GRC Analyst

Datadefend

Frankfurt

Vor Ort

EUR 55.000 - 75.000

Vollzeit

14 Tage+

Erhalte mehr Antworten von Arbeitgebern

Versende in nur wenigen Minuten einen passgenauen Lebenslauf.

Benefits dieser Stelle

Performance bonus
30 days vacation
Annual learning budget (€5,000)
Latest tech equipment
Regular team events

Zusammenfassung

Datadefend is seeking a GRC Analyst based in Frankfurt am Main to support clients with ISO 27001, SOC 2, and NIS2 compliance. Responsibilities include conducting compliance assessments, risk assessments, and developing security policies. The ideal candidate has 2+ years in GRC or information security with a strong knowledge of relevant frameworks. The position offers a competitive salary, 30 days vacation, and a remote-first work approach with optional office access in Frankfurt.

Qualifikationen

  • 2+ years of experience in GRC, audit, or information security.
  • Strong knowledge of ISO 27001, SOC 2, or similar frameworks.
  • Experience conducting risk assessments.

Aufgaben

  • Conduct compliance assessments against ISO 27001, SOC 2, TISAX, and NIS2.
  • Perform risk assessments and develop risk treatment plans.
  • Develop and review security policies, standards, and procedures.
  • Support clients through certification audits.
  • Create compliance documentation and evidence packages.

Kenntnisse

Risk assessments
Documentation skills
Communication skills (German and English)

Ausbildung

Relevant certifications (ISO 27001 Lead Auditor, CISA)

Tools

GRC tools (ServiceNow, OneTrust)

Jobbeschreibung

Governance, Risk & Compliance Remote / Frankfurt am Main Full-time

GRC Analyst

Support clients with ISO 27001, SOC 2, and NIS2 compliance. Conduct risk assessments and develop security policies.

Your Responsibilities
  • Conduct compliance assessments against ISO 27001, SOC 2, TISAX, and NIS2
  • Perform risk assessments and develop risk treatment plans
  • Develop and review security policies, standards, and procedures
  • Support clients through certification audits
  • Create compliance documentation and evidence packages
  • Track regulatory changes and advise clients on implications
Requirements
  • 2+ years of experience in GRC, audit, or information security
  • Strong knowledge of ISO 27001, SOC 2, or similar frameworks
  • Experience conducting risk assessments
  • Excellent documentation and analytical skills
  • Strong communication skills in German and English
  • Relevant certifications (ISO 27001 Lead Auditor, CISA) are a plus
Nice to have
  • + Experience with NIS2 or KRITIS requirements
  • + Knowledge of automotive security standards (TISAX, ISO 21434)
  • + Familiarity with GRC tools (ServiceNow, OneTrust, etc.)
  • + Background in internal audit or Big 4 consulting
What we offer

Competitive salary with performance bonus

30 days vacation + flexible working hours

Remote-first with optional Frankfurt am Main office

Annual learning budget (€5,000) and conference attendance

Latest tech equipment of your choice

Regular team events and offsites

Interested?

Send us your CV and a brief cover letter. We'll get back to you within 48 hours.

Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.
oder ziehe deine Datei hierhin.
Similar jobs

Ähnliche Jobs, die dir auch gefallen könnten

Junior Cyber Strategy & Architecture Consultant (m/w/d) - Focus GRC
Junior Cyber Strategy & Architecture Consultant (m/w/d) - Focus GRC

Meyandy LLC • Frankfurt

Hybrid
EUR 57.000 - 62.000
Training budget
Salary 57k–62k EUR gross
Flexible working hours
+4
Senior Consultant – GRC (Governance, Risk & Compliance)
Senior Consultant – GRC (Governance, Risk & Compliance)

HCLTech Germany • Düsseldorf

Vor Ort
EUR 90.000 - 130.000
Information Security (Senior) Manager (m/w/d)
Information Security (Senior) Manager (m/w/d)

NVISO Security • Frankfurt

Vor Ort
EUR 90.000 - 115.000
Training budget of 10,000 EUR
30 days of vacation
Flexible working hours
+2
Junior Cyber Strategy & Architecture Consultant (m/w/d) - Focus GRC
Junior Cyber Strategy & Architecture Consultant (m/w/d) - Focus GRC

NVISO • Frankfurt

Vor Ort
EUR 57.000 - 62.000
Training budget 10,000 EUR
Annual base salary 57,000–62,000 EUR
Flexible working hours
+5
Information Security Governance, Risk, and Compliance (GRC) Expert (f/m/d)
Information Security Governance, Risk, and Compliance (GRC) Expert (f/m/d)

Hyundai AutoEver Europe GmbH • Offenbach am Main

Vor Ort
EUR 70.000 - 100.000
Free lunch
Public transport ticket
Gympass
+1
Spezialist IT GRC (m/w/d)
Spezialist IT GRC (m/w/d)

Goodman Masson Deutschland • Köln

Hybrid
EUR 60.000 - 90.000
Partnerprogramme-Rabatte
Moderne Büroausstattung
Gute Verkehrsanbindung
+1
Senior Information Security Specialist (m/w/d)
Senior Information Security Specialist (m/w/d)

NVISO Security • Frankfurt

Vor Ort
EUR 70.000 - 90.000
Training budget of 10,000 EUR
30 days of vacation
Flexible working hours
+1
Junior Cyber Strategy & Architecture Consultant (m/w/d) - Focus GRC
Junior Cyber Strategy & Architecture Consultant (m/w/d) - Focus GRC

United States Digital Space LLC • Frankfurt

Hybrid
EUR 57.000 - 62.000
Training budget 10,000 EUR every 2 yrs
Annual gross base salary 57,000–62,000
Flexible working hours and homeworking
+2
IT-Security Manager GRC (m/w/d)
IT-Security Manager GRC (m/w/d)

adp MERKUR GmbH • Deutschland

Vor Ort
EUR 65.000 - 85.000
30 Tage Urlaub
Flexibles Arbeitszeitmodell
Möglichkeit zum mobilen Arbeiten
+3
Information Security & Governance Specialist
Information Security & Governance Specialist

Centre People Appointments • Neuss

Hybrid
EUR 42.000 - 60.000
Hybrid work
No visa sponsorship