About the Role:
- You own internal audits end to end, from kickoff to final report, staying independent from implementation.
- You review evidence against ISO 27001 controls and communicate findings in plain language.
- You manage multiple audits on schedule and help build repeatable audit structures.
What You'll Do:
- Own customer internal audits and walk them through findings and non-conformities.
- Review and sample evidence on the Secfix platform.
- Write actionable findings for non-technical founders.
About You:
- Must have C2 German and fluent English.
- 3-4 years of infosec experience with hands-on ISO 27001 internal audit.
- PECB Lead Auditor certification and experience with modern GRC platforms.
What We Offer:
- 100% remote work with virtual office.
- Competitive salary, equity, and development budget.
- 26 days holiday, health insurance, and annual retreat.
Secfix
Secfix automates security compliance for European companies (ISO 27001, GDPR, TISAX, SOC 2). The 100% remote team with hubs in Munich, Berlin, and London is high-performing and backed by top VCs after raising a $12M Series A.