Amber Group Limited
Website:
myambergroup.com
Job details:
About the RoleKuya Technologies is hiring a GRC Officer – L1 to support Governance, Risk, Compliance, and Privacy activities across the organization’s products and IT services.
The role involves supporting compliance frameworks such as ISO 27001, SOC 2 Type II, GDPR, Jamaica Data Protection Act, and PCI DSS. The candidate will work closely with the GRC Head, Compliance Officer, and CISO to assist in audits, risk tracking, policy governance, documentation, and continuous compliance readiness.
Key Responsibilities- Support the implementation and maintenance of governance frameworks and compliance programs.
- Assist in ISMS, PCI DSS, SOC 2, GDPR, and privacy compliance activities.
- Support internal, external, and customer audits through evidence collection and coordination.
- Maintain policies, procedures, compliance records, and audit documentation.
- Track audit observations, remediation actions, control implementation, and risk treatment plans.
- Support risk register updates and vendor risk assessment documentation.
- Coordinate with cross-functional teams to ensure compliance activities are completed on time.
- Assist in compliance reporting, dashboards, and documentation for leadership review.
- Support security and compliance awareness activities.
Required Skills & Qualifications- Bachelor’s degree in Engineering, Information Security, IT, Risk Management, or a related field.
- 1–3 years of experience in GRC, Information Security, Compliance, Audit, or a related domain.
- Working knowledge of ISO 27001, SOC 2 Type II, GDPR, PCI DSS, or similar frameworks.
- Basic understanding of IT services, SaaS environments, risk management, and compliance controls.
- Experience supporting audits, documentation, evidence collection, or control implementation.
- Good documentation, communication, and coordination skills.
- Ability to work with cross-functional teams and follow up on compliance tasks.
Preferred Certifications- ISO 27001 Foundation / Lead Implementer / Lead Auditor
- SOC 2 Practitioner or Readiness Certification
- GDPR / Data Privacy Certification such as CIPP/E, CIPP/A, or ISO 27701
- Security+ or any entry-level Information Security certification
Apply NowInterested candidates can send their resume to:
Click on Apply to know more.