Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy, and consent to receive emails from Rise
Jobs / Job page
Security GRC Analyst (UK Remote) image - Rise Careers
Job details

Security GRC Analyst (UK Remote)

Company Description

Jobs for Humanity is collaborating with TurnItIn to build an inclusive and just employment ecosystem. We support individuals coming from all walks of life.

Company Name: TurnItIn

Job Description

Company Description

When you join Turnitin, you'll be welcomed into a company that is a recognized innovator in the global education space. For over 25 years, Turnitin has partnered with educational institutions to promote honesty, consistency, and fairness across all subject areas and assessment types. Over 21,000 academic institutions, publishers, and corporations use our services: Feedback Studio, Originality, Gradescope, ExamSoft, Similarity, and iThenticate.

Experience a remote-centric culture that empowers you to work with purpose and accountability in a way that best suits you, supported by a comprehensive package that prioritizes your overall well-being. Our diverse community of colleagues are all unified by a shared desire to make a difference in education.

Turnitin is a global organization with team members in over 35 countries including the United States, Mexico, United Kingdom, Australia, Japan, India, and the Philippines.

Job Description

Turnitin is seeking an experienced Security GRC Analyst to join our Security & Compliance team. The Sr Security GRC Analyst will be responsible for ensuring that our information and cloud systems comply with relevant regulatory frameworks, industry standards, and internal policies. They will also collaborate with various departments, monitor compliance, conduct assessments, and support initiatives to identify and mitigate risks.

We are looking for someone who brings strong analytical ability, attention to detail, effective communication, compliance experience, and the willingness to continuously learn. This role requires hands-on work, critical thinking and the ability to find new solutions for compliance. 

This role reports to the GRC Information Security Manager.

Responsibilities: 

  • Maintain compliance tracking capabilities to help ensure adherence with Turnitin’s security program and industry standards such as NIST CSF, NIST 800-53, SOC 2, TX-RAMP and PCI DSS.
  • Conduct risk and compliance assessments, audits, and risk evaluations to identify potential risk and compliance gaps.
  • Lead preparation and audit activities required to maintain our SOC 2 Type 2.
  • Collaborate with internal teams and external auditors for audit and compliance reviews.
  • Collaborate with sales and customer support teams to respond to security questionnaires and security posture questions from customers.
  • Support TPRM Program and conduct third-party risk assessments.
  • Complete user access reviews.
  • Administration of GRC platform.
  • Participate in the development and documentation of security policy, standards and processes to align with company information security strategy.
  • Provide security awareness and phishing training for employees and promote a culture of security and compliance.
  • Coordinate phish testing.
  • Collaborate with DevOps, IT, Legal, Engineering, People Team, and other departments to ensure security control and policy requirements are integrated into systems and business processes.
  • Provide input on ways to improve and automate team processes.

Qualifications
  • Bachelor’s degree in Computer Science, Information Security, or a related field (or equivalent experience).
  • 3+ years of experience in a role related to Information Security or Cybersecurity Compliance.
  • Professional certification such as CCSK, AWS Cloud Practitioner, or other related industry certification.
  • Familiarity with cybersecurity frameworks and regulatory standards such as NIST, SOC 2, TX-RAMP, and PCI DSS.
  • Familiarity of risk management and security best practices.
  • Experience with assessing security controls, risk mitigation strategies, and audit procedures.
  • Understanding of concepts related to AWS Cloud Infrastructure and security.
  • Experience conducting security impact analysis for system changes.
  • Experience conducting periodic internal security reviews or risk assessments to ensure that compliance procedures and technical configurations are followed.
  • Experience conducting third-party risk assessments.
  • Contract review experience for security requirements.
  • Highly organized and proactive individual capable of managing multiple responsibilities and delivering results. 

Preferred Skills:

  • Experience running SOC 2 audits or NIST based authorizations.
  • Experience using Jira and Confluence for project and task management.
  • Hands-on experience with Wiz, KnowBe4, and Hyperproof.
  • Experience conducting third-party risk assessments.
  • Demonstrated knowledge of security assessment of cloud technology and services (AWS).
  • Entry level cybersecurity certification such as Security+, GIAC GSEC, or ISC2 Certified in Cybersecurity.

Additional Information

Total Rewards @ Turnitin
Turnitin maintains a Total Rewards package that is competitive within the local job market. People tend to think about their Total Rewards monetarily — solely as regular pay plus bonus or commission. This is what they earn in exchange for what they do. However, Turnitin delivers more than just these components. Beyond the intrinsic rewards of unleashing your potential to positively impact global education, and thriving in an organization that is free of politics and full of humble, inclusive and collaborative teammates, the extrinsic rewards at Turnitin include generous time off and health and wellness programs that offer choice and flexibility and provide a safety net for the challenges that life presents from time to time. Experience a remote-centric culture that empowers you to work with purpose and accountability in a way that best suits you, supported by a comprehensive package that prioritizes your overall well-being.

Our Mission is to ensure the integrity of global education and meaningfully improve learning outcomes.

Our Values underpin everything we do.

  • Customer Centric - We realize our mission to ensure integrity and improve learning outcomes by  putting educators and learners at the center of everything we do.
  • Passion for Learning - We seek out teammates that are constantly learning and growing and build a workplace which enables them to do so.
  • Integrity - We believe integrity is the heartbeat of Turnitin. It shapes our products, the way we treat each other, and how we work with our customers and vendors.
  • Action & Ownership - We have a bias toward action and empower teammates to make decisions.
  • One Team - We strive to break down silos, collaborate effectively, and celebrate each other’s successes.
  • Global Mindset - We respect local cultures and embrace diversity. We think globally and act locally to maximize our impact on education.

Global Benefits

  • Remote First Culture
  • Health Care Coverage*
  • Education Reimbursement*
  • Competitive Paid Time Off 
  • 4 Self-Care Days per year
  • National Holidays*
  • 2 Founder Days + Juneteenth Observed
  • Paid Volunteer Time*
  • Charitable contribution match*
  • Monthly Wellness or Home Office Reimbursement/*
  • Access to Modern Health (mental health platform)
  • Parental Leave*
  • Retirement Plan with match/contribution*

* varies by country

Seeing Beyond the Job Ad
At Turnitin, we recognize it’s unrealistic for candidates to fulfill 100% of the criteria in a job ad.  We encourage you to apply if you meet the majority of the requirements because we know that skills evolve over time. If you’re willing to learn and evolve alongside us, join our team!

Turnitin, LLC is committed to the policy that all persons have equal access to its programs, facilities and employment. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.

Jobs for Humanity Glassdoor Company Review
5.0 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
Jobs for Humanity DE&I Review
5.0 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of Jobs for Humanity
Jobs for Humanity CEO photo
Unknown name
Approve of CEO

Average salary estimate

$70000 / YEARLY (est.)
min
max
$60000K
$80000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Security GRC Analyst (UK Remote), Jobs for Humanity

Are you ready to take your career to the next level as a Security GRC Analyst with Turnitin? Based in Newcastle upon Tyne, UK, this role is uniquely designed for someone passionate about information security and compliance. At Turnitin, known globally for enhancing academic integrity, you'll be part of a team that doesn't just aim for compliance but strives for excellence. As a Security GRC Analyst, you'll be diving deep into the nuances of risk management while ensuring our cloud systems align with vital industry standards like NIST and SOC 2. Your analytical mindset and attention to detail will come in handy as you conduct assessments, prepare for audits, and collaborate with various internal departments and external auditors. What makes this position even more appealing is the ability to grow within such a supportive and remote-centric culture that values individual impact and well-being. In this role, you'll have the chance to lead compliance initiatives, support third-party risk management, and deliver training that empowers our team in security practices. The journey with Turnitin promises to be fulfilling as you join a diverse community aimed at making a positive difference in education and beyond. If you’re eager to leverage your skills in a genuine and impactful way, Turnitin might just be the perfect fit for you.

Frequently Asked Questions (FAQs) for Security GRC Analyst (UK Remote) Role at Jobs for Humanity
What are the responsibilities of a Security GRC Analyst at Turnitin?

A Security GRC Analyst at Turnitin is tasked with ensuring that our information and cloud systems align with crucial regulatory frameworks and internal policies. This involves conducting assessments, audits, and monitoring compliance, while collaborating with various internal teams to mitigate risks effectively.

Join Rise to see the full answer
What qualifications do you need to become a Security GRC Analyst at Turnitin?

To succeed as a Security GRC Analyst at Turnitin, candidates should hold a Bachelor’s degree in Computer Science, Information Security or a related field, accompanied by at least 3 years of relevant experience in Information Security or Cybersecurity Compliance. Relevant certifications such as CCSK or AWS Cloud Practitioner are also advantageous.

Join Rise to see the full answer
How does Turnitin support its employees as a Security GRC Analyst?

At Turnitin, employees in the Security GRC Analyst role are supported through a robust total rewards package that emphasizes overall well-being. This includes competitive pay, generous time off, wellness programs, and opportunities for continued learning and growth, ensuring that every team member feels valued and empowered.

Join Rise to see the full answer
What does the compliance assessment process look like for Security GRC Analysts at Turnitin?

The compliance assessment process for a Security GRC Analyst at Turnitin involves conducting thorough risk evaluations and reviews. Analysts lead audit preparations, collaborate with internal teams and external auditors, and monitor adherence to standards like NIST and PCI DSS to identify potential compliance gaps.

Join Rise to see the full answer
What skills are essential for a Security GRC Analyst at Turnitin?

Essential skills for a Security GRC Analyst at Turnitin include strong analytical abilities, effective communication, and a proactive attitude towards compliance. Familiarity with cybersecurity frameworks and risk management best practices is also vital in addressing security controls and audit procedures.

Join Rise to see the full answer
Common Interview Questions for Security GRC Analyst (UK Remote)
Can you describe your experience with risk and compliance assessments?

In your response, discuss specific instances where you've conducted risk assessments or compliance audits, including the frameworks used. Highlight your attention to detail and the outcomes of those assessments.

Join Rise to see the full answer
How do you stay updated with the latest compliance regulations and frameworks?

It’s essential to show your commitment to continuous learning. Mention specific resources you use, such as industry webinars, professional organizations, or certifications that keep you informed about the evolving landscape of compliance.

Join Rise to see the full answer
What strategies do you employ to ensure employee engagement in security compliance?

Talk about the training programs you’ve implemented, how you promote a culture of security awareness, and offer examples of successful initiatives that have led to increased compliance among employees.

Join Rise to see the full answer
How do you handle conflicts arising during compliance audits?

Share an experience where you encountered resistance or conflict during an audit. Discuss your approach to resolving the situation, emphasizing collaboration and effective communication as key components in reaching an understanding.

Join Rise to see the full answer
What role does technology play in your compliance processes?

Discuss the technological tools and platforms you’ve utilized in the compliance process, explaining how they improve efficiency and accuracy. Mention any experience with GRC platforms like Wiz or Hyperproof.

Join Rise to see the full answer
Describe a challenging compliance issue you faced and how you resolved it.

Use the STAR method (Situation, Task, Action, Result) to outline a specific challenge you faced related to compliance, detailing the steps you took to successfully resolve the issue.

Join Rise to see the full answer
How do you ensure that security policies are effectively integrated into business operations?

Highlight your collaborative skills, detailing your experience working with cross-functional teams to embed security practices into everyday operations. Discuss any frameworks or methodologies you employed.

Join Rise to see the full answer
What methods do you use to assess third-party risk?

Discuss the process you follow for assessing third-party risks, which may include conducting thorough evaluations, reviewing contracts, and establishing ongoing monitoring strategies to ensure compliance.

Join Rise to see the full answer
How do you prioritize multiple compliance projects?

Share your organizational strategies, including how you assess and categorize projects based on urgency and impact. Discuss any tools or methodologies, such as project management software, that help you stay on track.

Join Rise to see the full answer
What is your approach to creating a culture of security and compliance within an organization?

Discuss your vision for fostering a culture that prioritizes security and compliance, including strategies for awareness training, regular communications, and engaging leadership in promoting compliance initiatives.

Join Rise to see the full answer
Similar Jobs

Join The RRS Group Inc as a Corporate & Investment Risk Management Analyst Intern and gain invaluable insights into risk management in a supportive and collaborative setting.

Jobs for Humanity Hybrid Springfield, Massachusetts, United States
Posted 2 days ago

Join Viability as a Revenue Cycle Analyst and contribute to our mission of fostering an inclusive and supportive work environment.

IFT Remote Remote (Worldwide)
Posted 13 days ago

Join IFT as an AI Operations Engineer and help us leverage AI technology to transform the way we operate and serve civil liberties.

Photo of the Rise User

Join Ferguson as a Business Systems Analyst to leverage your expertise in Microsoft Power Platform and drive impactful business solutions.

Photo of the Rise User

Join TriTech Enterprise Systems as a Senior Application Deployment Specialist to enhance the IRS/MeF project with your Java/JEE expertise while enjoying the flexibility of remote work.

Photo of the Rise User
Posted 13 days ago

Join i3 as a Mid Level Cybersecurity Engineer, where you will protect systems from cyber threats while ensuring their compliance with DoD requirements.

Photo of the Rise User
Posted 12 days ago

Link Solutions is looking for a Senior Power BI Developer to lead business intelligence initiatives and dashboard development for the U.S. Army.

Posted 11 days ago

Join Potomac Haven as a Senior Database Developer to enhance data management frameworks within the Department of Homeland Security.

Photo of the Rise User
Posted 11 days ago

Lead the charge in operational technology security at Qiddiya Investment Company as a Senior Manager - OT Security, shaping the future of security in an innovative entertainment destination.

Posted 7 days ago

Join UBDS as a Network Design / Implementation Engineer and leverage your expertise in networking to drive digital transformation for various clients.

Photo of the Rise User
Inclusive & Diverse
Rise from Within
Mission Driven
Diversity of Opinions
Work/Life Harmony
Photo of the Rise User
Inclusive & Diverse
Diversity of Opinions
Work/Life Harmony
Dare to be Different
Reward & Recognition
Empathetic
Take Risks
Growth & Learning
Transparent & Candid
Mission Driven
Passion for Exploration
Feedback Forward
Medical Insurance
Dental Insurance
Vision Insurance
Mental Health Resources
Life insurance
Disability Insurance
Health Savings Account (HSA)
Flexible Spending Account (FSA)
Learning & Development
Paid Time-Off
Maternity Leave
Social Gatherings
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
April 18, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
o
Someone from OH, Cincinnati just viewed Marketing and Communications Consultant at osu
Photo of the Rise User
Someone from OH, Toledo just viewed Registered Nurse (Part-time) at Calibrate
Photo of the Rise User
Someone from OH, Toledo just viewed Clinical Research Associate II at Alimentiv
Photo of the Rise User
Someone from OH, Cleveland just viewed IT Support Engineer at Level AI
Photo of the Rise User
Someone from OH, Dayton just viewed Customer Content Specialist at Cision
Photo of the Rise User
Someone from OH, Cuyahoga Falls just viewed Senior Corporate Communications Manager at Bumble Inc.
Photo of the Rise User
Someone from OH, Cincinnati just viewed Senior Financial Analyst at Workday
Photo of the Rise User
Someone from OH, Cincinnati just viewed Financial Planning and Analysis Lead at JLL
Photo of the Rise User
Someone from OH, Cincinnati just viewed Senior Financial Analyst at American Express
Photo of the Rise User
Someone from OH, Cincinnati just viewed Senior Analyst, Operations at American Express
Photo of the Rise User
Someone from OH, Cincinnati just viewed Strategic Finance Analyst, Corporate at Benchling
Photo of the Rise User
Someone from OH, Cincinnati just viewed Senior Analyst, Project Finance at Apex Clean Energy
Photo of the Rise User
Someone from OH, Cincinnati just viewed Senior FP&A Analyst, Sales at GitLab
Photo of the Rise User
Someone from OH, Cincinnati just viewed FP&A Analyst at Lithic
Photo of the Rise User
15 people applied to Junior Security Engineer at Epic