{"version":"0.1","company":{"name":"YubHub","url":"https://yubhub.co","jobsUrl":"https://yubhub.co/jobs/skill/innovation-promotion"},"x-facet":{"type":"skill","slug":"innovation-promotion","display":"Innovation Promotion","count":1},"x-feed-size-limit":100,"x-feed-sort":"enriched_at desc","x-feed-notice":"This feed contains at most 100 jobs (the most recently enriched). For the full corpus, use the paginated /stats/by-facet endpoint or /search.","x-generator":"yubhub-xml-generator","x-rights":"Free to redistribute with attribution: \"Data by YubHub (https://yubhub.co)\"","x-schema":"Each entry in `jobs` follows https://schema.org/JobPosting. YubHub-native raw fields carry `x-` prefix.","jobs":[{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_0d6b0b5c-92a"},"title":"Governance, Risk, and Compliance (GRC) SME- (m/w/d) DACH-Region","description":"<p><strong>Job Description</strong></p>\n<p>You will be part of a team that supports CIOs in managing central challenges such as geopolitical and macroeconomic uncertainty, cybersecurity, digital transformation, and budget restrictions. As a Cyber GRC Senior Consultant, you will work with security, IT, and compliance teams to strengthen cybersecurity, manage cyber risks, and ensure regulatory compliance.</p>\n<p><strong>Key Responsibilities</strong></p>\n<ul>\n<li>Participate in global projects in an international team, supported by over 330,000 technical professionals from our parent company</li>\n<li>Contribute to the development of consulting offerings and innovative go-to-market solutions for the C-Suite to make cyber risks understandable and reducible</li>\n<li>Lead and conduct risk analyses according to the NIST CSF</li>\n<li>Be responsible for conceiving innovative new services using AI and ML where they offer real added value</li>\n<li>Support pre-sales, sales, and account management activities from the perspective of a subject matter expert</li>\n</ul>\n<p><strong>Requirements</strong></p>\n<ul>\n<li>You have a clear career progression and experience working with renowned consulting firms and large commercial sector customers</li>\n<li>You bring a strong passion for cybersecurity and actively follow current industry trends and developments</li>\n<li>Your cybersecurity expertise includes:</li>\n</ul>\n<p>+ A relevant university degree (Bachelor or Master) in Information Security, Cybersecurity, or IT Security \t+ At least 1-5+ years of experience in the field of Cyber Security/Information Security \t+ A broad business competence profile, including stakeholder management, problem-solving ability, and resilience \t+ Experience in collecting, validating, analyzing, documenting, and communicating information to stakeholders</p>\n<p><strong>Desired Skills</strong></p>\n<ul>\n<li>Good knowledge of the NIST Cybersecurity Framework (CSF)</li>\n<li>A further university degree in Cyber or Information Security</li>\n<li>Cyber Due Diligence Assessments</li>\n<li>Cyber Risk Management for third parties and supply chains</li>\n<li>Review of Incident Response Plans</li>\n<li>Support in tenders, RFP responses, and offers</li>\n<li>Conducting Crisis Management Exercises (CMX)</li>\n<li>Certifications such as CISSP, CISM, CISA, GSLC, GSTRT, GCPM</li>\n<li>Participation in the development of Target Operating Models (TOMs) and RACI matrices</li>\n<li>Creation of Cyber Security Roadmaps</li>\n<li>Support in Post-Incident Reviews</li>\n<li>Analysis and summarization of Cyber Threat Intelligence Reports</li>\n<li>Implementation of Cyber Compliance Programs (DSGVO, DORA, ISO 27001, NIS2, SOX)</li>\n<li>Cyber Risk or Maturity Assessments</li>\n<li>Conception and/or implementation of Awareness Trainings</li>\n<li>Participation in Identity &amp; Access Management Projects</li>\n<li>Participation in Privileged Access Management Projects</li>\n</ul>\n<p><strong>Ideal Candidate Profile</strong></p>\n<ul>\n<li>Our ideal candidates have the following skills:</li>\n</ul>\n<p>+ Strong business competence, particularly in stakeholder management and problem-solving \t+ Experience in preparing and communicating complex information to stakeholders \t+ Very good communication skills in German (C2) and English (C2) and project-related travel readiness \t+ Enjoy working with customers from different industries \t+ Experience in balancing technical and commercial requirements to develop practical solutions \t+ Ability to build lasting business relationships at all levels \t+ Ability to provide expert support and guidance to less experienced colleagues \t+ Ability to explain complex cyber methods in a non-technical and understandable way (written and oral)</p>\n<p><strong>Benefits</strong></p>\n<p>You will be part of a team that supports CIOs in managing central challenges such as geopolitical and macroeconomic uncertainty, cybersecurity, digital transformation, and budget restrictions. Our team of business analysts, enterprise architects, and cyber security specialists combines operational, strategic, analytical, and innovative competencies to drive business-IT alignment, IT governance transformation, IT cost optimization, efficiency improvement, innovation promotion, and cyber risk, governance, and compliance topics.</p>\n<p><strong>About Infosys Consulting</strong></p>\n<p>You will be part of a globally renowned management consulting firm that is on the front-line of industry disruption. We are a mid-size player with a supportive, entrepreneurial spirit that works with a market-leading brand in every sector, while our parent organization Infosys is a top-5 powerhouse IT brand that is outperforming the market and experiencing rapid growth.</p>\n<p>Our consulting business is annually recognized as one of the UK&#39;s top firms by the Financial Times and Forbes due to our client innovations, our cultural diversity, and dedicated training and career paths we offer to our consultants. We are committed to fostering an inclusive work culture that inspires everyone to deliver their best.</p>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_0d6b0b5c-92a","directApply":true,"hiringOrganization":{"@type":"Organization","name":"Infosys Consulting - Europe","sameAs":"https://jobs.workable.com","logo":"https://logos.yubhub.co/view.com.png"},"x-apply-url":"https://jobs.workable.com/view/oexxh4mvWPKhUMdVS3q5pd/hybrid-governance%2C-risk%2C-and-compliance-(grc)-sme--(m%2Fw%2Fd)-dach-region-in-munich-at-infosys-consulting---europe","x-work-arrangement":"hybrid","x-experience-level":"senior","x-job-type":"full-time","x-salary-range":null,"x-skills-required":["Cybersecurity","Risk Management","Regulatory Compliance","NIST CSF","Cyber Due Diligence Assessments","Cyber Risk Management","Incident Response Plans","Crisis Management Exercises","Certifications","Target Operating Models","RACI matrices","Cyber Security Roadmaps","Post-Incident Reviews","Cyber Threat Intelligence Reports","Cyber Compliance Programs","Cyber Risk Assessments","Awareness Trainings","Identity & Access Management","Privileged Access Management"],"x-skills-preferred":["German","English","Stakeholder Management","Problem-Solving","Resilience","Communication","Project Management","Business Analysis","Enterprise Architecture","Cyber Security","IT Governance","IT Cost Optimization","Efficiency Improvement","Innovation Promotion"],"datePosted":"2026-03-09T16:54:02.938Z","employmentType":"FULL_TIME","occupationalCategory":"IT","industry":"Consulting","skills":"Cybersecurity, Risk Management, Regulatory Compliance, NIST CSF, Cyber Due Diligence Assessments, Cyber Risk Management, Incident Response Plans, Crisis Management Exercises, Certifications, Target Operating Models, RACI matrices, Cyber Security Roadmaps, Post-Incident Reviews, Cyber Threat Intelligence Reports, Cyber Compliance Programs, Cyber Risk Assessments, Awareness Trainings, Identity & Access Management, Privileged Access Management, German, English, Stakeholder Management, Problem-Solving, Resilience, Communication, Project Management, Business Analysis, Enterprise Architecture, Cyber Security, IT Governance, IT Cost Optimization, Efficiency Improvement, Innovation Promotion"}]}