Назад
Company hidden
10 часов назад

Risk & Compliance Management Expert (w/m/d)

Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
c1
Страна
Germany
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Risk & Compliance Management Expert (GRC/Cybersecurity): Operating and continuously improving enterprise risk management, internal controls, compliance frameworks, and requirements registers with an accent on information security risk management and regulatory compliance. Focus on conducting complex risk assessments, tracking mitigation measures, supporting audits, and translating KRITIS, NIS-2, DORA, ISO/IEC 27001, IT-Grundschutz, and C5 developments into actionable controls and reports.

Location: Walldorf, Germany, with additional locations in Eschborn and Berlin; hybrid working model.

Company

hirify.global operates within SAP, a global enterprise software and cloud company serving customers across multiple industries.

What you will do

  • Operate and continuously develop comprehensive enterprise risk management.
  • Conduct risk analyses and assessments, derive mitigation measures, and track their implementation.
  • Guide departments in identifying risks and implementing appropriate controls.
  • Maintain and develop policies, guidelines, governing documents, and the internal control system.
  • Support the requirements register, multi-compliance framework, and related GRC processes.
  • Prepare for internal and external audits and assessments, monitor regulatory developments, and report risks to management, authorities, and stakeholders.

Requirements

  • 8+ years of relevant professional experience in a GRC or ISMS environment.
  • Strong knowledge of enterprise risk management and information security risk management.
  • Extensive experience conducting risk analyses and risk assessments.
  • Knowledge of KRITIS, NIS-2, DORA, ISO/IEC 27001, IT-Grundschutz, and C5.
  • Long-term experience developing compliance frameworks, requirements registers, internal control systems, conducting audits, or maintaining policies.
  • Fluent German and English, spoken and written, are required.

Culture & Benefits

  • Flexible working models and a collaborative team environment.
  • Continuous learning, skill development, and personal development opportunities.
  • Focus on inclusion, health, well-being, and accessibility.
  • Expected travel of 0–10%.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →