




Summary: Join a global team as a Cybersecurity Risk Analyst, combining technical security analysis with GRC to identify risks, support policy development, and strengthen the organization's security posture. Highlights: 1. Hybrid role combining technical security analysis with GRC responsibilities 2. Contribute to strengthening overall security posture 3. Opportunity to develop new skills and reach full potential At ALS, we encourage you to dream big. When you join us, you’ll be part of a global team harnessing the power of scientific testing and data\-driven insights to build a healthier future. We are looking for a Cybersecurity Risk Analyst with 2–3 years of experience to join our growing security team. This hybrid role combines hands\-on technical security analysis with governance, risk, and compliance (GRC) responsibilities. You will help identify and assess security risks, analyze technical controls, support policy development, and collaborate with teams across the organization to strengthen our overall security posture. **What You’ll Do** * ### **Conduct cybersecurity risk assessments using frameworks such as ISO 2700, NIST RMF, and NIST CSF.** * Provide end user and executives awareness on cybersecurity related topics * Maintain and update risk registers, tracking mitigation plans and follow\-up actions. * Perform third\-party/vendor security assessments and review security documentation. * Support the development and maintenance of security policies, standards, and procedures. * Assist with internal and external audits by gathering evidence and performing control testing. * Review vulnerability scan results, logs, and configuration reports to identify risks and control gaps. * Monitor regulatory and compliance requirements and help drive alignment with ISO 27001, SOC 2, GDPR, and other standards **What We’re Looking For** * Bachelor’s degree in Cybersecurity, IT, Computer Science, or a related field (or equivalent experience). * 2–3 years of experience in cybersecurity risk management, technical security analysis, or GRC. * Strong understanding of security concepts (IAM, logs, vulnerabilities, cloud controls, network security). * Familiarity with risk management frameworks and security standards. * Ability to translate technical findings into clear business risk statements. * Strong communication, analytical, and documentation skills **Preferred Qualifications** * Certifications such as Security\+, CySA\+, CRISC, ISO 27001 Lead Implementer/Auditor. * Experience with cloud platforms (Azure, GCP). * Familiarity with GRC tools (Upguard) or Cyber platforms such as Crowdstrike, Proofpoint, Fortinet, etc * Good presentation, excel and powerBI command for dashboard generation and data management * Basic scripting knowledge (Python, PowerShell) is a plus. **Working at ALS** The ALS team is a diverse and dedicated community united by our passion to make a difference in the world. Our values are important to us, and shape how we work, how we treat each other and how we recognise excellence. At ALS, you’ll be supported to develop new skills and reach your full potential. We invest in our people with programs and opportunities that help you build a diverse career with us. We want everyone to have a safe, flexible and rewarding career that makes a positive impact on our people, the planet and our communities. **Everyone Matters** ALS is proud to be an equal opportunity employer and is committed to fostering an inclusive work environment where the strengths and perspectives of each employee are both recognised and valued. ALS also welcomes applications from people with all levels of ability. Reasonable adjustments to support candidates throughout the recruitment process are available upon request. **Eligibility** To be eligible to work at ALS you must be a Citizen or Permanent Resident of the country you are applying for, or either hold or be able to obtain, a valid working visa. **How to apply** Please apply on\-line and provide a resume \& cover letter that best demonstrate your motivation and ability to meet the requirements of this role.


