EU, GRC Expert

  • Remote - Germany

Remote

Cybersecurity

Mid-level

Job description

The world of digital assets is accelerating in speed, magnitude, and complexity, opening the door to new ways for leveraging the blockchain. Fireblocks’ platform and network provide the simplest and most secure way for companies to work with digital assets and it trusted by some of the largest financial institutions, banks, globally-recognized brands, and Web3 companies in the world, including BNY Mellon, BNP Paribas, ANZ Bank, Revolut, and thousands more.

EU GRC Expert (Germany)

The world of digital assets is accelerating in speed, magnitude, and complexity, opening the door to new ways for leveraging the blockchain. Fireblocks’ platform and network provide the simplest and most secure way for companies to work with digital assets and it trusted by some of the largest financial  institutions, banks, globally-recognized brands, and Web3 companies in the world, including BNY Mellon, BNP Paribas, ANZ Bank, Revolut, and thousands more.

About the Role: fully remote position across Germany.

We are looking for a passionate EU Governance, Risk, and Compliance (GRC) expert to contribute to our company’s efforts in aligning with the Digital Operational Resilience Act (DORA) and Markets in Crypto-Assets Regulation (MiCA) in the European Union. This role is also critical to enhance trust and confidence among our customers and stakeholders and will be part of the GRC team which is amongst others responsible for demonstrating the security controls of services and offerings. This position will be focused on the security assurance function, leading on day-to-day security assurance activities, collaborating with cross-functional teams, evaluating compliance and providing evidence of how they meet our internal security measures, the requirements of EU regulators and our most security conscious customers.

This role facilitates our ability to build and maintain assurance through our internal security assurance processes and mechanisms. Ideal candidates will have the ability to learn and comprehend security control implementations and operational effectiveness, Fireblocks services, and IT and auditing processes. They will also be able to evaluate opportunities for improvement, and influence across organizations and teams.

Reporting line: EU GRC Manager

What you will do

  • Manage policies, procedures, and controls to align with EU regulatory requirements, staying up-to-date with the evolving EU regulations.
  • Conduct gap analyses and risk assessments to identify areas of improvement in security, operational resilience, and compliance processes.
  • Collaborate with internal teams and EU customers to establish EU regulatory required baselines and agree the security requirements and associated security controls.
  • Manage requests for evidence relating to key security controls, by working in collaboration with internal and external stakeholders.
  • Liaise between key stakeholders and Fireblocks technical communities to articulate security control implementation.
  • Dive deep into the Fireblocks control environment to develop domain and technical understanding of our security activities and control implementations to enable these to be articulated to customers and internal/external stakeholders.
  • Work across a wide variety of Fireblocks teams to establish and maintain information security documentation.
  • Act as an internal auditor for Fireblock’s assurance to EU regulation.
  • Support EU customers with security matters including audits, due diligence queries, security questionnaires, etc.,
  • Ensure timely identification, assessment, and remediation of risks.
  • Educate and train internal teams on DORA, MiCA and other related regulations and compliance standards to foster a culture of awareness and accountability.

Qualifications:

  • 2+ years of professional experience in performing technical assessments or audits within a cloud environment, including working knowledge of foundational security principles and industry best practices.
  • Demonstrated experience in security, audits, control/risk assessments
  • Proven analytical and quantitative skills, and an ability to use data and metrics to back up assumptions, develop detailed reporting and drive process improvements.
  • Profound knowledge of EU regulatory frameworks such as DORA, MiCA, GDPR, MaRisk, TIBER-EU etc. Strong understanding of industry best practices, frameworks, standards and certifications such as SOC 2, ISO, NIST, CIS etc.
  • Exceptional communication, collaboration, and interpersonal skills, with the ability to engage both technical and non-technical audiences.

Preferred Qualifications:

  • Background in the financial/digital assets sector.
  • Good technological understanding, familiar with product development practices.
  • CISM, CRISC, CISSP or other cyber security management or risk management certifications.

Fireblocks’ mission is to enable every business to easily and securely access digital assets and cryptocurrencies. In order to do that, we strongly believe our workforce should be as diverse as our clients, and this is why we embrace diversity and inclusion in all its forms.

Fireblocks’ mission is to enable every business to easily and securely access digital assets and cryptocurrencies. In order to do that, we strongly believe our workforce should be as diverse as our clients, and this is why we embrace diversity and inclusion in all its forms.

Please see our candidate privacy policy here.

Share this job:
Please let Fireblocks know you found this job on Remote First Jobs 🙏

Benefits of using Remote First Jobs

Discover Hidden Jobs

Unique jobs you won't find on other job boards.

Advanced Filters

Filter by category, benefits, seniority, and more.

Priority Job Alerts

Get timely alerts for new job openings every day.

Manage Your Job Hunt

Save jobs you like and keep a simple list of your applications.

Search remote, work from home, 100% online jobs

We help you connect with top remote-first companies.

Search jobs

Hiring remote talent? Post a job

Frequently Asked Questions

What makes Remote First Jobs different from other job boards?

Unlike other job boards that only show jobs from companies that pay to post, we actively scan over 20,000 companies to find remote positions. This means you get access to thousands more jobs, including ones from companies that don't typically post on traditional job boards. Our platform is dedicated to fully remote positions, focusing on companies that have adopted remote work as their standard practice.

How often are new jobs added?

New jobs are constantly being added as our system checks company websites every day. We process thousands of jobs daily to ensure you have access to the most up-to-date remote job listings. Our algorithms scan over 20,000 different sources daily, adding jobs to the board the moment they appear.

Can I trust the job listings on Remote First Jobs?

Yes! We verify all job listings and companies to ensure they're legitimate. Our system automatically filters out spam, junk, and fake jobs to ensure you only see real remote opportunities.

Can I suggest companies to be added to your search?

Yes! We're always looking to expand our listings and appreciate suggestions from our community. If you know of companies offering remote positions that should be included in our search, please let us know. We actively work to increase our coverage of remote job opportunities.

How do I apply for jobs?

When you find a job you're interested in, simply click the 'Apply Now' button on the job listing. This will take you directly to the company's application page. We kindly ask you to mention that you found the position through Remote First Jobs when applying, as it helps us grow and improve our service 🙏

Apply