Overview
In this role you lead the GRC function, shaping strategy and framework to manage cyber risk across IT, OT, and Product Security. You will work with stakeholders to ensure compliance and drive policy enforcement, risk assessments, and awareness programs. You’ll push innovation by embedding AI and automation into core GRC processes and contribute to AI governance. This is a leadership role at a global company, offering growth through cross-functional collaboration and strategic risk management.
Leistungen / Benefits
- flexible working hours
- hybrid working
- opportunities for further training
- secure job
- international travel readiness
- family-friendly conditions
Verantwortungsbereiche
- Lead and manage GRC teams and initiatives
- Develop and implement the GRC strategy and framework
- Oversee information security risk assessments and identify threats and vulnerabilities
- Cover GRC scope across IT, OT, and Product Security with stakeholders
- Develop and enforce policies and procedures to manage cyber risks
- Monitor and report on regulatory and standard compliance at a strategic level
- Manage Awareness and Training Programs
- Collaborate with business units to ensure compliance
- Drive AI and intelligent automation to modernize GRC processes
- Contribute to the AI governance framework
Zentrale Anforderungen
- Bachelor’s/Master’s in Cybersecurity, Computer Science, cybersecurity Risk Management, or related field
- 5+ years in GRC roles and 3+ years in leadership (preferred)
- CISSP or CISM, ISO 27001 Lead Auditor/Implementer, ITIL or COBIT certifications (preferred)
- English required; German and French a plus
- Strong understanding of GRC frameworks and methodologies
- Information Security Policy Management
- Knowledge of regulations and standards
- Information Security Risk assessment and management skills
- Practical understanding of AI applications for GRC and AI governance/risk frameworks
- Forward-looking, innovation-oriented mindset with experience modernizing processes
- Excellent communication and presentation skills
- Willingness to travel globally
- communication and presentation
- stakeholder collaboration
- innovative mindset
- GRC frameworks and methodologies
- Information Security Policy Management
- Information Security Risk assessment and management
Head of Information Security Governance, Risk and Compliance (m/w/d) in Bulle Arbeitgeber: Liebherr
Die Liebherr-Components Deggendorf GmbH ist ein hervorragender Arbeitgeber, der seinen Mitarbeitern nicht nur ein attraktives Gehalt und umfassende Sozialleistungen bietet, sondern auch ein inspirierendes Arbeitsumfeld, in dem Teamgeist und Eigenverantwortung großgeschrieben werden. Mit flexiblen Arbeitszeiten, der Möglichkeit zum mobilen Arbeiten und vielfältigen Weiterbildungsangeboten fördert das Unternehmen die persönliche und berufliche Entwicklung seiner Mitarbeiter und schafft so eine Kultur des Wachstums und der Innovation. Zudem profitieren die Angestellten von einer tariflichen Anbindung und zahlreichen zusätzlichen Leistungen, die das Arbeiten in Deggendorf besonders attraktiv machen.