GRC Specialist (German-speaking)
Core
Own compliance frameworks, internal audits, and content quality for Secfix's automated compliance platform serving mid-market companies.
Role type
Senior GRC Specialist (Governance, Risk, and Compliance)
Builds
Compliance frameworks (ISO 27001, TISAX, SOC 2, GDPR, etc.) and internal audit processes within the Secfix platform.
Domain
Cybersecurity compliance and regulatory frameworks in the European market.
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
ISO 27001 implementation and auditing, GRC platform experience, project management, stakeholder alignment, content creation for compliance, framework gap analysis, auditor training.
Preferred skills
Mentoring in compliance contexts, startup environment experience, PECB ISO 27001 Lead Auditor certification.
Technologies
Secfix, GRC platforms, ISO 27001, TISAX, SOC 2, GDPR, NIS 2, DORA, ISO 27017/27018, ISO 42001, C5.
Responsibilities
Build and maintain compliance frameworks in the platform, own internal audits end-to-end, implement ISO 27001 for customers, own quality of compliance content, close framework gaps, partner with product/engineering, collaborate with CS and founders, train auditors on the platform.
Seniority
Senior, hands-on IC