emagine is looking for a senior GRC expert to join a global team focused on driving cyber risk management and strengthening internal control frameworks. This is a high-impact role where you will play a key part in shaping governance structures and ensuring security is embedded across the entire organization.
Key responsibilities
- Lead cyber risk assessments and control reviews to identify gaps and drive necessary remediation efforts.
- Own and maintain the Internal Control Framework, ensuring it remains aligned with evolving business risks.
- Act as a bridge between GRC and technical teams by challenging and validating control designs.
- Implement new controls to ensure full compliance with regulatory requirements.
- Contribute to the development of security policies and standards aligned with ISO 27001 and NIST frameworks.
- Support audit readiness and coordinate activities during external audits.
Requirements
- Strong professional experience in cybersecurity GRC, risk management, and compliance.
- Proven background in ISO 27001 implementation and conducting security audits.
- Hands-on experience working with internal controls and various control frameworks.
- Solid knowledge of regulations such as NIS2, ISO 27001, and GDPR.
- Ability to effectively engage both technical and business stakeholders.
- Strong analytical, problem-solving, and communication skills in an international environment.
What we offer
- A high-impact environment with a significant cybersecurity agenda where your expertise directly influences risk posture.
- The opportunity to work within a collaborative and enabling team that values autonomous, self-starting professionals.
- A fully remote working model for consultants based in Europe.