
  • Perform information security and business risk assessments, identify risks and control gaps, and provide practical recommendations for remediation
  • Develop and review policies, procedures, standards, risk registers, controls, and other GRC-related documentation
  • Conduct interviews and workshops with customer stakeholders to understand business processes, security requirements, and compliance needs
  • Prepare high-quality project deliverables, including assessment reports, gap analyses, risk assessments, compliance documentation, and management presentations
  • Support customers in preparing for internal and external audits and certification activities
  • Monitor developments in cybersecurity regulations, standards, and industry best practices and support their integration into customer projects
  • Contribute to the development and standardization of internal GRC methodologies, templates, tools, and consulting practices
  • Collaborate with technical cybersecurity teams to ensure that governance and compliance requirements are appropriately translated into technical and organizational controls
  • Participate in pre-sales activities, including customer meetings, requirements gathering, project scoping, effort estimation, and preparation of proposals and Statements of Work (SOWs)
  • Follow up on project actions and identified issues, collaborating with internal teams and customer stakeholders to support their successful resolution

Requirements

  • University degree in IT, Cybersecurity, Computer Science, Risk Management, or a related field, with 2+ years of relevant experience in GRC, information security, cybersecurity consulting, risk management, or compliance
  • Experience with standards and frameworks such as ISO/IEC 27001, ISO 22301, PCI DSS, GDPR, NIS2, or similar, combined with a good understanding of risk management, security controls, and cybersecurity best practices
  • Strong analytical, problem-solving, communication, presentation, and technical writing skills, with the ability to work effectively with both technical and business stakeholders
  • Strong organizational skills, adaptability, and the ability to manage multiple tasks and projects within deadlines
  • Good command of the Greek language (minimum B2 level), unless the candidate is a graduate of Cypriot or Greek educational institution
  • Advanced proficiency in English
  • Relevant postgraduate studies or certifications such as CISA, CISM, CISSP, CRISC, ISO 27001 Lead Auditor, or Lead Implementer will be considered an advantage

Benefits

  • Private Health Insurance
  • Private Pension Plan
  • Training & Development
  • Performance Bonus
  • Laptop
  • Phone - Mobile Plan
From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against Workable (global search)'s own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on Workable (global search)'s form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    Workable (global search)'s answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.