GRC Specialist

Hornetsecurity

Hannover

Vor Ort

EUR 50.000 - 70.000

Vollzeit

14 Tage+

Erhalte mehr Antworten von Arbeitgebern

Versende in nur wenigen Minuten einen passgenauen Lebenslauf.

Benefits dieser Stelle

Unlimited contracts
Home-Office Option
Be-Active Bonus

Zusammenfassung

A cybersecurity company in Hannover is looking for an Information Security Specialist to enhance defenses for global clients. The role includes managing security audits, embedding security in projects, and collaborating with the SOC. Candidates should hold a Master's degree and possess 3 years of experience, along with excellent communication skills in English and German. This position offers a hybrid work model and opportunities for professional growth.

Qualifikationen

  • Around 3 years of relevant professional experience.
  • Experience in auditing technical systems.
  • Hands-on with audit tooling.

Aufgaben

  • Own end-to-end delivery of security initiatives.
  • Perform vulnerability assessments and penetration tests.
  • Contribute to ISO 27001 controls.

Kenntnisse

Technical writing
Clear communication
Proactive mindset

Ausbildung

Master’s degree or engineering diploma in IT, computer science, or cybersecurity

Tools

SIEM/SOAR
EDR/XDR
Qualys/Nessus

Jobbeschreibung

Hornetsecurity keeps businesses around the world safe - and now we’re looking for someone in Hannover who’s just as passionate about security as we are. As an Information Security Specialist (m/f/d), you’ll design, build, and strengthen the defenses that thousands of organizations rely on every day. Ready to take on meaningful challenges in a team that moves fast and builds smart? Let’s go.

Your Job
  • Own end-to-end delivery of security initiatives: from scoping and risk assessment to rollout and sign-off.
  • Embed security requirements in product/IT projects (design reviews, threat modeling, test plans).
  • Keep stakeholders aligned and the backlog moving—timelines, deliverables, budgets, and RAID logs.
  • Plan and execute technical security audits across network, endpoint, application, and cloud.
  • Coordinate and/or perform vulnerability assessments and penetration tests (internal & third‑party).
  • Produce crisp findings, prioritized remediation plans, and track closure to “done.”
You support SecOps
  • Partner with SOC: review SIEM alerts, refine detections/use cases, and help with playbooks.
  • Strengthen hygiene: hardening, access governance, logging, and patch cadence.
You keep us compliant & aware
  • Contribute to ISO 27001 controls and readiness (policy updates, SoA evidence, internal audits).
  • Support GDPR in projects (privacy by design, DPIAs, data minimization, breach procedures).
  • Champion secure‑by‑default habits with training and lightweight enablement sessions.
Your Profile
  • You hold a Master’s degree or engineering diploma in IT, computer science, or cybersecurity.
  • You bring around 3 years of relevant professional experience.
Must‑Have Skills & Qualifications
  • First experience in auditing technical systems (configuration, architecture…)
  • Hands‑on with audit tooling and translating results into actionable engineering tasks.
  • Understanding of usual technologies and architectures used in business.
  • Technical writing and the ability to explain complex topics simply.
  • Comfortable running risk assessments and translating policy/control language into practical steps.
  • Clear communicator who can brief execs and coach engineers—with strong documentation skills.
  • Strong command of written and spoken English and German/French; additional languages are a plus.
  • Proactiveness and solution‑oriented mindset.
Nice‑to‑Have Skills / Added Advantage
  • CISSP/CISM.
  • OSCP.
  • PMP/Prince2.
  • NIST / CIS control matrix.
Technology / Tools Knowledge
  • Knowledge of security standards (ISO 27001, NIST CSF, CIS Controls, OWASP (Top 10, ASVS), GDPR) and Development Methodologies (DevSecOps, Agile).
  • SIEM/SOAR (e.g., Sentinel, Splunk), EDR/XDR, vulnerability management (Qualys/Nessus), SAST/DAST.
  • Cloud security (Azure/AWS/GCP), containers/K8s, identity (SSO/MFA/FIDO2), modern auth patterns.
  • GRC Tool management and automation to simplify our compliance process.
  • ITIL V4 level (start with foundation).
Benefits & Opportunities
  • Be part of a growing global company in one of the most dynamic industries – cybersecurity.
  • Short decision paths and flat hierarchies in an open work atmosphere.
  • Personal and professional development opportunities.
  • Unlimited contracts – we’re looking for hornets to grow long‑term with us.
  • Temporary Employee Exchange Program – we provide the ability for you to work at our global office locations and explore the world (e.g., Malta, Madrid, Montréal, Washington D.C.).
  • Home‑Office Option (hybrid) and flexible, trust‑based working time.
  • Team events like Laser Tag, Escape Room or nights out together – let yourself be surprised.
  • Be‑Active Bonus – we’ll keep you healthy with an allowance for your membership in fitness and sports clubs.
  • Referral Bonus: we pay 1500€ for each referral who is successfully hired by us!

Location: Hannover, Lower Saxony, Germany

Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.
oder ziehe deine Datei hierhin.
Similar jobs

Ähnliche Jobs, die dir auch gefallen könnten

Software Developer – Germany
Software Developer – Germany

Hornetsecurity GmbH • Deutschland

Vor Ort
EUR 60.000 - 80.000
Work-from-home option
Be-Active Bonus
Employer contribution to pension plan
+2
Marketing Automation Specialist – Germany
Marketing Automation Specialist – Germany

Hornetsecurity GmbH • Hannover

Vor Ort
EUR 52.000 - 75.000
Home-office option
Flexible working hours
Be‑Active Bonus
+5
Senior Software Developer
Senior Software Developer

Hornetsecurity GmbH • Hannover

Vor Ort
EUR 60.000 - 85.000
Home-Office Möglichkeit
Flexible Arbeitszeiten
Fitness- Mitgliedschaften Zuschuss
+2
Security Administrator
Security Administrator

Lynx Beleggen • Berlin

Hybrid
EUR 80.000 - 110.000
Competitive Salary
Free lunch from our cook
Training budget of €2,000 per year
+3
Technical Support Specialist – Germany
Technical Support Specialist – Germany

Hornetsecurity GmbH • Berlin

Vor Ort
EUR 35.000 - 50.000
Home-Office-Möglichkeit
Be-Active Bonus
30 Tage Urlaub
+1
System Engineer / IT Administrator Network Security Infrastructure, 3207
System Engineer / IT Administrator Network Security Infrastructure, 3207

Hannover Re • Hannover

Hybrid
EUR 50.000 - 70.000
Hybrid work model
30 days annual leave
Company pension scheme
+7
Partner Account Manager - Schwerpunkt Norddeutschland
Partner Account Manager - Schwerpunkt Norddeutschland

Hornetsecurity GmbH • Schleswig-Holstein

Vor Ort
EUR 60.000 - 80.000
Teamevents
Be-Active Bonus
Zuschuss zur betrieblichen Altersvorsorge
+1
CYBER SECURITY GRC SENIOR CONSULTANT (D/F/M)
CYBER SECURITY GRC SENIOR CONSULTANT (D/F/M)

Airbus • Deutschland

Hybrid
EUR 70.000 - 90.000
Mobile working and flexible hours
30 days holiday
Employer-financed pension scheme
+1
Junior Cyber Strategy & Architecture Consultant (m/w/d) - Focus GRC
Junior Cyber Strategy & Architecture Consultant (m/w/d) - Focus GRC

United States Digital Space LLC • Frankfurt

Hybrid
EUR 57.000 - 62.000
Training budget 10,000 EUR every 2 yrs
Annual gross base salary 57,000–62,000
Flexible working hours and homeworking
+2
System Engineer IT Security Vulnerability Management
System Engineer IT Security Vulnerability Management

Hannover Re • Hannover

Hybrid
EUR 60.000 - 80.000
Hybrid work model
30 days of annual leave
Company pension scheme
+7