Dein persönlicher KI-Karriere-Agent
GRC Analyst(m/w/x)
Managing evidence collection and coordinating audits for an AI employee experience platform. ISO 27001 and SaaS operations experience required. E-Gym-Wellpass membership, job bike leasing, and EU work abroad options.
Anforderungen
- 2–4 years GRC or Information Security experience
- Strong ISO 27001 and other framework experience
- Manage policy lifecycle and risk registers
- Understand SaaS operations and translate compliance
- Excellent English and German communication
- B2B SaaS or tech start-up background
- Familiarity with GRC tooling or compliance platforms
- Experience working with engineering teams
Aufgaben
- Manage evidence collection
- Coordinate internal and external audits
- Collect and package evidence trail
- Present evidence to auditors
- Manage auditor walkthroughs
- Handle finding remediations
- Administer ISMS for ISO 27001/27017/27018
- Manage TISAX assessments
- Oversee SOC 2 Type II controls
- Handle Cyber Essentials Plus recertification
- Maintain risk register
- Coordinate quarterly risk reviews
- Manage risk treatment plans
- Draft and version-control policies
- Assist with data privacy operations
- Support RoPA and DPAs
- Handle Data Subject Requests under GDPR
- Act as liaison between security and control owners
- Translate compliance requirements into actionable tasks
- Plan and deliver security training
- Conduct phishing simulations
- Maintain Trust Centre content
- Transform internal security info into client-facing documents
Berufserfahrung
- 2 - 4 Jahre
Ausbildung
- Matura
Sprachen
- Englisch – verhandlungssicher
- Deutsch – verhandlungssicher
Tools & Technologien
- ISO 27001
- TISAX
- SOC 2
- Cyber Essentials Plus
- GRC tooling
- audit management platforms
- compliance automation tools
Benefits
Gesundheits- & Fitnessangebote
- E-Gym-Wellpass membership
Firmenfahrrad
- Job bike leasing
Workation & Sabbatical
- Work abroad in EU
Flexibles Arbeiten
- Remote work
Noch nicht perfekt?
- Flip AppVollzeitmit HomeofficeBerufserfahrenStuttgart, Berlin
- Mercedes-Benz.io GmbH
Compliance and Data Compliance Officer(m/w/x)
Vollzeitmit HomeofficeBerufserfahrenStuttgart - dgrp Diconium Group GmbH
Information Security Manager(m/w/x)
Vollzeitmit HomeofficeManagementStuttgart - Devoteam
Senior oder Lead ServiceNow GRC Consultant(m/w/x)
Vollzeitmit HomeofficeSeniorStuttgart - Bertrandt
Security Analyst(m/w/x)
Vollzeitmit HomeofficeBerufserfahrenStuttgart
GRC Analyst(m/w/x)
Managing evidence collection and coordinating audits for an AI employee experience platform. ISO 27001 and SaaS operations experience required. E-Gym-Wellpass membership, job bike leasing, and EU work abroad options.
Anforderungen
- 2–4 years GRC or Information Security experience
- Strong ISO 27001 and other framework experience
- Manage policy lifecycle and risk registers
- Understand SaaS operations and translate compliance
- Excellent English and German communication
- B2B SaaS or tech start-up background
- Familiarity with GRC tooling or compliance platforms
- Experience working with engineering teams
Aufgaben
- Manage evidence collection
- Coordinate internal and external audits
- Collect and package evidence trail
- Present evidence to auditors
- Manage auditor walkthroughs
- Handle finding remediations
- Administer ISMS for ISO 27001/27017/27018
- Manage TISAX assessments
- Oversee SOC 2 Type II controls
- Handle Cyber Essentials Plus recertification
- Maintain risk register
- Coordinate quarterly risk reviews
- Manage risk treatment plans
- Draft and version-control policies
- Assist with data privacy operations
- Support RoPA and DPAs
- Handle Data Subject Requests under GDPR
- Act as liaison between security and control owners
- Translate compliance requirements into actionable tasks
- Plan and deliver security training
- Conduct phishing simulations
- Maintain Trust Centre content
- Transform internal security info into client-facing documents
Berufserfahrung
- 2 - 4 Jahre
Ausbildung
- Matura
Sprachen
- Englisch – verhandlungssicher
- Deutsch – verhandlungssicher
Tools & Technologien
- ISO 27001
- TISAX
- SOC 2
- Cyber Essentials Plus
- GRC tooling
- audit management platforms
- compliance automation tools
Benefits
Gesundheits- & Fitnessangebote
- E-Gym-Wellpass membership
Firmenfahrrad
- Job bike leasing
Workation & Sabbatical
- Work abroad in EU
Flexibles Arbeiten
- Remote work
Über das Unternehmen
Flip GmbH
Branche
IT
Beschreibung
The company aims to be the world's most used AI employee experience platform, revolutionizing the work lives of frontline workers.
Noch nicht perfekt?
- Flip App
GRC Analyst(m/w/x)
Vollzeitmit HomeofficeBerufserfahrenStuttgart, Berlin - Mercedes-Benz.io GmbH
Compliance and Data Compliance Officer(m/w/x)
Vollzeitmit HomeofficeBerufserfahrenStuttgart - dgrp Diconium Group GmbH
Information Security Manager(m/w/x)
Vollzeitmit HomeofficeManagementStuttgart - Devoteam
Senior oder Lead ServiceNow GRC Consultant(m/w/x)
Vollzeitmit HomeofficeSeniorStuttgart - Bertrandt
Security Analyst(m/w/x)
Vollzeitmit HomeofficeBerufserfahrenStuttgart