
Compliance Consultant
Posted Sep 10

Posted Sep 10
This is a fully remote position, open to applicants in Germany, +1 more country.
• Lead and manage compliance projects in alignment with applicable standards and frameworks.
• Create, implement, and uphold detailed compliance policies, procedures, and guidelines.
• Execute internal audits and evaluations, documenting findings and non-conformities.
• Offer recommendations for corrective and preventive measures and assist stakeholders in their implementation.
• Collaborate with stakeholders to conduct risk assessments and establish suitable controls.
• Design, revise, and execute compliance training programs for staff.
• Support and promote the compliance awareness initiative.
• Investigate, address, and provide counsel on intricate compliance-related inquiries, incidents, and complaints.
• Over 3 years of experience in compliance management and implementation, ideally within IT, consulting, or similar sectors.
• Knowledgeable in some of the following standards and regulations: ISO 27001, ISO 27701, ISO 22301, ISO 13485, SOC2, NIST CSF, PCI DSS, GDPR, HIPAA, DORA.
• Demonstrated capability to interpret compliance regulations and framework requirements, translating them into actionable policies and controls.
• Experience in performing compliance or security audits and assessments, which includes planning, execution, reporting, and follow-up.
• Proven experience in drafting and maintaining compliance policies, procedures, and associated documentation.
• Background in security consulting across various industries.
• Strong understanding of information security, risk management, and data protection principles.
• Upper-Intermediate English proficiency (both spoken and written) and fluency in Ukrainian.
• Excellent documentation, presentation, and communication skills, with the ability to clarify complex subjects in a clear and organized manner.
• Familiarity with OWASP frameworks (a plus).
• Practical experience with OWASP SAMM implementation in real-world projects (a plus).
• Relevant professional certifications such as CISA, CISM, CISSP, or similar (a plus).
• Strong analytical and problem-solving skills, capable of structuring and prioritizing complex tasks.
• Exceptional communication and stakeholder management skills.
• Detail-oriented with a strong commitment to precision and quality in documentation and processes.
• Ability to work independently, take initiative, and drive projects to completion.
• Comfortable functioning within cross-functional, distributed teams and managing multiple tasks simultaneously.
• Proactive, responsible, and focused on the continuous improvement of processes and controls.
• Employees have the option to work remotely.
RTX
EnergyHub
Johnson & Johnson
Johnson & Johnson
Get handpicked remote jobs straight to your inbox weekly.