Senior Consultant – GRC (Governance, Risk & Compliance)

HCLTech Germany

Düsseldorf

Vor Ort

EUR 90.000 - 130.000

Vollzeit

14 Tage+
Bewerbungsgenerator

Mach aus dieser Rolle ein Vorstellungsgespräch — ein Lebenslauf und ein Anschreiben, die darauf ausgerichtet sind, was dieser Arbeitgeber sucht.

Schaffe es an den ATS-Filtern vorbei

Zusammenfassung

HCLTech Germany is seeking an experienced Consultant – GRC (Governance, Risk & Compliance) to support a major German financial services client. You will drive risk management, compliance, audit, and information security initiatives while ensuring regulatory adherence.

Collaborate with security, infrastructure, operations, and business teams to strengthen governance frameworks. You will lead audits, develop and maintain policies and controls, and ensure effective remediation and reporting.

Qualifikationen

  • 10+ years of experience in Governance, Risk & Compliance (GRC), Information Security, IT Audit, or Risk Management.
  • Strong hands-on experience with ISO 27001, risk assessments, compliance frameworks, audit management, and remediation programs.
  • Practical knowledge of SOX ITGC, GDPR, DORA, privacy controls, and security breach management.
  • Experience in complex IT environments including infrastructure, networks, data centers, server management, and IT operations.
  • Mandatory certifications: ISO 27001 Lead Auditor and CISA.
  • German (C1) and English (C1) language skills.
  • Experience in the banking or financial services sector is highly preferred.

Aufgaben

  • Lead and execute governance, risk management, compliance, and information security initiatives.
  • Define, implement, and maintain policies, controls, and certification processes aligned with ISO 27001 and other regulatory requirements.
  • Conduct risk assessments, gap analyses, privacy impact assessments, and oversee remediation activities.
  • Plan and support internal, external, and third-party audits including ISO 27001, MaRisk, ISAE 3000, ISAE 3402, KRITIS, SWIFT, DORA, and ISO 9001.
  • Perform internal control testing, security reviews, and provide recommendations to improve compliance and security effectiveness.
  • Deliver compliance reporting, stakeholder presentations, and security awareness training programs.

Kenntnisse

ISO27001 Lead Auditor
CISA
SOX ITGC
GDPR
DORA
Policy development

Ausbildung

ISO 27001 Lead Auditor Certification
CISA Certification

Jobbeschreibung

We are HCLTech, one of the fastest-growing large tech companies in the world and home to 225,000+ people across 60 countries, supercharging progress through industry-leading capabilities centered around Digital, Engineering and Cloud. The driving force behind that work, our people, are diverse, creative, and passionate, raising the bar for excellence on a regular basis. We, in turn, work hard to bring out the best in them as we strive to help them find their spark and become the best version of themselves that they can be. If all this sounds like an environment you’ll thrive in, then you’re in the right place. Join us on our journey in advancing the technological world through innovation and creativity.

We are seeking an experienced Consultant – GRC (Governance, Risk & Compliance) to support a leading German financial services client. In this role, you will drive risk management, compliance, audit, and information security initiatives while ensuring adherence to regulatory and industry standards. You will work closely with security, infrastructure, operations, and business teams to strengthen governance frameworks and maintain a robust compliance posture.

Key Responsibilities
  • Lead and execute governance, risk management, compliance, and information security initiatives.
  • Define, implement, and maintain policies, controls, and certification processes aligned with ISO 27001 and other regulatory requirements.
  • Conduct risk assessments, gap analyses, privacy impact assessments, and oversee remediation activities.
  • Plan and support internal, external, and third-party audits including ISO 27001, MaRisk, ISAE 3000, ISAE 3402, KRITIS, SWIFT, DORA, and ISO 9001.
  • Perform internal control testing, security reviews, and provide recommendations to improve compliance and security effectiveness.
  • Deliver compliance reporting, stakeholder presentations, and security awareness training programs.
Required Skills & Experience
  • 10+ years of experience in Governance, Risk & Compliance (GRC), Information Security, IT Audit, or Risk Management.
  • Strong hands-on experience with ISO 27001, risk assessments, compliance frameworks, audit management, and remediation programs.
  • Practical knowledge of SOX ITGC, GDPR, DORA, privacy controls, and security breach management.
  • Experience working in complex IT environments including infrastructure, networks, data centers, server management, and IT operations.
  • Mandatory certifications: ISO 27001 Lead Auditor and CISA.
  • German (C1) and English (C1) language skills
  • Experience in the banking or financial services sector is highly preferred.

We promote equal opportunities for all employees, regardless of their cultural and social background, gender, disability, age, religion, beliefs, and sexual identity. We give priority consideration to severely disabled applicants and those of equal status in the case of equal suitability.

HCLTech is committed to protecting and securing the privacy and confidentiality of the Personal Data which it collects directly or indirectly from you when applying for a job at HCLTech either directly or through a third-party human resources agency. This notice (the “Notice”) outlines and explains how HCL Technologies Limited including its subsidiaries, local employing entities, associates, and affiliated companies [collectively referred to as “HCLTech”, “us,” “our”, or “we”] will process your Personal Data in accordance with applicable privacy legislation(s).

Candidate Data Privacy Notice | HCLTech Germany

Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.
oder ziehe deine Datei hierhin.
Similar jobs

Ähnliche Jobs, die dir auch gefallen könnten

Information Security Governance, Risk, and Compliance (GRC) Expert (f/m/d)
Information Security Governance, Risk, and Compliance (GRC) Expert (f/m/d)

Hyundai AutoEver Europe GmbH • Offenbach am Main

Vor Ort
EUR 70.000 - 100.000
Free lunch
Public transport ticket
Gympass
+1
SAP Security/GRC Senior Consultant Role - Digital Platforms - Germany
SAP Security/GRC Senior Consultant Role - Digital Platforms - Germany

Infosys Consulting • München

Vor Ort
EUR 90.000 - 130.000
Senior Consultant GRC
Senior Consultant GRC

suresecure GmbH • Deutschland

Vor Ort
USD 80.000 - 100.000
Flexible Arbeitszeiten
Unbegrenzte Urlaubstage
Individuelle Weiterbildungen
+1
Junior Information Security Consultant
Junior Information Security Consultant

Zync. • Deutschland

Vor Ort
EUR 50.000 - 65.000
Flexible remote working
Continuous development and coaching
Collaborative team culture
+1
Cyber Risk Manager
Cyber Risk Manager

MAM Gruppe • Bayern

Hybrid
EUR 60.000 - 80.000
Flexible working model
Inclusive work culture
Career development opportunities
+3
GRC Consultant - Life Sciences - Germany
GRC Consultant - Life Sciences - Germany

Infosys Consulting • München

Vor Ort
EUR 100.000 - 140.000
Senior HR IT Governance, Senior HR IT Governance, Service Management & Complianc
Senior HR IT Governance, Senior HR IT Governance, Service Management & Complianc

Meyandy LLC • Bonn

Hybrid
EUR 90.000 - 130.000
Senior Information Technology Auditor
Senior Information Technology Auditor

Audit & Risk Recruitment • Hamburg

Hybrid
EUR 70.000 - 100.000
SOC 2 Senior Auditor - Bilingual German
SOC 2 Senior Auditor - Bilingual German

Insight Assurance • Düsseldorf

Remote
EUR 60.000 - 80.000
Flexible Paid Time Off
Performance Bonuses
100% Remote
Senior Consultant, Advisory and Risk Consulting (Manager m/w/d)
Senior Consultant, Advisory and Risk Consulting (Manager m/w/d)

Control Risks Group • Berlin

Hybrid
EUR 100.000 - 140.000
Discretionary bonus
Hybrid work arrangements