GRC Systems Business Analyst (KG)

Mediro ICT
Umhlanga Rocks
ZAR 300 000 - 400 000
Job description
Key Responsibilities:
1. Requirements Gathering & Analysis:
  1. Collaborate with business stakeholders (Risk, Compliance, Audit, Legal, IT) to gather and document functional and technical requirements for GRC systems.
  2. Conduct workshops, interviews, and surveys to understand business processes, risk management needs, and compliance objectives.
  3. Analyse and translate business needs into clear system requirements and user stories.
2. GRC System Configuration & Implementation:
  1. Work with technical teams to implement and configure GRC systems (e.g., SAP GRC, RSA Archer, MetricStream, or other GRC solutions).
  2. Ensure that GRC systems are set up to support compliance processes, risk management workflows, and audit management processes.
  3. Assist with system integrations, ensuring seamless data flow between GRC platforms and other enterprise systems (e.g., ERP, Veeva etc.).
3. Process Improvement & Optimisation:
  1. Identify opportunities for process improvements in governance, risk, and compliance areas through GRC system enhancements.
  2. Propose and implement GRC system changes that streamline workflows, improve data integrity, and increase efficiency.
  3. Monitor system performance and recommend adjustments to improve user experience, reporting, and data analysis.
4. Documentation & Training:
  1. Prepare detailed documentation, including functional specifications, user guides, and system configurations.
  2. Conduct user training sessions and create training materials to ensure proper utilisation of GRC systems.
  3. Support end-users by providing guidance on how to use GRC tools for risk management, compliance tracking, and audit processes.
5. Testing & Quality Assurance:
  1. Develop and execute test plans for new GRC system features, configurations, and integrations.
  2. Perform system testing, identify defects, and work with technical teams to resolve issues.
  3. Ensure that GRC solutions comply with internal controls, external regulations, and security requirements.
6. Reporting & Analytics:
  1. Design and implement reports and dashboards to provide visibility into governance, risk, and compliance metrics.
  2. Ensure that GRC systems provide real-time analytics, enabling stakeholders to monitor risks, compliance status, and audit findings.
  3. Assist in the creation of risk assessments, compliance reports, and other documentation required for executive reporting.
7. Support & Maintenance:
  1. Provide ongoing support for the GRC systems, troubleshoot issues, and ensure the systems are operating effectively.
  2. Manage system updates, upgrades, and patches to ensure the GRC tools are up-to-date and in compliance with relevant regulations.
  3. Serve as a liaison between business users and IT for resolving system issues.
Experience:
  1. Bachelor’s degree in Business Administration, Information Systems, Computer Science, or a related field.
  2. 3+ years of experience as a Business Analyst with a focus on GRC systems (SAP GRC, RSA Archer, MetricStream, etc.).
  3. Proven experience in requirements gathering, system configuration, and implementation of GRC platforms.
  4. Strong understanding of Governance, Risk, and Compliance processes and frameworks.
Technical Skills:
  1. Experience with GRC solutions (e.g., SAP GRC, RSA Archer, MetricStream).
  2. Strong knowledge of business process modelling, workflows, and documentation.
  3. Familiarity with data integration, reporting tools (e.g., Power BI, Tableau), and database querying (e.g., SQL).
  4. Comfortable with system testing, including creating test cases and executing user acceptance testing (UAT).
Communication Skills:
  1. Strong written and verbal communication skills.
  2. Ability to translate complex technical concepts into business-friendly language.
  3. Experience in preparing training materials and delivering training sessions.
Problem-Solving & Analytical Skills:
  1. Strong analytical and problem-solving abilities.
  2. Ability to identify system inefficiencies and suggest improvements.
  3. Attention to detail and ability to analyse data for risk and compliance reporting.
Desirable:
  1. Certified Business Analysis Professional (CBAP) or Certified Scrum Master (CSM).
  2. Certified in Risk and Information Systems Control (CRISC) or Certified Information Systems Auditor (CISA).
  3. Knowledge of SOX (Sarbanes-Oxley), GDPR, ISO 27001, or other relevant regulatory frameworks.
  4. Familiarity with internal controls and audit methodologies.
  5. Experience working in Agile or Scrum environments for software development and implementation.
Get a free, confidential resume review.
Select file or drag and drop it
Avatar
Free online coaching
Improve your chances of getting that interview invitation!
Be the first to explore new GRC Systems Business Analyst (KG) jobs in Umhlanga Rocks