All positions
IT Compliance Manager
Department:Agile Solutions
Location:Berlin
About the opportunity
We are seeking a Junior IT Compliance Officer to join the Information Risk Management (IRM) Segment and within the IS Controls team at N26. As a member of this team, you will contribute to ensuring that Information Security Controls Framework processes are operated without any disruptions. N26 and its subsidiaries operate in a variety of regulatory environments and across international boundaries, while the IRM team helps N26 to navigate this complex and demanding landscape.
In this role, you will:
Key Activities:
- Frequently communicate with various stakeholders of all levels.
- Execution and review of the Information Security (IS) Controls Framework monitoring process.
- Communicate, Collate and review the evidence received via monthly control review request tickets (TOE).
- Perform QA reviews, query and or seek clarification from stakeholders to achieve the objectives of controls effectiveness
- Highlight the gaps/risks observed during reviews, raise non-conformities, suggest improvements to the teams or stakeholders.
- Liaise with CISO office and the DPO office to provide update on a monthly basis over the status of controls
- Improve awareness of controls and security practices among stakeholders
- Contribute to the team in developing the KRI’s
- Working independently and managing the IS Controls daily tasks.
- Review and update the design of the controls pages from a technical perspective and maintain control calendar.
- Actively work on the change requests from stakeholders
- Preparation and followup of Change Request tickets
- Drafting and publishing of the monthly control reports & other documentation (MoMs).
- Support the team and stakeholders during audits and coordinating the actions items and evidences
- Maintain controls team’s key documentation to ensure audit readiness
- Equally participate in designing controls, developing working instructions and procedures that are required based on security standards and regulations such as ISO 27001, BAIT, EU GDPR, DORA, NIS2
- Facilitate and make sure that all key processes have been documented in an easy and efficient process flow
- Design and update working instructions to implement the requirements coming from the policies
- Identify and surface process or tooling related inefficiencies
- Mapping of Internal control framework to the various regulations/Standards.
What you need to be successful:
Background:
- Bachelor’s or Master’s degree, relevant to information security or computer science.
- You have approximately 2~4 years of experience in a similar role.
- Previous hands-on experience or knowledge on security standards such as ISO 27001, NIST, C5 and other regulatory requirements BAIT, DORA & EU GDPR is a plus.
- Good understanding of Information & Communication Technologies (ICT) and Security controls. Previous experience related to audit/compliance frameworks and methodologies is a plus.
- Ability to communicate clearly with peers, as well as stakeholders of all levels.
- You are proficient in using Jira, Confluence and Google Workspace apps. (i.e. Docs, Sheets, Slides). Good understanding of Google Sheets features and formulas.
- Previous experience with Compliance tools is a plus (i.e. ServiceNow, OneTrust..)
- Ability to analyze and evaluate documentation, reports, data, flowcharts etc, for IT processes such as system development, IT security management, IT operations.
- Fluency in English is strictly required. German proficiency is a plus.
- You have insight into information security and are willing to become acquainted with EU regulatory laws, standard banking requirements as well as banking IT-Systems.
- You have a hands-on mentality and are comfortable to share improvement ideas about existing processes.
What’s in it for you:
- Accelerate your career growth by joining one of Europe’s most talked about disruptors 🚀.
- Employee benefits that range from a competitive personal development budget, work from home budget, discounts to fitness & wellness memberships, language apps and public transportation.
- As an N26 employee you will have access to a Premium subscription on your personal N26 bank account. As well as subscriptions for friends and family members.
- Vacation days vary depending on your location of work. Additional day of annual leave for each year of service.
- A high degree of autonomy and access to cutting edge technologies - all while working with a friendly team of peers of diverse nationalities, life experiences and family statuses.
- A relocation package with visa support for those who need it.