About this role
Job title: Global Information Security Governance, Risk & Compliance Analyst
About the Role Global Information Security Governance, Risk & Compliance Analyst at Autoliv Romania will support and strengthen the organization's information security compliance landscape. You will promote adherence to TISAX, SOX ITGC, and internal control frameworks, and help evolve how controls are designed, implemented, and tested globally. This hands-on role aims to enable a secure environment while enabling business speed.
What You'll Do
- Drive and support global Information & Cyber Security compliance activities, promoting adherence to TISAX, SOX ITGC, and internal compliance controls based on risk
- Conduct internal compliance control testing, including design effectiveness, operating effectiveness, and evidence validation
- Monitor, follow up, and support timely closure of findings, deficiencies, and observations
- Strengthen control effectiveness by challenging, refining, and simplifying controls to ensure they are risk-based and efficient
- Contribute to the development and continuous improvement of the global control catalog and its implementation in the GRC tool
- Act as a trusted compliance advisor, supporting audits with structured evidence and clear communication
- Guide and enable stakeholders through hands-on support, training, and best practices, promoting compliance as a business enabler
What We're Looking For
- University degree or equivalent in IT/Security/Cyber-Security or similar
- Information Security, Audit or Compliance experience with 3-5 years, preferably in international environment in manufacturing or similar
- Knowledge of one or more frameworks: TISAX, ISO 27000, NIST, IEC62443, SOX, COBIT, COSO, ITIL
- Experience working in a GRC tool, preferably ServiceNow
- Ability to have a structured approach, prioritize and coordinate tasks and manage deadlines
- Adaptability and embracing changes
- Strong communication skills and the ability to explain complex topics clearly
- A collaborative, team-oriented mindset
- A desire to develop knowledge and skills in cybersecurity and stay up to date with emerging trends
Nice to Have
- Experience with GRC tooling; ServiceNow is a bonus