GRC Analyst

3 weeks, 4 days ago
Full-time
Junior
Cybersecurity
Flip App

Flip App

Flip is the employee app reshaping workplace communication by empowering every employee with a digital workspace for effective communication and workflow management.

Internet Software & Services
51-250
Founded 2018

Description

  • Own the day-to-day administration and continuous improvement of the ISMS, TISAX assessments, SOC 2 Type II controls, and Cyber Essentials Plus recertification.
  • Coordinate internal and external audits end to end, including evidence collection, packaging, presentation, auditor walkthroughs, and remediation follow-up.
  • Act as the liaison between security/control owners in Engineering and HR and translate compliance requirements into actionable workflow tasks.
  • Maintain the risk register, coordinate quarterly risk reviews, and track treatment plans to completion.
  • Draft, version-control, and maintain a large policy set across the compliance program.
  • Support data privacy operations, including RoPA, DPAs, and Data Subject Requests under GDPR.
  • Plan and deliver security awareness training and phishing simulations.
  • Maintain and update Trust Centre content for client-facing security and compliance communications.

Requirements

  • 2–4 years of experience in a GRC or Information Security role.
  • Strong hands-on experience with ISO 27001 and at least one additional framework such as TISAX, SOC 2, or Cyber Essentials Plus.
  • Experience managing a substantial policy lifecycle, including 50+ policies, and maintaining risk registers and treatment plans.
  • Solid understanding of how SaaS companies operate and the ability to translate compliance needs for engineering and product teams.
  • Excellent communication skills in both English and German (business fluent).
  • Background in B2B SaaS or tech start-up environments with approximately 100–300 employees (preferred).
  • Familiarity with GRC tooling, audit management platforms, or compliance automation tools (preferred).
  • Experience working directly alongside engineering teams (preferred).

Benefits

  • Remote-first work with flexibility to work from home.
  • Occasional in-person collaboration in the Berlin or Stuttgart offices with advance notice.
  • Company-covered E-Gym-Wellpass membership.
  • Job bike leasing.
  • Regular team events and culture days.
  • Opportunity to work abroad within the European Union.
  • Relaxed working atmosphere with a motivated team.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Compliance Analyst II

Affirm 1K-5K Diversified Financial Services

Affirm is hiring a Compliance Analyst II to support its compliance governance and oversight program by reviewing consumer complaints, challenging operational responses, and helping ensure compliance with federal and state regulations.

2 hours, 16 minutes ago

Director of Compliance & Privacy

Provider1st 251-1K Health Care Providers & Services

Provider1st is seeking a Director of Compliance to lead healthcare privacy, risk, and regulatory programs that support compliant Release of Information operations as the company scales.

Encryption HIPAA
5 hours ago

Senior Manager / Associate Director, Healthcare Compliance

Orca Bio 51-250 Pharmaceuticals

Orca Bio is seeking a Senior Manager or Associate Director, Healthcare Compliance to build and run its first in-house compliance function supporting pre-commercial activities for its next-generation cell therapy program.

5 hours ago

Tax Research & Regulatory Analysis Specialist

Weekday 11-50 Construction & Engineering

One of our clients is hiring experienced tax professionals to support AI model training and evaluation by analyzing U.S. tax materials, validating legal reasoning, and helping build high-quality tax datasets.

8 hours, 50 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers