Governance Risk and Compliance I Analyst II

Apply Now ↗
📍 Mandaluyong City, Philippines

About this role

Job Title: Governance Risk and Compliance Analyst II

Division: Governance, Risk & Compliance – IT Security

Position Summary

The GRC Analyst will act as a key contributor to Vertiv’s Governance, Risk, and Compliance initiatives, driving risk assessments, security reviews, audit readiness, and third-party risk management efforts. This role supports continuous improvement of the risk register and policy exception processes, partners with cross-functional stakeholders, and helps develop a scalable security and compliance posture across the organization.

Key Responsibilities

• Lead IT risk assessments, mitigation planning, and control monitoring activities.

• Oversee risk register updates and coordinate with risk owners and SMEs to track mitigation actions.

• Drive third-party risk reviews and assessments using OneTrust and SecurityScorecard, escalating high-risk vendors for action.

• Conduct contract reviews focused on information security terms and recommend necessary revisions.

• Respond to customer security questionnaires with input from SMEs using Loopio.

• Supervise compliance training rollouts (e.g., phishing campaigns, annual security awareness training).

• Review and recommend changes to IT security policies and standards aligned with ISO 27001, NIST CSF, and other frameworks.

• Generate and present GRC dashboards and KPIs to leadership to inform risk posture and team performance.

• Act as an escalation point for GRC process inquiries and ticket-related exceptions.

• Mentor junior analysts and support GRC program maturity through playbooks, SOPs, and process documentation.

Qualifications

• Bachelor’s degree in information systems, Cybersecurity, or a related field.

• 5+ years of experience in GRC, IT Risk Management, or Information Security.

• Strong understanding of ITGC, SOX, ISO 27001, NIST CSF, and data privacy regulations (e.g., HIPAA, GDPR).

• Experience with GRC platforms such as ServiceNow GRC, OneTrust, and SecurityScorecard.

• Strong documentation and analytical skills with experience preparing audit-ready evidence.

• Certifications such as CISA, CISSP, ISO 27001 Lead Implementer or Auditor (preferred).

• Excellent communication and stakeholder management skills across global teams.

• Strong organizational skills and ability to manage multiple deliverables independently.

Frequently Asked Questions

Is the salary disclosed for the Governance Risk and Compliance I Analyst II position at Vertiv?
The salary for this Governance Risk and Compliance I Analyst II role at Vertiv is not publicly listed. Click "Apply Now" to learn more about the compensation package on their official careers page.
Where is the Governance Risk and Compliance I Analyst II position at Vertiv located?
This Governance Risk and Compliance I Analyst II role at Vertiv is based in Mandaluyong City, Philippines. The position is listed as on-site or hybrid. Check the full job description or apply directly to confirm the work arrangement.
How do I apply for the Governance Risk and Compliance I Analyst II position at Vertiv?
Click the "Apply Now" button on this page. You will be redirected to Vertiv's official application portal hosted on oraclecloud where you can submit your application directly.
When was the Governance Risk and Compliance I Analyst II job at Vertiv posted?
This Governance Risk and Compliance I Analyst II position at Vertiv was posted on Sep 2, 2026. Apply as soon as possible — early applications are often reviewed first.
Governance Risk and Compliance I Analyst II
Vertiv
Apply for this role ↗

You'll be redirected to Vertiv's official application page on oraclecloud.