Job
- Level
- Lead
- Location
- Bonn
- Working Model
- Hybrid, Onsite
- Job Field
- IT, Project, Security
- Employment Type
- Full Time
- Contract Type
- Permanent employment
- Salary
- 70.000 to 100.000€ gross/year
Job Summary
In this role, you lead the compliance team, conduct internal audits and accreditations, and enhance the operational risk management system. You coordinate certifications and develop internal policies to ensure compliance with security regulations.
Job Technologies
Your role in the team
- In this responsible role, you will assume the professional and disciplinary leadership of the Compliance team and be responsible for the development and implementation of an integrated Compliance and Operational Risk Management System.
- Management and further development of the Compliance, Internal Audit, and Operational Risk Management departments.
- Planning and conducting internal audits as well as supporting external audits and accreditations.
- Further development and maintenance of the written fixed order (SFO), internal guidelines, and policies.
- Development, maintenance, and monitoring of an Operational Risk Management System (OpRisk) for the identification, assessment, and control of operational risks.
- Centralized and proactive coordination of schema requirements within the framework of certifications such as ISO and other relevant standards and accreditations.
- Ensuring compliance with regulatory, normative, and security-related requirements (including sanctions/embargoes).
- Close collaboration with internal departments, management, and external stakeholders, particularly with DAkkS and other supervisory or certification bodies.
- Leadership, motivation, and development of an interdisciplinary team in the field of compliance and risk management.
- Resource planning, goal setting, and promoting an inclusive and risk-aware corporate culture.
- Responsibility for the professional and personal development of team members.
- Further development of the Compliance Management System (CMS) and integration of a holistic Governance, Risk & Compliance (GRC) approach.
- Support of executive management in risk strategy and reporting on compliance and risk developments.
- Catalyst for continuous improvement, process optimization, and internal control systems.
- Sanctions and embargo screening.
This text has been machine translated. Show original
Our expectations of you
Education
- Completed degree in Business, Law, IT Security, Auditing, Risk Management, or a comparable qualification.
Qualifications
- Knowledge of risk management frameworks or ISO regulations (e.g., 17065, ISO 27001), or other relevant standards is advantageous.
- At least basic knowledge of general IT security topics so that you can discuss the implementation of security-related requirements when working with internal departments and IT administration.
- Strong analytical skills, high results orientation, and a structured way of working.
- Strong communication skills, diplomatic tact, and confident demeanor when dealing with internal and external stakeholders.
- Fluent German and good English skills in spoken and written form.
Experience
- Professional experience in compliance, audit, certification, or risk management environment, ideally in an accredited or regulated company.
- First leadership experience and competence in building and leading high-performing teams.
This text has been machine translated. Show original
What we offer
- A job with prospects at a future-proof employer with an increasingly international client base.
- Independent responsibilities as well as meaningful and cross-disciplinary activities in current areas of IT security.
- Individual and professional onboarding and employer-funded training.
- A performance-based salary, an attractive pension scheme, and asset-building benefits.
- Flexible working hours account including flexible working times and the possibility of remote work.
- Excellent accessibility by public transport, subsidy for the Deutschlandticket, and free parking.
This text has been machine translated. Show original
Benefits
Work-Life-Integration
Topics You Will Work On
Job Locations
About Your Employer
SRC Security Research & Consulting GmbH
SRC Security Research & Consulting GmbH, based in Bonn, is a consulting firm specializing in information security. It assists clients in the development and implementation of secure IT systems and serves as the competence center for IT security, auditing, and certification for the German banking industry.
Description
- Company Type
- Established Company
- Working Model
- Hybrid, Onsite
- Industry
- Consulting