TL;DR
Fractional Security & Compliance Lead (IT & GRC): Taking full ownership of security and compliance functions, managing SOC 2 Type II and ISO 27001 programs end-to-end with an accent on coordinating audits, managing evidence, and ensuring control effectiveness. Focus on administering and securing internal IT, designing and enforcing RBAC, and responding to enterprise customer security questionnaires.
Location: Remote (Germany)
Company
hirify.global is an ETH Zurich spin-off revolutionizing real estate with its AI-powered Real Estate Decision Intelligence (REDI) software, aimed at decarbonizing buildings while optimizing financial performance.
What you will do
- Manage the full lifecycle of SOC 2 Type 2 and ISO 27001 compliance programs, utilizing automation platforms.
- Serve as the primary liaison and coordinator for external compliance auditors.
- Lead rapid and accurate responses to technical security questionnaires for enterprise sales.
- Securely administer and harden core internal IT infrastructure, specifically Google Workspace and Microsoft 365/Entra ID.
- Handle the IT onboarding/offboarding process for new employees.
- Design, implement, and audit Role-Based Access Controls (RBAC) across all systems.
Requirements
- Direct experience managing compliance frameworks (SOC 2, ISO 27001) using platforms like Vanta.
- Hands-on experience administering Microsoft 365/Entra ID and Google Workspace security configurations.
- Knowledge of Identity and Access Management (IAM) principles, including RBAC, SSO, and Multi-Factor Authentication (MFA).
- Proficiency in no-code platforms or scripting languages for automating administrative tasks.
- Proven ability to operate independently and drive complex, cross-functional security projects.
- Outstanding written and verbal communication skills (English).
Culture & Benefits
- Play a critical role in scaling a company transforming how real estate decarbonizes.
- Build and own the operational backbone of a fast-growing startup.
- Work closely with an exceptional leadership team and gain exposure to all company functions.
- Join a mission-driven, high-performance, and collaborative team.
- Competitive salary, equity options, learning budget (CHF 1k), and additional insurance support.
- 25 days paid vacation.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →