Hybrid Governance, Risk, and Compliance (GRC) SME – DACH Region

Posted 5 days ago

Apply now

About the role

  • Cyber GRC Senior Consultant role focused on strengthening cybersecurity and managing risks for clients. Collaborating across teams to implement cybersecurity policies and ensure compliance with standards.

Responsibilities

  • Contribute to global projects within an international team, supported by our parent company’s more than 330,000 technical specialists
  • Participate in the development of consulting offerings and innovative go-to-market solutions for the C‑suite to explain and reduce cyber risks
  • Lead and perform risk analyses based on the NIST Cybersecurity Framework (NIST CSF)
  • Take responsibility for designing innovative new services leveraging AI and ML where they provide real added value
  • Support presales, sales, and account management activities from the perspective of a subject matter expert

Requirements

  • A relevant university degree (Bachelor’s or Master’s) in Information Security, Cybersecurity, or IT Security
  • At least 1–5+ years of professional experience in Cyber Security / Information Security
  • A broad business skill set including stakeholder management, problem‑solving ability, and resilience
  • Experience in collecting, validating, analyzing, documenting, and communicating information to the appropriate audience
  • Good knowledge of the NIST Cybersecurity Framework (NIST CSF)
  • An advanced university degree in Cyber or Information Security
  • Knowledge of ISO 27001, NIS2, SOX, GDPR, DORA
  • Cyber due diligence assessments
  • Cyber risk management for third parties and supply chains
  • Review of incident response plans
  • Support for tenders, RFP responses, and proposals
  • Conducting crisis management exercises (CMX)
  • Certifications such as CISSP, CISM, CISA, GSLC, GSTRT, GCPM
  • Participation in the development of Target Operating Models (TOMs) and RACI matrices
  • Creation of cyber security roadmaps
  • Support for post-incident reviews
  • Analysis and summarization of cyber threat intelligence reports
  • Implementation of cyber compliance programs (GDPR, DORA, ISO 27001, NIS2, SOX)
  • Cyber risk or maturity assessments
  • Design and/or delivery of awareness training
  • Participation in Identity & Access Management projects
  • Participation in Privileged Access Management projects

Job title

Governance, Risk, and Compliance (GRC) SME – DACH Region

Job type

Experience level

Junior

Salary

Not specified

Degree requirement

Bachelor's Degree

Tech skills

Location requirements

Report this job

See something inaccurate? Let us know and we'll update the listing.

Report job