ISO 27001 Internal Auditor (German-speaking)
RemoteGermany
Job Summary
Own internal audits for customers end to end, from kickoff through final report delivery. Review and sample evidence on the Secfix platform against ISO 27001 controls, run customer calls to walk through findings, and write clear non-technical reports. Catch critical non-conformities to prevent external audit surprises while maintaining neutrality from implementation work. Manage multiple concurrent audits on schedule and help build repeatable audit structures for TISAX and ISO 42001. Share structured product feedback on recurring platform issues. This individual contributor role supports Secfix's mission to automate security compliance for modern companies across Europe.
Required Qualifications
- C2 German Language
- fluent English
- Up to 2 years of information security background
- Hands-on ISO 27001 internal audit experience
- at least 10+ internal audits you have personally run
- A PECB ISO 27001 Lead Auditor certification or a direct equivalent
- Direct experience auditing inside a modern GRC platform
- Clear, concrete written and spoken English
- ability to explain complex requirements simply
- Remote Work: 100% remote work
- EU time zones
Desired Qualifications
- Experience auditing or implementing TISAX, ISO 42001, NIS2 or SOC 2
- Experience at an early-stage startup (Seed to Series B)
- Exposure to a modern SaaS product
- cross-functional work with product teams
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.