Назад
Company hidden
24 часа Π½Π°Π·Π°Π΄

Governance, Risk and Compliance Engineer

Π€ΠΎΡ€ΠΌΠ°Ρ‚ Ρ€Π°Π±ΠΎΡ‚Ρ‹
remote (Ρ‚ΠΎΠ»ΡŒΠΊΠΎ Europe)/hybrid
Π’ΠΈΠΏ Ρ€Π°Π±ΠΎΡ‚Ρ‹
fulltime
Английский
b2
Π‘Ρ‚Ρ€Π°Π½Π°
Germany
Вакансия ΠΈΠ· списка Hirify.GlobalВакансия ΠΈΠ· Hirify Global, списка ΠΌΠ΅ΠΆΠ΄ΡƒΠ½Π°Ρ€ΠΎΠ΄Π½Ρ‹Ρ… tech-ΠΊΠΎΠΌΠΏΠ°Π½ΠΈΠΉ
Для мэтча ΠΈ ΠΎΡ‚ΠΊΠ»ΠΈΠΊΠ° Π½ΡƒΠΆΠ΅Π½ Plus

ΠœΡΡ‚Ρ‡ & Π‘ΠΎΠΏΡ€ΠΎΠ²ΠΎΠ΄

Для мэтча с этой вакансиСй Π½ΡƒΠΆΠ΅Π½ Plus

ОписаниС вакансии

ВСкст:
/

TL;DR

Governance, Risk and Compliance Engineer (Cybersecurity): Developing and optimizing the ISMS framework for an e-procurement platform with an accent on ISO 27001 certification and IT audit preparation. Focus on designing security controls, conducting risk assessments, and collaborating across technical teams to ensure compliance and robust security standards.

Location: Remote across Europe with the option to work from offices in KΓΆthen, Leipzig, or Munich.

Company

hirify.global operates a trusted e-procurement marketplace connecting B2B and public sector organizations to enable sustainable, fair, and efficient sourcing.

What you will do

  • Support the preparation and execution of ISO 27001 certification and internal/external IT audits.
  • Own and improve defined parts of the ISMS, including policy creation and control implementation.
  • Contribute to risk assessments, business impact analyses, and IT emergency recovery planning.
  • Coordinate security initiatives such as phishing awareness programs and penetration tests.
  • Evaluate third-party and supplier security through structured information security assessments.
  • Prepare risk and compliance metrics, reports, and dashboards for stakeholders.

Requirements

  • Practical experience in information security, IT risk, or compliance within a corporate environment.
  • Fluency in German and English required.
  • Experience with ISO 27001, ISMS processes, or audit preparation.
  • Solid understanding of technical IT environments including cloud, infrastructure, and identity management.
  • Familiarity with frameworks like NIST, SOC 2, or GDPR.
  • Demonstrated ability in cross-functional coordination and project management.

Nice to have

  • Previous involvement in other industry-recognized security certifications (e.g., Cyber Essentials Plus).

Culture & Benefits

  • Flexible work location with options for mobile work or office presence in Germany.
  • Agile work environment with flat hierarchies and open communication.
  • Commitment to long-term work-life balance and a family-friendly atmosphere.
  • Encouraged 10% of working time dedicated to personal development.
  • Generous benefits including 30+ days of vacation and health support.

Π‘ΡƒΠ΄ΡŒΡ‚Π΅ остороТны: Ссли Ρ€Π°Π±ΠΎΡ‚ΠΎΠ΄Π°Ρ‚Π΅Π»ΡŒ просит Π²ΠΎΠΉΡ‚ΠΈ Π² ΠΈΡ… систСму, ΠΈΡΠΏΠΎΠ»ΡŒΠ·ΡƒΡ iCloud/Google, ΠΏΡ€ΠΈΡΠ»Π°Ρ‚ΡŒ ΠΊΠΎΠ΄/ΠΏΠ°Ρ€ΠΎΠ»ΡŒ, Π·Π°ΠΏΡƒΡΡ‚ΠΈΡ‚ΡŒ ΠΊΠΎΠ΄/ПО, Π½Π΅ Π΄Π΅Π»Π°ΠΉΡ‚Π΅ этого - это мошСнники. ΠžΠ±ΡΠ·Π°Ρ‚Π΅Π»ΡŒΠ½ΠΎ ΠΆΠΌΠΈΡ‚Π΅ "ΠŸΠΎΠΆΠ°Π»ΠΎΠ²Π°Ρ‚ΡŒΡΡ" ΠΈΠ»ΠΈ ΠΏΠΈΡˆΠΈΡ‚Π΅ Π² ΠΏΠΎΠ΄Π΄Π΅Ρ€ΠΆΠΊΡƒ. ΠŸΠΎΠ΄Ρ€ΠΎΠ±Π½Π΅Π΅ Π² Π³Π°ΠΉΠ΄Π΅ β†’

ВСкст вакансии взят Π±Π΅Π· ΠΈΠ·ΠΌΠ΅Π½Π΅Π½ΠΈΠΉ

Π˜ΡΡ‚ΠΎΡ‡Π½ΠΈΠΊ - Π·Π°Π³Ρ€ΡƒΠ·ΠΊΠ°...