Description
The GRC expert develops and maintains an integrated governance, risk, and compliance approach covering information security, data protection, IT service management, regulatory compliance, and internal controls. The role advises business departments, harmonizes policies and controls, conducts IT and organizational risk analyses, translates regulations into controls, maintains the internal control system, supports audits and certifications, and develops practical guidelines and decision aids. The position requires a relevant degree, several years of GRC experience, knowledge of regulations and standards, analytical and communication skills, and German at C1 level; mobile working is available from the Pliezhausen site.
