Report directly to C-level, providing regular compliance and risk reporting and representing Nect in regulatory and audit contexts
Own and maintain internal compliance and security policies and procedures, driving adherence across the organization and escalating non-compliance to leadership when necessary
Own and maintain our business continuity management framework, ensuring preparedness across teams and alignment with regulatory expectations
Manage day-to-day GDPR compliance in collaboration with our external DPO, including records of processing activities, data processing agreements, and flagging data protection implications in product development
Draw on domain experts (Product, InfoSec, IT SOC, IT, Engineering, etc.) to ensure our compliance system has the necessary substance across all areas
Maintain a clear overview of the regulatory environment
Lead certifications and audits
Drive compliance awareness across the organization, including coordinating staff training in collaboration with leadership
Requirements
5+ years' experience working as a GRC Manager
Familiarity with frameworks such as eIDAS, DORA, or ISO 27001 is a plus
Confident and composed communicator, able to explain complex topics clearly, calmly, and appropriately to different stakeholders
Assertive with tact and sensitivity
Highly self-driven, structured, and precise working style, with strong problem-solving skills in a dynamic, highly regulated environment
Fluency in German or English at a professional level
Benefits
Flexible working and a modern work environment
Scale-up culture with a focus on security and vision: digital, innovative, ambitious
Flat hierarchies and fast decision-making: real scope for your ideas
Personal development opportunities in a growing tech company with a future
Modern office in Hamburg: central location between the Elbe and Alster with a pleasant working atmosphere
Health benefits: company health insurance package
Team spirit: regular events and exchanges in a motivated environment