IT Governance, Risk and Compliance Analyst
Listed on 2026-02-16
-
IT/Tech
Cybersecurity, Information Security, IT Consultant
Job Description
The IT Governance, Risk and Compliance (GRC) Analyst in Cluj‑Napoca is a terrific opportunity to manage and maintain compliance with the European Union Network Information Security Directive (NIS2) framework throughout our organization. This position will support the information cybersecurity management team and will work closely with internal & external stakeholders to assess, implement, coordinate, and monitor information security activities to ensure NIS2 compliance.
The role will involve conducting security assessments, analyzing gaps in compliance, and recommending remediation plans to mitigate risks. Additionally, this position will serve as Emerson's subject matter expert for NIS2 related matters as well as assist in ISO 27001, Trusted Information Security Assessment Exchange (TISAX) and other cybersecurity framework initiatives.
- Support Network Information Security Directive (NIS2) assessments for our organization, evaluating their information security controls and practices
- Document controls, collect evidence and oversee compliance with NIS2
- Assist in identifying gaps in compliance with NIS2 requirements and support the development of remediation plans to close gaps
- Collaborate with stakeholders across Emerson to implement and maintain security measures aligned with NIS2 standards
- Monitor and track progress towards NIS2 compliance goals, ensuring timely completion of remediation plans
- Report and communicate NIS2 program and compliance initiatives to senior leadership
- Support Emerson businesses with external audits to achieve NIS2 compliance
- Provide training sessions and workshops on NIS2 requirements and best practices to internal & supply chain stakeholders to ensure NIS2 awareness as appropriate
- Stay up to date on any changes within the NIS2 framework and ensure ongoing alignment with evolving standards
- Preparation of audits:
- Create and maintain audit schedule
- Identifying and communicate regularly to stakeholders
- Support/coordinate evidence collection
- Preparing the contact persons and audit participants for the audit
- Follow-up:
- Managing and reviewing the audit reports and results
- Report on remediation progress
- Build control assurance / compliance initiatives to improve the overall cybersecurity posture of the organization
- Lead and support various information security framework control gap assessments, implementation of framework management systems, gap remediation, ongoing management, and continual improvement initiatives in addition to NIS2 as needed
You are highly organized and detail-oriented, with a strong sense of accountability and a proactive mindset. You thrive in complex environments and are energized by solving problems that require analytical thinking and collaboration. You communicate effectively with both technical and non-technical stakeholders and are comfortable navigating ambiguity while driving results.
For This Role, You Will Need- Bachelor's Degree in IT, Information Systems, Computer Science, or related discipline
- Experience in these areas:
- Information Security
- Compliance
- Risk Management
- 1-2+ years of experience in ISO 27001 & ISO 27002, TISAX, NIS2 or related information security frameworks
- Strong understanding of Information Security principles, standards, and frameworks
- Strong experience conducting security assessments and audits
- Effective communication and interpersonal skills to properly collaborate effectively with internal teams and external stakeholders.
- Project management skills to manage program expectations, building work programs/schedules.
- Willingness to travel (20%)
- Fluent in English
- Audit experience
- Fluency/proficiency in other European languages
At Emerson, we prioritize a workplace where every employee is valued, respected, and empowered to grow. We foster an environment that encourages innovation, collaboration, and diverse perspectives—because we know that great ideas come from great teams. Our commitment to ongoing career development and growing an inclusive culture ensures you have the support to thrive. Whether through mentorship, training, or leadership opportunities, we invest in your success so you can make a lasting impact.
We believe diverse teams, working together, are key to driving growth and delivering business results.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).