Hybrid job

Hybrid

IT GRC Specialist (m/f/d)

And E

Source: PersonioLocation: Ismaning · Check country restrictionsPublished: Aug 17, 2026Confirmed active: Oct 09, 2026
Full-time

Key points from the posting

Tech stack
DORAISO 27001GDPRCOBITNISTITIL
Seniority:
Senior
Benefits
  • Attractive employee conditions for car insurance
  • Employer subsidy for occupational pension scheme and disability pension
  • EGYM Wellpass
Languages:
English, German

Automatically extracted

Our assessment

  • 3 more open roles from this employer in our index.

Automated assessment by nomado24, not an employer statement.

Job description

Cultural Fit

Are you passionate about governance, risk, and compliance in the IT industry? Do you enjoy translating regulatory requirements such as DORA, ISO 27001, and the GDPR into practical, actionable frameworks? Is connecting stakeholders across IT, compliance, and auditing where you shine? Then welcome to AND-E.

How you'll make an impact

  • Strengthen and continuously improve AND-E's IT Governance, Risk & Compliance (GRC) framework across Europe.
  • Coordinate and maintain governance processes, policies, standards, and procedures to ensure compliance with internal and external requirements.
  • Perform IT and cyber risk assessments and maintain the IT Risk Register.
  • Drive the implementation of the ICT Risk Management Framework in line with DORA, ISO 27001, and industry best practices.
  • Coordinate IT control testing, assurance activities, and evidence collection, and support internal/external audits and remediation efforts.
  • Prepare governance reporting, KPIs, KRIs, and presentations for senior management and governance committees.

What it takes to succeed in this role

  • University degree in Information Security, IT, Risk Management, Business Administration, or a comparable field.
  • Several years of professional experience in IT Governance, IT Risk Management, Information Security, IT Compliance, or IT Audit.
  • Solid understanding of governance frameworks and industry standards such as DORA, ISO 27001, COBIT, NIST, and ITIL.
  • Practical experience conducting IT risk assessments and maintaining risk registers, as well as coordinating internal and external audits.
  • Strong stakeholder management and communication skills, with the ability to work independently across international teams.
  • Fluent English required; German language skills are an advantage.

Why join us?

  • Growth is important to us, that’s why we support your personal and professional development
  • A working environment based on trust, encouragement and constructive feedback
  • Collaboration with people from different countries and cultures
  • 32 days annual leave plus 2 days off
  • Flexible working hours and home office policy (approx. 60% possible)
  • Attractive employee conditions for car insurance
  • Exceptional company benefits: Employer subsidy for occupational pension scheme and disability pension, supplementary company health insurance, capital-forming benefits
  • Optional: Job ticket, car parking spaces, monthly travel allowance
  • EGYM Wellpass
  • Financial subsidy as a small wish-fulfiller
  • Free coffee, tea, water and weekly fruit delivery
  • Health management and pme family service
ITFestangestelltepermanent

This role is provided by an external source. Applications are handled on the source website.

New remote jobs like “GRC Specialist” by email

Only when something fitting appears. Free, unsubscribe any time.

Confirm by email. Unsubscribe anytime. Privacy Policy.

All Remote IT Jobs from Home

Or let us search for you

Matching job categories

Not the right job?