Governance, Risk & Compliance (GRC) Expert (m/w/d) at Collaboration Betters The World GmbH | BE, DE | Rezi

Governance, Risk & Compliance (GRC) Expert (m/w/d) at Collaboration Betters The World GmbH

Governance, Risk & Compliance (GRC) Expert (m/w/d)

Collaboration Betters The World GmbH · BE, DE

2 weeks ago

Governance, Risk & Compliance (GRC) Expert (m/w/d)

Collaboration Betters The World GmbH · BE, DE

17 days ago
Resume preview

Impress employers and recruiters.
Choose from hundreds of resume examples.

Target Resume Now

About the Role

As a Governance, Risk & Compliance (GRC) Expert, you will strengthen our Cybersecurity Service Line, helping organizations protect themselves from evolving cyber threats, ensure regulatory compliance, and enhance the security of their digital assets. You will work on exciting client projects and contribute to our internal security community, shaping security strategies, analyzing risks, and making organizations more resilient.

Responsibilities

  • Support clients in defining and implementing their information security strategy.
  • Organize, structure, and manage security projects.
  • Implement and further develop Information Security Management Systems (ISMS).
  • Create and further develop security policies and processes (e.g., Incident Response, Security Policies).
  • Analyze and assess security risks using established frameworks (e.g., ISO 27005, EBIOS RM).
  • Identify and monitor operational, compliance, and security risks.
  • Define and implement security KPIs to measure security performance.
  • Support clients in complying with relevant cybersecurity and data protection regulations (e.g., NIS2, DORA, GDPR, NIST).
  • Analyze the security status of organizations and identify improvement measures.
  • Conduct internal audits and support compliance processes.
  • Coordinate the response to security incidents and support their analysis.
  • Monitor action plans after incidents or audits and ensure their implementation.
  • Develop measures to improve the security posture.
  • Conduct training and awareness measures on information security and GRC policies.
  • Promote the adoption of security standards and best practices within organizations.
  • Contribute experience to the internal Security Community at CBTW, sharing knowledge and best practices.

Requirements

  • Completed Bachelor's or Master's degree in Cybersecurity, Information Security, or a comparable qualification.
  • Minimum of 5 years of experience in a comparable role within Governance, Risk & Compliance or Information Security.
  • In-depth knowledge of ISO 2700X standards (ISO 27001, ISO 27002, ISO 27005).
  • Experience with risk management methods such as EBIOS RM.
  • Knowledge of relevant regulatory requirements such as NIS2, DORA, or GDPR.
  • Experience in implementing or further developing an ISMS.
  • Very good analytical skills and a structured way of working.
  • Fluent German and English language skills.
  • Willingness to travel within the DACH region.

Skills

  • Cybersecurity
  • Information Security
  • Governance, Risk & Compliance (GRC)
  • Strategy & Governance
  • Risk Management
  • Compliance
  • Regulatory Compliance
  • Incident Management
  • Training & Awareness
  • ISO 27001
  • ISO 27002
  • ISO 27005
  • EBIOS RM
  • NIS2
  • DORA
  • GDPR
  • NIST
  • ISMS
  • Security Policies
  • Incident Response
  • Security KPIs
  • Internal Audits
  • Security Standards
  • Best Practices

Location

  • DACH region

Work Type

  • Remote Work
  • Workation
  • Onsite

Experience Level

  • Medior-Level
  • 5 years of experience

Education Level

  • Bachelor's degree
  • Master's degree

Salary/Compensations

  • €65,000 – €75,000 gross/year

Benefits

  • Onboarding & Team Spirit (Welcome Day, Hello Drink & Newbie Lunch, Mentoring Program)
  • Team Events (Afterwork Events, Summer Tech Event, Christmas Party)
  • Social Engagement (Donation Campaigns)
  • Development & Career (Individual Career Paths, Regular Feedback, Inhouse Trainings, Online Courses, External Further Education)
  • International Collaboration
  • Work-Life-Balance & Flexibility (Remote Work, Workation within the EU, Sabbatical Options, Flexible Working Hours)
  • Holiday Calendar (Baden-Württemberg plus State Holidays)
  • 30 Vacation Days
  • Equipment & Mobility (Credit for Mobile Workspace, Deutschlandticket or Bike Leasing, Optional BahnCard)
  • Security & Provision (Support for Pension & Asset Building, Financial Security Options)
  • Wellbeing & Health (Employee Assistance Program - EAP)
  • Additional Perks (Performance Bonuses, Corporate Benefits Platform)

About the Company

  • CBTW is an innovative team with over 3,000 employees in 21 countries, leading in Strategy & Governance, Software Engineering, Data Analysis & AI, and more.
  • Our culture is built on trust, personal responsibility, and genuine collaboration, whether remote or on-site.
  • We drive innovation together, celebrate successes, and embrace diversity.
  • Recognized as a 'Top Company' by kununu for five consecutive years.

Equal Opportunity

  • We live diversity.