Senior Consultant GRC / Digital Risk
Munich
Netlight
We are consultants, helping leading companies to succeed in the digital landscape, from advice to implementation. Services at the edge of technology, since 1999, creating the future today.
Senior Consultant GRC / Digital Risk (all genders) Standort: Munich Come work with us Netlight strives to be a truly diverse, equitable and inclusive organization. Regardless of who you are, what personality, background, and experience you have, you enrich our culture through your values. Netlight’s purpose is to unleash full potential, realize great careers, and fulfill personal growth. To achieve this, we have a highly engaged network organization, where every employee gets a mentor, delivery coach and personal communities. The key to our continued success is trust and personal responsibility, diverse experiences, challenging opportunities and developing from personal values. Every Netlighter is an active part of building and shaping this culture, which leads to a clear correlation between personal growth and the growth of Netlight. About us Netlightprovides a full range of premium IT-consulting services at the forefront of the digital industry and stands out for its product- and technology-independent expertise in a wide range of industries and clients. We are a network organization of more than 2 000 role models making aspiring digital leaders successful in their business-critical IT projects. Netlight has been awarded several times as top employer, as well as for growth, continued profitability and engagement for diversity, equity and equality within the IT industry. Today we are growing all across Europe, currently with more than 12 active international offices. Your Role· Governance & Compliance: You will advise on requirements stemming from standards and regulations such as ISO 27001, NIS2, DORA, SOC 2, ISO 62443, or ISO 9001, and support certification processes as well as internal and external audits. · Incident Management & Business Continuity: You will design and manage incident management plans, establish and execute business continuity and disaster recovery concepts, and coordinate the collaboration between various stakeholders in critical situations. · Assessments & Audits: You will plan and conduct comprehensive security evaluations—from compliance (e.g., for ISO 27001, SOC 2, DORA, NIS2) to technical security assessments, architecture audits, and technical due diligence—and document your findings in detailed reports for management and clients. · Leadership & Consulting: You will lead project teams, develop security concepts together with interdisciplinary teams (e.g., Cloud Security, Software Development, Compliance), and support sales through the creation of proposals and presentations.
WhatWe’re Looking For · A completed degree in (Business) Informatics, Business Administration, or a comparable field with a focus on IT security · At least 4–7 years of relevant professional experience in consulting, IT security, or compliance · Practical knowledge of common security standards and frameworks such as ISO 2700x, NIS2, DORA, SOC 2, BSI IT-Grundschutz, NIST, or COBIT · Solid expertise in risk management (e.g., ISO 27005) as well as experience in implementing GRC concepts and related measures · The ability to design and implement incident management and business continuity processes · Experience in leading small teams and coordinating interdisciplinary projects · Analytical thinking, strong communication skills, and confidence when interacting with clients and stakeholders · Excellent German and English skills (at least C1) and a willingness to travel nationwide What You Can Look Forward To
What You Can Look Forward To · Challenging and varied projects in the fields of Governance, Risk, and Compliance as well as Information Security · Collaboration with experts from a variety of areas (e.g., Cloud Security, Software Engineering, Pen testing) · Continuous opportunities for professional development through training, certifications, and internal knowledge-sharing sessions · A flexible working model, the possibility of remote work (depending on the project), and attractive compensation packages · An open, dynamic team with flat hierarchies and room for creative input
Curious? We look forward to receiving your application. (This job advertisement is addressed to all genders. We value diversity and equal opportunities.) DON’T BE SHY – GET IN TOUCH WITH US! 😊 If we find that your profile matches what we are looking for, you will hear from us within two weeks of applying. We're looking forward to hearing from you!
WhatWe’re Looking For · A completed degree in (Business) Informatics, Business Administration, or a comparable field with a focus on IT security · At least 4–7 years of relevant professional experience in consulting, IT security, or compliance · Practical knowledge of common security standards and frameworks such as ISO 2700x, NIS2, DORA, SOC 2, BSI IT-Grundschutz, NIST, or COBIT · Solid expertise in risk management (e.g., ISO 27005) as well as experience in implementing GRC concepts and related measures · The ability to design and implement incident management and business continuity processes · Experience in leading small teams and coordinating interdisciplinary projects · Analytical thinking, strong communication skills, and confidence when interacting with clients and stakeholders · Excellent German and English skills (at least C1) and a willingness to travel nationwide What You Can Look Forward To
What You Can Look Forward To · Challenging and varied projects in the fields of Governance, Risk, and Compliance as well as Information Security · Collaboration with experts from a variety of areas (e.g., Cloud Security, Software Engineering, Pen testing) · Continuous opportunities for professional development through training, certifications, and internal knowledge-sharing sessions · A flexible working model, the possibility of remote work (depending on the project), and attractive compensation packages · An open, dynamic team with flat hierarchies and room for creative input
Curious? We look forward to receiving your application. (This job advertisement is addressed to all genders. We value diversity and equal opportunities.) DON’T BE SHY – GET IN TOUCH WITH US! 😊 If we find that your profile matches what we are looking for, you will hear from us within two weeks of applying. We're looking forward to hearing from you!
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Job stats:
9
3
0
Categories:
Compliance Jobs
Consulting Jobs
Tags: Audits Cloud COBIT Compliance Governance ISO 27001 ISO 27005 NIS2 NIST Pentesting Risk management Security assessment SOC SOC 2
Perks/benefits: Career development Equity / stock options Flex hours
Region:
Europe
Country:
Germany
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.
Product Security Engineer jobsInformation Security Specialist jobsSenior Security Analyst jobsSenior Cloud Security Engineer jobsSystems Engineer jobsSenior Cybersecurity Engineer jobsSystems Administrator jobsSenior Information Security Analyst jobsInformation Security Manager jobsCyber Security Specialist jobsSenior Network Security Engineer jobsIT Security Analyst jobsChief Information Security Officer jobsIT Security Engineer jobsSecurity Consultant jobsInformation System Security Officer (ISSO) jobsSecurity Specialist jobsInformation Systems Security Engineer jobsSenior Cyber Security Engineer jobsSenior Information Security Engineer jobsSenior Product Security Engineer jobsCyber Threat Intelligence Analyst jobsCyber Security Architect jobsSecurity Operations Analyst jobsCybersecurity Specialist jobs
SaaS jobsEncryption jobsEDR jobsJava jobsBash jobsThreat detection jobsTop Secret jobsSplunk jobsRMF jobsTerraform jobsIDS jobsSDLC jobsIPS jobsMalware jobsSOC 2 jobsSQL jobsFinance jobsForensics jobsDocker jobsCompTIA jobsActive Directory jobsGIAC jobsIntrusion detection jobsDoDD 8570 jobsITIL jobs
VPN jobsOWASP jobsIT infrastructure jobsCRISC jobsTCP/IP jobsHIPAA jobsAnsible jobsOSCP jobsBanking jobsClearance Required jobsData Analytics jobsMITRE ATT&CK jobsCCSP jobsNIST 800-53 jobsZero Trust jobsIndustrial jobsDNS jobsUNIX jobsEndpoint security jobsSAP jobsCISO jobsPolygraph jobsSOAR jobsJira jobsSOX jobs