As an IT GBDS Security, Audit & Compliance Analyst you will ensure GBDS IT systems and services (Finance, Procurement, Legal, SAP) comply with security policies, regulations, audit standards, and internal controls. The role leads security governance, risk management, audits, segregation of duties (SoD), ITGCs, and compliance initiatives. Working with auditors, security teams, service providers, and business stakeholders, it drives control effectiveness, risk mitigation, and regulatory compliance.
IT Security Governance
• Support the development, implementation, and continuous improvement of IT security policies, standards, and procedures.
• Ensure compliance with corporate cybersecurity requirements and governance frameworks.
• Monitor adherence to established security controls across SAP and non-SAP applications.
• Support security risk assessments and remediation activities.
• Promote security awareness and compliance best practices across IT and business teams.
• Collaborate with Information Security teams on security initiatives and governance programs.
Security & Access Governance
• Coordinate user access governance processes across applications and platforms.
• Monitor and review user provisioning, privileged access, and role assignments.
• Support Segregation of Duties (SoD) analysis, mitigation, and remediation activities.
• Ensure authorizations and access controls align with corporate policies.
• Assist in periodic user access reviews and certification processes.
• Support security enhancements and continuous improvement initiatives.
Audit Management
• Coordinate internal and external IT audit activities.
• Act as the primary contact for auditors regarding IT controls.
• Prepare, collect, and maintain audit evidence and supporting documentation.
• Monitor audit findings and coordinate remediation plans.
• Track closure of audit observations and management actions.
• Ensure audit readiness across systems, interfaces, and supporting technologies.
Risk & Compliance Management
• Identify, assess, and monitor IT and risks.
• Maintain risk registers and support risk mitigation planning.
• Perform compliance reviews and control effectiveness assessments.
• Support implementation of risk-based security and compliance measures.
• Monitor compliance with regulatory, legal, and corporate requirements.
• Escalate material compliance risks and control deficiencies where appropriate.
IT General Controls (ITGC)
• Monitor and assess IT General Controls including:
• Coordinate periodic control testing and validation activities.
• Support remediation of control weaknesses and deficiencies.
• Ensure controls remain aligned with audit and compliance requirements.Compliance Monitoring & Reporting
• Develop and maintain compliance dashboards, KPIs, and reporting metrics.
• Monitor compliance performance across systems and service providers.
• Provide regular reporting on security, audit, and compliance status.
• Identify trends, recurring findings, and improvement opportunities.
• Support management reporting and executive updates.
Vendor & Third-Party Compliance
• Support assessment of IT vendors, AMS providers, hosting partners, and third parties against security and compliance requirements.
• Monitor vendor compliance obligations and contractual control requirements.
• Participate in supplier risk assessments and governance reviews.
• Ensure third-party services align with corporate security standards.
• Track remediation activities resulting from vendor assessments.
Regulatory & Policy Compliance
• Support compliance initiatives related to:
o SOX (Sarbanes-Oxley)o GDPR and Data Privacy requirementso Information Security Standardso Internal Control Frameworkso Corporate Governance Policies
o Industry-specific regulatory requirements
• Ensure policies and procedures remain current and effective.
• Support regulatory audits and compliance assessments.
For thousands of people every day, we are more than just a dairy company. To our farmers, our employees, the communities we serve, the businesses we work with and the people to whom we bring happiness, FrieslandCampina means something more. For them it's not just about what we do, but who we are.
We value talented people from any background who want to contribute to something bigger than themselves. We encourage all of our employees to make decisions that benefit our entire company. At FrieslandCampina we own our own career and act accordingly. We trust you to make a difference in your job and influence the bigger picture. Working at FrieslandCampina means you are contributing to a better world.
Vì sao nên làm việc cùng chúng tôi?
Sứ mệnh mang nguồn cảm hứng
Cung cấp nguồn Dinh dưỡng tốt hơn cho thế giới, mang đến cuộc sống sung túc hơn cho người nông dân và hành động vì thế hệ mai sau.
Văn hóa Doanh nghiệp
Được dẫn dắt bởi sự hợp tác toàn cầu, tôn trọng và cùng gặt hái thành công.
Tạo nên tác động thực tiễn
Phát triển bản thân bằng quyền tự chủ và sự tập trung rõ ràng.
Sự phát triển của nhân viên chính là sự phát triển của công ty.
Chúng tôi đầu tư vào sự phát triển cá nhân và nghề nghiệp của bạn bằng giáo dục và đào tạo.
Bạn có câu hỏi nào về vị trí hoặc quy trình ứng tuyển không?
Vui lòng liên hệ Nhân sự Tuyển dụng
careers@frieslandcampina.com