Collaboration Betters The World GmbH
6 months ago
Governance, Risk & Compliance (GRC) Expert (m/w/d)
Sign up to save this job, get alerts, and apply with an optimized CV.
Company information
- Company
- Collaboration Betters The World GmbH
- Location
- Berlin Germany
- Posted
- 6 months ago
Job description
Welcome to CBTW! We are an innovative team with over 3,000 employees in 21 countries and leading in the fields of Strategy & Governance, Software-Engineering, Data Analysis & AI, and more.
As a Governance, Risk & Compliance (GRC) Expert, you will strengthen our Cybersecurity Service Line. Together, we protect companies from constantly evolving cyber threats, ensure regulatory compliance, and strengthen digital asset security.
At CBTW, you will work on exciting customer projects and bring your expertise to our internal Security Community. If you are interested in shaping security strategies, analyzing risks, and making organizations more resilient, we look forward to getting to know you!
Aufgaben
Strategie & Governance
- You support our customers in defining and implementing their information security strategy.
- You organize, structure, and steer security projects.
- You implement and develop information security management systems (ISMS) further.
- You work on creating and developing security guidelines and processes (e.g. Incident Response, Security Policies).
Risikomanagement
- You analyze and assess security risks based on established frameworks (e.g. ISO 27005, EBIOS RM).
- You identify and monitor operational, compliance, and security risks.
- You define and implement security KPIs to measure the security performance.
Compliance & Regulierung
- You support customers in complying with relevant cybersecurity and data protection regulations (e.g. NIS2, DORA, GDPR, NIST).
- You analyze an organization's security status and identify improvement measures.
- You conduct internal audits and accompany compliance processes.
Incident Management
- You coordinate the response to security incidents and accompany their analysis.
- You monitor action plans after incidents or audits and ensure their implementation.
- You develop measures to improve the security situation.
Training & Awareness
- You conduct training sessions and awareness programs on information security and GRC guidelines.
- You promote the introduction of security standards and best practices in organizations.
Neben Deiner Arbeit in Kundenprojekten bringst Du Deine Erfahrung auch in unsere interne Security-Community bei CBTW ein und teilst Wissen sowie Best Practices mit Kolleg:innen.
Qualifikation
Dein Talent
- A completed Bachelor's or Master's degree in the field of Cybersecurity, Information Security, or a comparable qualification.
- At least 5 years of experience in a similar role in the field of Governance, Risk & Compliance or Information Security.
- Fundamental knowledge of ISO-2700X-Standards (ISO 27001, ISO 27002, ISO 27005).
- Experience with risk management methods like EBIOS RM.
- Knowledge of relevant regulatory requirements like NIS2, DORA, or GDPR.
- Experience in implementing or developing an ISMS.
- Very good analytical skills and a structured working style.
- Fluent German and English language skills.
- Zertifizierungen like ISO 27001 Lead Implementer / Lead Auditor or ISO 27005 Risk Manager are advantageous.
- Other certifications like CISM, CISSP, CRISC, or CISA are a plus.
Benefits
At CBTW, you can expect more than just a job – we offer an environment where you can grow, shape, and be yourself. Our culture is built on trust, self-responsibility, and genuine teamwork – whether remote or on-site. We drive innovation together, celebrate successes, and live diversity. The fact that we have been recognized as a
Interested in this position?
Create your free account and tailor your CV to match this job.