IT Compliance Advisor
Requirements:
- Degree in law, business administration, informatics, or comparable training.
- Professional experience (2+ years) in compliance, data protection, and/or information security.
Knowledge:
- Strong understanding of GDPR, local data protection, compliance laws, and information security frameworks (e.g. ISO27001).
- Awareness of current IT security concepts like i.e. virus protection, encryption, network security and IT infrastructure security monitoring.
- Knowledge of regulatory trends and legal developments.
Capabilities:
- Strong analytical thinking, problem-solving, and risk assessment skills.
- Excellent communication skills for cooperation with internal stakeholders, authorities, and regulators.
- Ability to conduct training and awareness programs effectively.
- Excellent English (spoken and written; fluency recommended).
- German is a plus.
Project description:
We are seeking an IT Compliance Advisor with responsibility for our subsidiaries in Romania and Poland. This role is responsible for supporting the implementation of Information Security, Data Privacy and General Compliance controls, monitoring compliance during business operations as well as advising the subsidiaries in Romania and Poland.
Main responsibilities:
Governance & Compliance Support
- Ensure implementation and monitoring of regional compliance, information security, and data privacy policies in alignment with corporate HQ.
- Report regularly to corporate officers (GOV ISO, CCO, DPO) and local/regional management boards.
- Act as the regional contact person for authorities, regulators, auditors, and corporate departments.
Policy & Control Implementation
- Support rollout of policies, guidelines and controls for data protection (GDPR), compliance, and information security.
- Identify and assess risks from new legal/regulatory/technical requirements.
- Maintain required documentation (e.g., policies, records of processing activities, evidences).
Training, Awareness & Advice
- Provide guidance and training to employees on compliance, privacy, and information security obligations.
- Raise awareness of regulatory expectations and corporate policies.
- Advise on regulatory obligations like Data Protection Impact Assessments and compliance reviews.
Monitoring & Incident Management
- Monitor compliance with local laws, corporate rules, and GDPR requirements.
- Support planning and execution of audits.
- Manage regional compliance, information security, or data protection incidents, including corrective actions and reporting.
- Department
- Software Delivery
- Role
- Quality Engineer
- Locations
- Romania (RO)
- Remote status
- Hybrid
- Employment type
- Full-time
- Experience
- Regular, Senior
- Area
- Other
About Spyrosoft
Spyrosoft is an authentic, cutting-edge software engineering company, established in 2016. In 2021 and 2022, we were among the fastest growing technology companies in Europe, according to the Financial Times. We were founded by a group of tech experts with established backgrounds in software engineering, who created an ‘engineer-to-engineer’ workplace, powered by enthusiasm, fairness and authentic relationships. Having a unique offering, which bridge the gap between technology and business, we specialise in technology solutions for industry 4.0, automotive, geospatial, healthcare & life sciences, employee experience & education and financial services industries.
Already working at Spyrosoft?
Let’s recruit together and find your next colleague.