GRC Specialist
Description
Requirements
- Fluent English is required for this role
- 3+ years of hands-on information security and GRC experience
- Led at least one successful ISO 27001 certification project as an implementer and/or auditor at a startup or mid-market company
- Has run at least two internal audits before
- Hands-on experience with a GRC platform like Secfix, or similar GRC platforms
- Real depth in at least one framework beyond ISO 27001 (TISAX, SOC 2, GDPR, NIS2, or similar)
- Strong project management skills, able to break down ambiguous initiatives into concrete deliverables, prioritize ruthlessly, and ship
- Excellent written communication, especially producing clear, precise compliance content for diverse audiences (auditors, founders, engineers)
- Strong ownership mindset, operating as an individual contributor without waiting for direction
- Bachelor's degree in computer science, software engineering, or a related technical field, or equivalent hands-on technical experience
Languages
Experience Level
Benefits
About the company
Secfix GmbHEurope's leading all-in-one security compliance automation platform for SMBs and mid-market companies. Secfix automates up to 90% of compliance work for ISO 27001, SOC 2, TISAX, GDPR, NIS2, DORA, and other frameworks — pairing AI-powered automation with dedicated compliance experts. The platform runs 250+ automated security checks, manages vendor risk, handles employee on/offboarding for compliance, and provides an AI-powered virtual CISO. Serves hundreds of customers across 15+ European countries with a 100% audit success rate.
“We are on a mission to automate security and compliance for small and medium-sized businesses.”
Size
Small (10–50)
Employees
25
Glassdoor
4.6 / 5
Tech Stack
Engagement
Part of Collections
Europe's leading all-in-one security compliance automation platform for SMBs and mid-market companies. Secfix automates up to 90% of compliance work for ISO 27001, SOC 2, TISAX, GDPR, NIS2, DORA, and other frameworks — pairing AI-powered automation with dedicated compliance experts. The platform runs 250+ automated security checks, manages vendor risk, handles employee on/offboarding for compliance, and provides an AI-powered virtual CISO. Serves hundreds of customers across 15+ European countries with a 100% audit success rate.