Senior GRC Analyst (m,f,x)
The role
We’re looking for a new teammate who will support the implementation and ongoing maintenance of information security compliance and certification programs, working with cross-functional internal teams and external auditing agencies. The person will also support data protection, data privacy, and third-party vendor risk management functions.
The position will be part of the Governance, Risk & Compliance (GRC) team at HelloFresh that is responsible for creating, maintaining and improving HelloFresh’s security risk management program and remediation activities; information security and data privacy related processes, policies, and guidelines; supporting compliance and certification related activities; and driving security awareness and education.
Above all, we are looking for people who will make HelloFresh better. We believe there are many different ways of developing skills and we love diverse experiences! So even if you don’t “tick all the boxes” but think you’d thrive in this role, we would really like to learn more about you.
What you’ll do
- Lead end-to-end compliance readiness for NIS2 and support alignment across other key frameworks (e.g., PCI DSS, CSRD, ISO/SOC and EU AI Act).
- Plan and execute internal control assessments and coordinate external compliance audits on a defined cadence.
- Translate regulatory requirements into practical controls; drive cross-functional implementation across international teams.
- Own remediation management: track findings, evidence, owners, deadlines, and report status to stakeholders.
- Improve GRC maturity through continuous monitoring, clear documentation, and mentoring junior team members.
- Lead internal assessments and coordinate external compliance audits at planned intervals
- Evaluate and validate the design and operational effectiveness of security policies, standards, and internal controls to help reduce compliance risk in the company
- Develop comprehensive and accurate reports and presentations on the compliance landscape for both technical and executive audiences
What you’ll bring
- 3+ years' experience in performing compliance activities in a corporate environment related to IT General Controls (ITGC), SOC 2, ISO 27001, PCI DSS, EU NIS2, and various data privacy directives (GDPR, CCPA/CPRA, etc.)
- Ability to interpret compliance regulations and map them to the actual implementation of systems, whilst referencing various security frameworks
- Experience supporting data privacy regulations (GDPR, CCPA) and third-party risk management programs
- Experience with developing and executing security awareness programs and trainings
- Highly organized and detail-oriented , with an ability to work independentl y
- Industry compliance certifications (CISA, CISM, CISSP) are a plus
- Prior experience working in a SaaS environment, mainly Cloud and AWS-based
What we offer
Elevate your lifestyle! Join one of Europe's fastest-growing tech powerhouses in a dynamic phase of expansion.
- Immerse yourself in a diverse global community of 90+ nationalities.
- Enjoy a competitive compensation package that goes beyond the norm, with perks like a HelloFresh- subsidized Pension Scheme, Berlin relocation support, and a Hybrid working model.
- Elevate your lifestyle with exclusive discounts on your weekly HelloFresh box and office meals.
- Invest in your growth with a German language learning budget, and access to the HelloFresh Academy.
- Plus, we've got your well-being covered with mental health support, transportation perks, and working-parent-friendly benefits. From our 24/7 gym access,wellbeing platforms like Headspace and Spill, to sabbatical leave options, HelloFresh is not just a workplace; it's a lifestyle of perks and possibilities!
Empfohlene Jobs
Produktionsmitarbeiter Leiterplatten (m/w/d)
Das bieten wir moderne Arbeitsplätze in der Elektronikfertigung geregelte Arbeitszeiten im 3-Schichtsystem strukturierte Einarbeitung durch erfahrene Kollegen gute Erreichbarkeit m…
Mechatroniker/Elektroniker (m/w/d) Willkommensprämie* bis zu 3.000€
Verstärken Sie unser Team in Berlin-Spandau Ihr Aufgabenbereich Aufgaben anpacken: Durchführen von Instandsetzungen, einschließlich Störungssuche und -beseitigung an automatisierten Anlagen…
Zugverkehrssteuerer (w/m/d)
Zum nächstmöglichen Zeitpunkt suchen wir dich als Zugverkehrssteuerer (w/m/d) für die DB InfraGO AG in Berlin. Dabei bieten wir dir folgende Einstiegsmöglichkeiten bei uns: Als Zugverkehrssteue…
Concept Artist Environment/Props - Talent Pool (EU)
Side is a global video game development and services provider, offering technical and creative solutions to many of the largest developers and studios around the world. Founded in Japan in 1994, Side…
Steuerberater | 40-60% Homeoffice | Viersen (m/w/d)
Du bist Steuerberater:in – und willst mehr als nur Mandate abarbeiten? Du hast dein Examen – frisch oder vor ein paar Jahren. Du weißt, was du kannst. Aber du willst nicht in einer Kanzlei verschwi…
Geld- und Werttransport Sicherheitsgewerbe ANRUFEN m/w/d
Als [erfolgreicher] Arbeitsvermittler suchen wir ab sofort einen qualifizierten Mitarbeiter (m/w/d) im Sicherheitsgewerbe für unseren Kunden in Berlin. Diese Anstellung erfolgt in Vollzeit. Sie weise…
Kfz-Mechaniker/Mechatroniker (m/w/d)
KFZ Mechaniker Mechatroniker (m,w,d) VRM Motorsport GmbH Berlin-Spandau Wir suchen per sofort in unbefristeter Voll- oder Teilzeit eine(n) KFZ Mechaniker,in bzw. Mechatroniker,in. Deine Au…
Mitarbeiter Leergut in Teilzeit (m/w/d)
Du packst mit an und bist mit vollem Einsatz dabei? Dann bist du hier richtig. Bei Kaufland gehörst du von Beginn an zu einem starken Team und kannst zeigen, was in dir steckt. Werde auch du ein Teil…
Senior Manager Public Affairs (m/w/d)
Für unser Berliner Public Affairs Büro suchen wir Sie zum nächstmöglichen Zeitpunkt als Senior Manager Public Affairs (m/w/d) Ihre Aufgaben Sie beobachten, analysieren und bewe…
Senior Fachreferent Standards Operations (w/m/d)
Pflege unsere interne Wissensdatenbank und halte HR-Themen (z. B. Administration, Abrechnung oder Fahrvergünstigung) inhaltlich und redaktionell aktuell Übernimm Recherchen in Tarifwerken, Richtli…