← all jobs

GRC Analyst

Work from home Full-time role Hiring

Empowering every employee. Our mission is to be the world's most used AI employee experience platform by changing the way frontline employees work. At Flip, we have a clear goal: to revolutionize the world for frontline workers and give them a voice. Become a Flip Game Changer and work with an unbeatable team to ensure that all employees, no matter where they work, have access to their company's internal information. If you're ready to make an impact and shape the work lives of millions of people, then you've come to the right place! Job description As a GRC Analyst (Governance, Risk & Compliance), you will be at the center of our compliance operations, reporting directly to the Head of IT. You'll be responsible for managing evidence collection, audit coordination, and the policy lifecycle across four concurrent frameworks (ISO 27001, TISAX, SOC 2 Type II, and Cyber Essentials Plus). This role is ideal for a proactive, tech-savvy professional with 2–4 years of experience who is passionate about acting as a bridge between compliance mandates and technical teams to enable secure, international growth. What you can expect Compliance Control Management: Own the day-to-day administration and continuous improvement of our ISMS (ISO 27001/27017/27018), TISAX assessments, SOC 2 Type II controls, and Cyber Essentials Plus recertification. Evidence & Audit Ownership: Coordinate internal and external audits end-to-end. You will collect, package, and present the evidence trail, managing auditor walkthroughs and finding remediations. Liaison & Collaboration: Act as the crucial link between security and control owners in Engineering and HR. Translate complex compliance requirements into actionable tasks that embed seamlessly into team workflows. Risk Management Execution: Maintain the risk register, coordinate quarterly reviews, and ensure treatment plans are actively managed and documented. Policy Lifecycle & Privacy: Draft and version-control 90+ policies while assisting with data privacy operations, including RoPA, DPAs, and support for Data Subject Requests (DSRs) under GDPR. Security Awareness & Trust: Plan and deliver security training and phishing simulations, while maintaining our Trust Centre content to transform internal security info into client-facing documents. What you bring to the table We’re seeking a detail-oriented, pragmatic professional who can balance robust security requirements with the pace of a fast-growing start-up. Must Haves: Proven Experience: 2–4 years of experience in a GRC or Information Security role. Framework Expertise: Strong, hands-on experience with ISO 27001 and at least one other framework (TISAX, SOC 2, or Cyber Essentials Plus). Policy & Risk Management: Experience managing a significant policy lifecycle (50+ policies) and maintaining risk registers/treatment plans. Technical Fluency: A solid understanding of how SaaS companies operate, with the ability to translate compliance needs for engineering and product teams. Language Skills: Excellent communication skills in both English & German (business fluent) . Nice to Haves:

  • Background in B2B SaaS or tech start-up environments (~100–300 employees).
  • Familiarity with GRC tooling, audit management platforms, or compliance automation tools.
  • Experience working directly alongside engineering teams.

What we offer you Work mode: We’re remote-first, giving you flexibility to work from home. At the same time, we deeply value the power of in-person collaboration. Depending on the role, you’ll join occasional team events, workshops, or meetings in our Berlin or Stuttgart offices - always with plenty of notice. The exact balance will be discussed during your interview. Work-Life-Balance: We don't want you to grow roots to your desk chair. That's why we cover the costs of your E-Gym-Wellpass membership and offer job bike leasing. Celebrating success: Expect highly motivated and committed people in a relaxed working atmosphere. Be part of something bigger : You actively shape Flip in your role. Along the way, you are an enabler of the rapid growth process of a young tech company and grow towards your goals, fun is guaranteed. Happy to be a Flipster: Stay tuned for regular team events and culture days that bring us together as Flipsters. Working abroad: At Flip you can also work abroad in the European Union. Let's talk about remote work in the inte

More open positions

Global intelligence analyst (days/hours tbd)

Work from home Full-time role

Security Analyst - Des Moines, IA - Remote

Work from home Full-time role

EHS Business Partner (Remote w/ Travel)

Work from home Full-time role

EHS Solutions Consultant Intelex Remote, United States + 2 more

Work from home Full-time role

Service EHS Manager

Work from home Full-time role

Power BI Developer :: Denver, CO (Remote)

Work from home Full-time role

Partnership Specialist (Kenya, Madagscar and Zambia)

Work from home Full-time role

Revenue Management Analyst

Work from home Full-time role

Sr. Human Resources Recruiter (Remote)

Work from home Full-time role

Pakistani English Audio Evaluator

Work from home Full-time role

Dynamic Live Chat Specialist – Customer Experience Champion for Remote Support & Digital Engagement at careerzynith

Work from home Full-time role

ABA UM Clinical Consultant

Work from home Full-time role

Senior Consultant, Policy Strategy

Work from home Full-time role

Experienced Part-Time Remote Live Chat Support Agent – Deliver Exceptional Customer Experiences and Drive careerzynith's Success

Work from home Full-time role

Service BI / Analytics Lead

Work from home Full-time role

[Remote] Account Executive | EHR & RCM Software

Work from home Full-time role

Experienced Data Entry Clerk/Typing Specialist – Remote Data Management and Support

Work from home Full-time role

Customer Service Representative – Multi‑Channel Support, Sales & Cash Handling (Remote/Chicago) – Part‑Time Seasonal Role

Work from home Full-time role

Full-Time Mathematics Teacher - Remote

Work from home Full-time role

Director, Product & Technology

Work from home Full-time role

Remote SEO & GEO Strategist Part-Time for CPG Growth

Work from home Full-time role