Compliance Manager

Jobtailor

München

Vor Ort

EUR 110.000 - 140.000

Vollzeit

14 Tage+

Erhalte mehr Antworten von Arbeitgebern

Versende in nur wenigen Minuten einen passgenauen Lebenslauf.

Zusammenfassung

Jobtailor in Munich seeks a Senior Compliance Manager to own GDPR, privacy, and regulatory programs for Workplace Management Services. You will act as SPOC, coordinate across Data Protection, Labor Relations, cybersecurity, legal, and IT teams to ensure policy alignment.

The role requires 8–10 years' experience, strong stakeholder management, and deep knowledge of Microsoft 365 security/privacy tools. You will lead DPIA/ROPA, maintain governance documents, and drive continuous improvement while

Qualifikationen

  • 8–10 years of experience in Compliance, Governance, Risk, Privacy, Data Protection, or Regulatory Management.
  • Strong experience with GDPR, privacy regulations, and compliance frameworks.
  • Experience working with Workers Councils and Labor Relations organizations.
  • Strong understanding of Microsoft 365 ecosystem and workplace technologies.
  • Experience with DPIA, ROPA, PRA, SBA, and risk assessment methodologies.
  • Strong stakeholder management and negotiation skills.
  • Experience supporting audits and regulatory assessments.
  • Strong documentation, reporting, and presentation skills.
  • Excellent communication and coordination capabilities.
  • Ability to manage multiple stakeholders and complex compliance initiatives simultaneously.

Aufgaben

  • Act as the single point of contact (SPOC) for all compliance-related activities within Workplace Management Services.
  • Coordinate compliance activities across Data Protection, Labor Relations, Workers Council, Cybersecurity, Legal, Service Management, and Project Management teams.
  • Ensure compliance with GDPR, local privacy regulations, workers council agreements, labor laws, and internal corporate policies.
  • Lead the creation, review, maintenance, and approval of Data Protection Impact Assessments (DPIA).
  • Lead the creation, review, maintenance, and approval of Records of Processing Activities (ROPA).
  • Create and maintain Privacy Risk Assessments (PRA) and Security Protection Requirement Analyses (SBA).
  • Develop and maintain data deletion and retention concepts for workplace services.
  • Prepare and maintain information related to data subject rights and privacy notices.
  • Coordinate and manage data subject access requests related to workplace technologies.
  • Assess compliance impacts for new workplace services and modifications to existing services.
  • Review and evaluate technology changes introduced by vendors, including Microsoft and third-party providers.
  • Track Microsoft roadmap updates, release notes, and service enhancements for compliance implications.
  • Identify compliance risks resulting from service updates and ensure timely remediation.
  • Ensure all compliance documentation is updated prior to implementation of service changes.
  • Lead workers council involvement processes for new services and service modifications.
  • Prepare workers council documentation, presentations, reports, and supporting materials.
  • Participate in workers council meetings, workshops, and negotiations in an advisory capacity.
  • Coordinate with labor relations teams regarding workers council requirements and escalations.
  • Ensure all required workers council approvals are obtained before service go‑live.
  • Track and manage workers council action items and commitments.
  • Escalate compliance issues, delays, or approval blockers to appropriate stakeholders.
  • Create and maintain security concepts in cooperation with cybersecurity teams.
  • Coordinate security assessments and security compliance reviews for workplace services.
  • Open, manage, track, and close Technology Risks (TRISK) and other compliance‑related risks.
  • Conduct compliance risk assessments for new technologies and business initiatives.
  • Define corrective and preventive actions to address compliance gaps and findings.
  • Monitor implementation and closure of compliance remediation activities.
  • Develop governance frameworks, standards, policies, and operating procedures.
  • Maintain compliance processes for workplace technologies and digital workplace services.
  • Develop and update Fair Use Policies and acceptable use guidelines.
  • Create and maintain governance documentation from technical and organizational perspectives.
  • Produce regular compliance reports for management, labor relations, workers councils, and regulatory stakeholders.
  • Prepare monthly, quarterly, and annual compliance status reports.
  • Ensure audit readiness for internal audits, external audits, and regulatory reviews.
  • Maintain evidence repositories and compliance documentation required for audits.
  • Support auditors during audits and coordinate closure of audit findings.
  • Develop and deliver compliance awareness sessions, user trainings, and governance workshops.
  • Create user guidance documents, operational procedures, and compliance communications.
  • Maintain a centralized backlog of open, ongoing, and completed compliance activities.
  • Track compliance‑related KPIs and service performance metrics.
  • Monitor service approval timelines and ensure compliance activities are completed within agreed SLAs.
  • Ensure all workplace services are reviewed regularly for regulatory and compliance impacts.
  • Drive continuous improvement initiatives to enhance compliance processes and governance effectiveness.
  • Provide expert guidance on Microsoft 365, Microsoft Teams, SharePoint, OneDrive, Power Platform, Microsoft Copilot, Intune, Azure services, and Zscaler from a compliance perspective.
  • Collaborate with enterprise architects and technical teams to ensure privacy‑by‑design and security‑by‑design principles are implemented.
  • Support strategic workplace transformation initiatives while ensuring regulatory compliance.
  • Maintain strong working relationships with internal and external stakeholders.
  • Provide subject matter expertise during compliance investigations and incident reviews.
  • Support executive management with compliance insights, risk assessments, and decision‑making recommendations.

Kenntnisse

Stakeholder management
Negotiation
Communication
Coordination across teams
Documentation & reporting

Tools

Microsoft 365
SharePoint
OneDrive
Power Platform
Microsoft Copilot
Intune
Azure
Zscaler

Jobbeschreibung

Responsibilities
  • Act as the single point of contact (SPOC) for all compliance-related activities within Workplace Management Services.
  • Coordinate compliance activities across Data Protection, Labor Relations, Workers Council, Cybersecurity, Legal, Service Management, and Project Management teams.
  • Ensure compliance with GDPR, local privacy regulations, workers council agreements, labor laws, and internal corporate policies.
  • Lead the creation, review, maintenance, and approval of Data Protection Impact Assessments (DPIA).
  • Lead the creation, review, maintenance, and approval of Records of Processing Activities (ROPA).
  • Create and maintain Privacy Risk Assessments (PRA) and Security Protection Requirement Analyses (SBA).
  • Develop and maintain data deletion and retention concepts for workplace services.
  • Prepare and maintain information related to data subject rights and privacy notices.
  • Coordinate and manage data subject access requests related to workplace technologies.
  • Assess compliance impacts for new workplace services and modifications to existing services.
  • Review and evaluate technology changes introduced by vendors, including Microsoft and third-party providers.
  • Track Microsoft roadmap updates, release notes, and service enhancements for compliance implications.
  • Identify compliance risks resulting from service updates and ensure timely remediation.
  • Ensure all compliance documentation is updated prior to implementation of service changes.
  • Lead workers council involvement processes for new services and service modifications.
  • Prepare workers council documentation, presentations, reports, and supporting materials.
  • Participate in workers council meetings, workshops, and negotiations in an advisory capacity.
  • Coordinate with labor relations teams regarding workers council requirements and escalations.
  • Ensure all required workers council approvals are obtained before service go‑live.
  • Track and manage workers council action items and commitments.
  • Escalate compliance issues, delays, or approval blockers to appropriate stakeholders.
  • Create and maintain security concepts in cooperation with cybersecurity teams.
  • Coordinate security assessments and security compliance reviews for workplace services.
  • Open, manage, track, and close Technology Risks (TRISK) and other compliance‑related risks.
  • Conduct compliance risk assessments for new technologies and business initiatives.
  • Define corrective and preventive actions to address compliance gaps and findings.
  • Monitor implementation and closure of compliance remediation activities.
  • Develop governance frameworks, standards, policies, and operating procedures.
  • Maintain compliance processes for workplace technologies and digital workplace services.
  • Develop and update Fair Use Policies and acceptable use guidelines.
  • Create and maintain governance documentation from technical and organizational perspectives.
  • Produce regular compliance reports for management, labor relations, workers councils, and regulatory stakeholders.
  • Prepare monthly, quarterly, and annual compliance status reports.
  • Ensure audit readiness for internal audits, external audits, and regulatory reviews.
  • Maintain evidence repositories and compliance documentation required for audits.
  • Support auditors during audits and coordinate closure of audit findings.
  • Develop and deliver compliance awareness sessions, user trainings, and governance workshops.
  • Create user guidance documents, operational procedures, and compliance communications.
  • Maintain a centralized backlog of open, ongoing, and completed compliance activities.
  • Track compliance‑related KPIs and service performance metrics.
  • Monitor service approval timelines and ensure compliance activities are completed within agreed SLAs.
  • Ensure all workplace services are reviewed regularly for regulatory and compliance impacts.
  • Drive continuous improvement initiatives to enhance compliance processes and governance effectiveness.
  • Provide expert guidance on Microsoft 365, Microsoft Teams, SharePoint, OneDrive, Power Platform, Microsoft Copilot, Intune, Azure services, and Zscaler from a compliance perspective.
  • Collaborate with enterprise architects and technical teams to ensure privacy‑by‑design and security‑by‑design principles are implemented.
  • Support strategic workplace transformation initiatives while ensuring regulatory compliance.
  • Maintain strong working relationships with internal and external stakeholders.
  • Provide subject matter expertise during compliance investigations and incident reviews.
  • Support executive management with compliance insights, risk assessments, and decision‑making recommendations.
Requirements
  • Minimum 8–10 years of experience in Compliance, Governance, Risk, Privacy, Data Protection, or Regulatory Management.
  • Strong experience with GDPR, privacy regulations, and compliance frameworks.
  • Experience working with Workers Councils and Labor Relations organizations.
  • Strong understanding of Microsoft 365 ecosystem and workplace technologies.
  • Experience with DPIA, ROPA, PRA, SBA, and risk assessment methodologies.
  • Strong stakeholder management and negotiation skills.
  • Experience supporting audits and regulatory assessments.
  • Strong documentation, reporting, and presentation skills.
  • Excellent communication and coordination capabilities.
  • Ability to manage multiple stakeholders and complex compliance initiatives simultaneously.
Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.
oder ziehe deine Datei hierhin.
Similar jobs

Ähnliche Jobs, die dir auch gefallen könnten

Manager, Platform – Identity Administration
Manager, Platform – Identity Administration

Jobtailor • Deutschland

Hybrid
EUR 90.000 - 140.000
Senior Security Engineer – Microsoft Purview
Senior Security Engineer – Microsoft Purview

Jobtailor • Deutschland

Remote
EUR 70.000 - 100.000
Global Head of Data Protection & Privacy
Global Head of Data Protection & Privacy

DQS Holding GmbH • Bad Vilbel

Vor Ort
EUR 60.000 - 90.000
Cloud Security Expert – specialized in Microsoft Purview
Cloud Security Expert – specialized in Microsoft Purview

Jobtailor • Frankfurt

Vor Ort
EUR 85.000 - 120.000
Senior Workplace Engineer – Microsoft 365 Copilot, German
Senior Workplace Engineer – Microsoft 365 Copilot, German

Jobtailor • Deutschland

Remote
EUR 55.000 - 75.000
Senior Compliance Officer
Senior Compliance Officer

Green Giraffe Advisory • Hamburg

Vor Ort
EUR 90.000 - 130.000
Information Management Consultant – Purview, SharePoint
Information Management Consultant – Purview, SharePoint

Jobtailor • Deutschland

Remote
EUR 70.000 - 100.000
Compliance Officer
Compliance Officer

Software Defined Automation GmbH • München

Vor Ort
EUR 60.000 - 80.000
28 days of annual paid vacation
Flexibility in working hours
In-office weightlifting station
+1
Cloud Security Expert – Purview
Cloud Security Expert – Purview

Jobtailor • Frankfurt

Vor Ort
EUR 70.000 - 110.000
Head of Compliance
Head of Compliance

Jobtailor • Deutschland

Vor Ort
EUR 90.000 - 150.000