Atlas Consolidated Mining and Development
Operates copper mines
This role is sourced from an external job board and is not a ProSculpt-verified employer. Review the listing carefully, never pay any fee to apply, and verify the company before sharing personal details.
We are seeking a detail-oriented GRC & Data Privacy Analyst to join our security team. In this role, you will be responsible for maintaining our integrated risk management framework while taking a lead role in implementing and auditing our data privacy program. You will ensure that our operations remain compliant with global regulations (GDPR, PDPA, etc.) while identifying and mitigating risks across the organization. Governance & Risk Management Risk Assessments: Conduct annual and project-based risk assessments; maintain the Corporate Risk Register and track remediation efforts. Policy Management: Draft, review, and update internal security policies and standards to ensure they reflect current business processes. Third-Party Risk Management (TPRM): Evaluate the security posture of vendors and partners through assessments and due diligence reviews. Data Privacy Implementation Data Mapping: Maintain a comprehensive record of processing activities (ROPA) and data flow diagrams. Privacy Operations: Manage the Data Subject Access Request (DSAR) process and coordinate responses to privacy-related inquiries. Compliance Monitoring: Monitor changes in global privacy laws and translate them into actionable technical or procedural requirements for the IT and Product teams. Internal Audits: Perform regular control testing to ensure ongoing compliance with internal policies and external regulations. External Audit Liaison: Awareness Training: Develop and deliver training content on security best practices and data handling requirements for all employees. Experience: 8 - 10 years in GRC, Information Security, or IT Audit, with at least 2โ4 years specifically focused on Data Privacy. Technical Skills: Familiarity with GRC tools (Sprinto) and a solid understanding of cloud security (AWS). Regulatory Knowledge: Deep understanding of GDPR, PDPA, and industry standards like ISO 27001, SOC 2 and Singapore MAS The "Translator" Ability: Can explain complex legal requirements to developers and technical risks to executives.
Graduate Software Engineer - 2026 Freshers (AI / Cloud / Full-Stack) (Tamil Nadu)
NeuraNx.ai - IN
aws skill match
IT Governance, Risk & Compliance (GRC) Specialist, Luxembourg
Stripe - Luxembourg
aws skill match
Partner Solutions Architect - AWS
Stripe - New York
aws skill match
Software Engineer
Stripe - Seattle
aws skill match
Want a personalised feed?
Sign up to save jobs, track applications, and get AI-matched recommendations.
Create a free account