FREE ACCESS
5,000–10,000 jobs/day
See all jobs on JobTailor
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in information security governance and compliance, with a strong focus on SOC 2 and ISO 27001 audits. Proficient in leveraging automation and AI to enhance GRC processes and vendor risk management.
Highest-signal resume keywords
Information Security GovernanceSOC 2 Audit ExpertiseISO 27001 ComplianceGRC AutomationAI Application in Compliance
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Information Security GovernanceGRCSOC 2ISO 27001TISAXVantaConveyorAutomationAI-Enabled WorkflowsVendor Risk Management
Soft Skills
Entrepreneurial ThinkingClear Communication
Tools & Technologies
VantaConveyor
Certifications & Qualifications
CISACISMCISSPCIPP
Industry Keywords
Compliance ProgramsSecurity AssuranceAudit InquiriesControl EnvironmentSecurity Awareness Program
Tech Stack
Tools & technologiesCloud
About the role
Key responsibilities & impact- Own customer security assurance, ensuring enterprise security questionnaires, due diligence requests, and audit inquiries are handled accurately, consistently, and efficiently.
- Drive the day-to-day operation and continuous improvement of compliance programs, including ISO 27001, SOC 2, TISAX, and emerging regulatory requirements.
- Serve as the subject matter expert during audits and ensure our control environment remains effective and audit-ready.
- Transform compliance from a point-in-time activity into a continuous process by introducing automation and AI into our Vanta-based GRC program.
- Design and improve AI-enabled GRC workflows, leveraging LLMs.
- Strengthen Frontify's vendor risk management program by scaling security assessments through automation.
- Contribute to the continuous improvement of Frontify's security awareness program.
Requirements
What you’ll need- 5+ years of experience in information security governance, GRC, or technology risk within a SaaS or cloud environment.
- Subject matter expert in SOC 2 and/or ISO 27001 audits — not just supporting them, but working directly on controls and partnering with auditors. Experience with additional frameworks such as TISAX or Microsoft SSPA is a plus.
- Hands-on with modern GRC platforms (we run Vanta and Conveyor), and instinctively reach for automation over manual effort.
- Think entrepreneurially, embrace new technologies, and challenge the status quo.
- Genuinely excited about applying AI to compliance work.
- Communicate risk clearly to both technical and business audiences.
- A relevant certification (CISA, CISM, CISSP, CIPP, or similar) is a plus.
- Fluent in English; German is a plus.
Benefits
Comp & perks- A minimum of 25 days annual leave per year
- Parental, family care, and bereavement leave
- Daily sickness benefits and accident insurance
- Paid educational and wellbeing days off
- Wellbeing, learning and development, and commuter allowance
- Home office setup budget
- Pension fund: contributions paid 60% by us and 40% by you
- Access to exclusive perks and discounts from hundreds of top brands
- Workation: Work from inspiring locations around the world for up to 45 days per year!
- Invite to our summer company meet-up
