As an IT GRC Leader, you will take ownership of building, implementing, and continuously improving a group-wide Information Security Management System (ISMS) based on ISO 27001. Working closely with executive leadership and cross-functional teams, you will drive governance, risk management, compliance, and security initiatives that strengthen the organization's overall security posture across multiple international entities.
Your responsibilities will include leading ISO 27001 implementation and certification projects, conducting IT and information security risk assessments, and developing policies, standards, and security controls. You will establish governance frameworks, maintain risk registers, coordinate internal and external audits, and drive remediation and continuous improvement initiatives. Acting as the central point of contact for governance and compliance topics, you will collaborate with IT, Legal, HR, Operations, and external stakeholders while providing regular reporting and strategic recommendations to senior management.
To succeed in this role, you bring at least five years of experience in Information Security, IT Risk Management, or Governance, Risk & Compliance (GRC), together with a proven track record of leading ISO 27001 implementation and certification projects. You hold an ISO 27001 Lead Implementer or Lead Auditor certification and have strong experience with risk assessments, compliance frameworks, audits, and stakeholder management. Familiarity with Swiss and/or EU regulatory requirements is highly beneficial. You are an excellent communicator with strong organizational skills and the ability to influence stakeholders across all levels of the business. Fluent English and German are essential. Please note that applicants must hold Swiss or EU citizenship, as visa sponsorship cannot be provided for this position.
This is an excellent opportunity to take on a highly visible leadership role where you will shape and drive a company-wide GRC and information security strategy. You will work closely with executive management, contribute to international projects across multiple regions, and play a key role in establishing best-in-class governance and security practices within a dynamic and growing international organization.
For more information about this position please send your CV to me at Dmitrij.Geier@nicollcurtin.com or call directly under +41 43 215 45 14.