Overview
ICT GRC - IT Compliance Manager (fluent German required)
About the opportunity: As an ICT GRC - IT Compliance Manager, you will play a pivotal role in shaping compliance frameworks in an increasingly AI-driven regulatory landscape. You will ensure that our IT systems and information security practices are robust, compliant, and aligned with evolving regulations. You’ll bridge compliance, security, and technology to help the organization meet regulatory obligations while embracing innovation. With AI and automation transforming compliance processes, you will have the opportunity to explore and implement AI-driven solutions to enhance compliance monitoring, risk assessments, and regulatory reporting.
Responsibilities
- Be a part of the bank's risk function (2nd Line of Defense), report to the Deputy CISO and collaborate closely with 1st Line of Defense teams.
- Maintain and update the target measure catalogue, ensuring all measures align with N26 information security standards.
- Assess and verify functional requirements derived from the target measure catalogue, ensuring they meet regulatory and internal standards.
- Lead the task of compliance analysis of the ISMS, ensuring adherence to EU regulations, German regulations, and relevant industry standards. Continuously review current and upcoming IT regulations that impact N26 and map them to internal target measures and IT controls.
- Bring a structured approach to the ways of working within the ICT GRC team to support the CISO role.
- Enable alignment with leadership to prioritize global action items related to information security and team initiatives and gaps that need attention.
- Collaborate with cross-functional teams such as product, technology, and security to address compliance obligations, identify gaps, and develop action plans.
- Monitor and track compliance actions, ensuring stakeholders meet deadlines and documenting progress for audit and reporting purposes.
- Manage compliance exception requests, evaluating associated risks, and ensuring timely follow-up prior to expiry.
- Regularly report compliance progress, highlighting gaps, mitigation efforts, and adherence to regulatory requirements.
- Explore AI-driven approaches to streamline compliance monitoring, automate assessments, and improve regulatory alignment.
- Facilitate discussions with stakeholders ensuring compliance efforts are transparent, proactive, and continuously improving.
- Enable alignment between various teams and stakeholders on key compliance topics and manage conflicts effectively.
- Perform Quality Assurance of IT Security Assessments and deliver audit requirements for the ICT GRC team and reporting for the CISO role.
- Represent the CISO Office on key compliance topics and take independent decisions for the team.
- Take end-to-end responsibility and ownership of listed tasks/topics as agreed with the (D)CISO.
- Execute the team\'s vision for the IT Compliance function and fulfil operational requirements as per the agreed roadmap.
What you need to be successful
Background
- Bachelor's degree in Information Technology, Computer Science, Information Security, or related field (preferable but not mandatory).
- Professional certifications such as CISA / CISM / CRISC, or equivalent are highly desirable.
- Minimum of 6 years of experience in IT risk management, information security, and compliance, preferably within the banking or financial services industry.
- In-depth knowledge of relevant regulatory requirements (MaRisk, BAIT, DORA) and industry standards (ISO 27001/27002, NIST).
- Strong understanding of IT infrastructure, network security, application security, and cloud security.
Skills
- Excellent analytical and problem-solving skills for complex IT and information security risks.
- Ability to proactively recommend improvements and drive changes across the area.
- Strong project management skills; ability to manage multiple tasks and projects simultaneously.
- Ability to manage IT Compliance processes end to end.
- Proficient in using compliance and risk assessment tools with curiosity for AI applications.
- Proficient in using JIRA, Confluence; Figjam is a plus.
- Effective communication and interpersonal skills, with the ability to explain technical concepts to non-technical stakeholders.
- Strong report-writing and presentation skills.
- Fluency in English and German is required
Traits
- Adaptable and eager to learn; stay up-to-date with IT and information security trends.
- Understand business goals and prioritize accordingly.
- Passion for risk management, internal controls, and complex problem-solving.
- Detail-oriented and meticulous; proactive and self-motivated; works independently and in a team.
- Collaborative; creates alignment amongst teams; leads significant work or projects; mentors others.
- Strong ownership, bias for action, and the ability to give constructive feedback.
- Critical thinking and drive to improve the status quo; balanced attention to detail and conceptual thinking.
- Flexible in a fast-changing, agile environment; open to feedback and continuous learning.
- High ethical standards, integrity, and commitment to confidentiality and data protection.
What\'s in it for you
- Accelerate your career growth by joining one of Europe\'s most talked-about disruptors.
- Benefits including a development budget, work-from-home budget, discounts for fitness & wellness, language apps, and public transportation.
- Premium subscription for your personal N26 bank account and subscriptions for friends and family.
- Additional day of annual leave for each year of service.
- Autonomy and access to cutting-edge technologies within a diverse team.
- Relocation package with visa support if needed.
Who we are
N26 has reimagined banking for today\'s digital world. Technology and design empower everything we do as we build a global banking platform. We are headquartered in Berlin with offices across Europe and a 1,500-strong team of diverse nationalities.
Sounds good? Apply now for this position.
Equal Opportunities:
We recognize our strength lies in our people and the varied perspectives they bring. We strive to build talented, diverse teams and empower our people to reach their full potential. We welcome applications from people of all backgrounds, cultures, genders, sexual orientations, abilities, neurodiversities, and ages. We are committed to an inclusive workspace free from harassment and discrimination. If you need any accommodations in the application process, please contact candidate.exp@n26.com.
Visit our website to learn more about Diversity, Equity, & Inclusion at N26.