Governance, Risk & Compliance Manager
- Employment type
- Full-time
- Location
- Bern · Remote possible
- Company
- RUAG AG, 3014 Bern
- First posted
Governance, Risk & Compliance Manager
The RUAG Real Estate AG is a real estate competence center and a subsidiary of the RUAG MRO Holding AG. We plan and realize customized space, construction, and service solutions within our own real estate portfolio at central locations in Switzerland. Our focus is on the duality of investment and operating real estate, especially for special objects in the fields of aviation, armament technologies, and highly secure infrastructures. Furthermore, our space solutions and operator services create optimal conditions for the business success of our customers. With a holistic approach along the entire real estate life cycle, digital solutions, and long-term customer relationships, we stand for the highest professionalism and sustainable value creation.
Governance, Risk & Compliance Manager
100
Bern
What you can achieve
Central contact point for all GRC topics at the interface between the Group, RUAG Real Estate, and external providers
Responsible for the specialist roles of information security, data protection, trade compliance, Business Continuity Management (BCM), and risk
Responsible for the operation and further development of the Information Security Management System (ISMS) as well as compliance with basic protection and monitoring of internal and external providers regarding contractual SLAs and compliance requirements
Coordination of GRC initiatives as a project manager in coordination with the Group to comply with and ensure Group requirements and monitoring regulatory developments as well as responsibility for the examination and elaboration of local directives and support in the operation of a documentation system
Management of the entire risk process, including the proactive identification and assessment of business and IT risks, the performance of regular risk reviews, and the maintenance of the RUAG Real Estate risk system
Creation of target-group-oriented status reports and dashboards for the division management as well as conducting regular awareness campaigns for employees
Preparation of internal and external audits and support in their implementation as well as ensuring seamless documentation for compliance evidence
What you bring with you
Completed studies in business informatics, business administration, law, or a comparable field of study
Several years of professional experience in the documentation of processes or controls as well as in participating in or leading projects, ideally in a regulatory environment
Sound understanding of IT security and data protection, preferably with knowledge of the revised Data Protection Act (revDSG)
Experience in risk management as well as in the creation and further development of guidelines and frameworks according to ISO 27001 or NIST
Good understanding of the functioning of Service Level Agreements (SLAs)
Communicative personality with high reliability and a confident appearance towards internal and external stakeholders
Quick comprehension of complex Group requirements as well as an independent, structured, and exact way of working
High digital competence as well as affinity for digital tools, GRC software solutions, and the MS Office suite, especially Excel and PowerPoint
Very good German and English skills in speaking and writing
Do you not meet all the requirements one hundred percent? Apply anyway. We are always looking for talented and motivated people who want to enrich our team. We attach great importance to diversity and equal opportunity, and our goal is to build a diverse team in which everyone can fully develop their personal strengths. In particular, we encourage all persons, regardless of their gender, who may have concerns about accepting a position in an army-related environment, to apply.
About the area
The GRC function is responsible for the strategic and operational management of the topics of information security, data protection, risk management, and Business Continuity Management (BCM). It ensures conformity with Group requirements, drives central security projects forward, and optimizes the Service Level Agreements (SLAs) for RUAG and RRE in order to guarantee stable and protected business operations.
Your benefits
Salary and benefits
We offer you a performance-oriented and market-competitive salary, 13 monthly salaries, as well as generous bonuses and allowances. Together with other benefits, this results in an attractive total package.
We attach great importance to our employees finding a healthy balance between work and private life. Therefore, we offer, among other things, flexible working hours and home office options.
Flexible working
Discounts
At RUAG, you benefit from discounts in the areas of mobility and catering. In addition, you benefit from attractive offers on our benefit portal and have fleet discounts with various renowned car brands.
Promotion and further training opportunities
It is important to us to promote and develop the potential of our employees. Through training, courses, and further education, we support them in continuously expanding their skills to achieve their professional goals.
Leisure activities
Our employees are important to us. Therefore, we give them a day off for their birthday, offer a diverse range of sports, and the possibility to take additional days off against wage deduction in addition to the annual holiday entitlement.
Your contact person
Gurtner
Talent Acquisition Specialist
jpid212d289jm jit0833jm jiy26jm
Automatically translated from the original.
Posted 5 days ago