- Experiência
- Até 2 anos
- Salário
- —
- Vagas
- 1
- Publicado
- há 5 horas
- Modo de trabalho
- Trabalhe em casa
- Retomar
- Obrigatório candidatar-se
Descrição da vaga
Role Overview
This opportunity is presented on behalf of a partner company based in Germany, seeking an experienced ISO 27001 Internal Auditor. The successful candidate will lead internal audit initiatives, supporting organizations to achieve and uphold superior compliance benchmarks. The position emphasizes evaluating security controls, reviewing evidence, identifying compliance gaps, and offering actionable advice ahead of external certification audits.
You will operate autonomously while maintaining close cooperation with clients to ensure readiness for certifications and foster ongoing security maturity. This role is ideal for candidates who thrive in remote-first environments valuing ownership, expertise, and clear communication.
Key Responsibilities
- Manage the entire internal audit process, from kickoff to final reporting, ensuring client preparedness for external certification audits.
- Analyze and evaluate client documentation and security evidence in relation to ISO 27001 controls to verify compliance.
- Engage with clients to discuss audit outcomes, communicate non-conformances, and deliver clear recommendations for rectification.
- Spot significant compliance gaps and risks that could affect certification success, preparing clients accordingly.
- Produce detailed, actionable audit reports that clearly outline deficiencies, business implications, and next steps in accessible terms.
- Handle multiple audits concurrently while ensuring high-quality results, timeliness, and strong client relationships.
- Maintain independence between auditing and implementation roles to guarantee unbiased evaluations.
- Extend expertise to other compliance frameworks such as TISAX and ISO 42001 and participate in refining repeatable audit processes.
- Offer structured feedback aimed at enhancing security compliance workflows, platform guidance, and overall customer experience.
Qualifications and Experience
- Up to two years of relevant professional experience in information security or related compliance sectors.
- Hands-on experience conducting internal ISO 27001 audits, with a minimum of ten independently executed audits.
- Possession of ISO 27001 Lead Auditor certification (e.g., from PECB or equivalent recognized bodies).
- Experience auditing using modern Governance, Risk, and Compliance (GRC) platforms.
- Deep knowledge of ISO 27001 controls, security compliance standards, and audit procedures.
- Strong command of English with excellent written and verbal communication skills to effectively convey technical concepts to non-specialists.
- Outstanding organizational capabilities to juggle multiple priorities and maintain audit schedules.
- Self-driven, attentive to detail, and confident in managing client-facing audit responsibilities independently.
- Additional familiarity with frameworks such as TISAX, ISO 42001, NIS2, or SOC 2 is advantageous.
- Experience within rapidly expanding startups or with SaaS platforms and cross-functional teams is a plus.
Employee Benefits
- Fully remote role with flexible working hours accommodating European time zones.
- Competitive salary aligned with the local market.
- Equity options offering a stake in the company's long-term growth.
- Annual personal development fund of €1,000 for professional learning and advancement.
- Home office allowance and access to coworking spaces.
- Comprehensive health insurance coverage.
- 26 days annual leave plus regional public holidays.
- Provision of modern hardware including laptop, monitors, and professional accessories.
- Access to mentorship programs and professional growth opportunities with industry veterans.
- Participation in yearly company retreats and team-building events.
- The chance to contribute directly to pioneering security and compliance solutions.
Additional Information
This position operates within a remote-first culture that highly values clarity, autonomy, and collaboration. The recruitment is managed by a partner company responsible for application processing and follow-up. The use of AI-assisted matching streamlines candidate selection while the final hiring decisions are human-led. Data privacy compliance (including GDPR) is ensured throughout the process.