Governance, Risk and Compliance Engineer (gn) at xing
berlin, Berlin, Germany -
Full Time


Start Date

Immediate

Expiry Date

17 Nov, 26

Salary

0.0

Posted On

19 Aug, 26

Experience

0 year(s) or above

Remote Job

Yes

Telecommute

Yes

Sponsor Visa

Yes

Skills

Industry

Information Technology & Services

Description

About this job


Köthen (DE), Leipzig (DE), Munich (DE) Permanent position

Do you have experience in information security, risk management, or compliance and want to help us achieve our first ISO 27001 certification? Then you're exactly the right person for us as a GRC Engineer (m/f/d)! Do you enjoy working in a friendly, international team? Then apply now!

Are you ready to reinvent procurement? At Unite, we've been successfully working for over 25 years to improve purchasing in companies and public organizations – digitally, effectively, and sustainably, powered by technology with a purpose. Our procurement solution, "made in Europe," creates transparency, fairness, and true data sovereignty. It's continuously developed by over 700 international employees who think boldly, embrace responsibility, and celebrate diversity. If you truly want to make a difference, join us and help shape the future of procurement.

That's your job

  • Audit Excellence: You actively support the preparation and execution of ISO 27001 certification as well as internal and external IT audits and ensure that evidence, controls and documentation are audit-ready.
  • Take responsibility: You are responsible for specific parts of the ISMS, define controls, documentation and processes, and contribute to continuous improvement.
  • Set standards: You support the creation and maintenance of guidelines such as the Acceptable Use Policy and help with their implementation with IT, platform and business teams.
  • Strengthen resilience: You contribute to risk assessments and business impact analyses, and maintain and improve IT emergency and recovery plans.
  • Make security everyone's responsibility: You support security initiatives such as phishing awareness programs, vulnerability tests, certifications like Cyber ​​Essentials Plus and supplier security audits, and coordinate measures with stakeholders.
  • Protect our system landscape: You participate in information security assessments of third parties, suppliers and projects, evaluating security and compliance aspects.
  • Create transparency from data: You create reports, key performance indicators (KPIs), and dashboards on risk and compliance status to support audits, decisions, and transparency.

This is what you bring with you

  • Security with a hands-on mentality: You have practical experience in the areas of information security, IT risks or compliance in a corporate environment.
  • Ready for any audit: You have experience with or knowledge of ISO 27001, ISMS processes or the preparation of audits.
  • TIT understanding as a basis: You have basic knowledge of technical IT environments (e.g. cloud, infrastructure, identity and access, platforms, software development)
  • Cross-functional coordination: You have experience in project management and in coordinating various IT topics.
  • Reliable team player: You work in a structured and reliable manner and cooperate effectively with technical teams, business stakeholders and auditors.
  • Framework knowledge: You are familiar with frameworks such as NIST, SOC 2 or GDPR.
  • Language: You speak fluent German and English.

How To Apply:

Incase you would like to apply to this job directly from the source, please click here

Responsibilities
Loading...