Job Description

Job Title: Governance Risk and Compliance Analyst II

Division: Governance, Risk & Compliance – IT Security

Position Summary

The GRC Analyst will act as a key contributor to Vertiv’s Governance, Risk, and Compliance initiatives, driving risk assessments, security reviews, audit readiness, and third-party risk management efforts. This role supports continuous improvement of the risk register and policy exception processes, partners with cross-functional stakeholders, and helps develop a scalable security and compliance posture across the organization.

Key Responsibilities

• Lead IT risk assessments, mitigation planning, and control monitoring activities.

• Oversee risk register updates and coordinate with risk owners and SMEs to track mitigation actions.

• Drive third-party risk reviews and assessments using OneTrust and SecurityScorecard, escalating high-risk vendors for action.

• Conduct contract reviews focused on information security terms and recommend necessary revisions.

• Respond to customer security questionnaires with input from SMEs using Loopio.

• Supervise compliance training rollouts (e.g., phishing campaigns, annual security awareness training).

• Review and recommend changes to IT security policies and standards aligned with ISO 27001, NIST CSF, and other frameworks.

• Generate and present GRC dashboards and KPIs to leadership to inform risk posture and team performance.

• Act as an escalation point for GRC process inquiries and ticket-related exceptions.

• Mentor junior analysts and support GRC program maturity through playbooks, SOPs, and process documentation.

Qualifications

• Bachelor’s degree in information systems, Cybersecurity, or a related field.

• 5+ years of experience in GRC, IT Risk Management, or Information Security.

• Strong understanding of ITGC, SOX, ISO 27001, NIST CSF, and data privacy regulations (e.g., HIPAA, GDPR).

• Experience with GRC platforms such as ServiceNow GRC, OneTrust, and SecurityScorecard.

• Strong documentation and analytical skills with experience preparing audit-ready evidence.

• Certifications such as CISA, CISSP, ISO 27001 Lead Implementer or Auditor (preferred).

• Excellent communication and stakeholder management skills across global teams.

• Strong organizational skills and ability to manage multiple deliverables independently.


Job Details

Role Level: Mid-Level Work Type: Full-Time
Country: Philippines City: Mandaluyong Metro Manila
Company Website: http://www.Vertiv.com Job Function: Security & Risk Management
Company Industry/
Sector:
Appliances Electrical and Electronics Manufacturing

What We Offer


About the Company

Searching, interviewing and hiring are all part of the professional life. The TALENTMATE Portal idea is to fill and help professionals doing one of them by bringing together the requisites under One Roof. Whether you're hunting for your Next Job Opportunity or Looking for Potential Employers, we're here to lend you a Helping Hand.

Report

Disclaimer: talentmate.com is only a platform to bring jobseekers & employers together. Applicants are advised to research the bonafides of the prospective employer independently. We do NOT endorse any requests for money payments and strictly advice against sharing personal or bank related information. We also recommend you visit Security Advice for more information. If you suspect any fraud or malpractice, email us at abuse@talentmate.com.


ad 1
Talentmate Instagram Talentmate Facebook Talentmate YouTube Talentmate LinkedIn