The IT company Andersen invites an experienced Compliance Manager to become a part of a successful team.
Andersen is a pre-IPO software development company that provides a full cycle of services. For over 19 years, we have been helping enterprises and middle-sized firms transform their businesses by creating effective digital solutions using innovative technologies.
– Leading and supervising the compliance officers team.
– Developing, updating, and enforcing internal compliance policies and procedures.
– Ensuring compliance with GDPR, ISO standards, SOC frameworks, and HR/operational regulations across regions.
– Conducting internal risk assessments, audits, and compliance training for employees.
– Producing regular reports for senior management on compliance status and risk exposure.
– Developing and launching new compliance services for the company’s clients (audits, readiness programs, DPO-as-a-Service, etc.).
– Acting as a subject matter expert in compliance and information security for client engagements.
– Supporting sales and presales teams in designing compliance-related solutions.
– Overseeing high-quality delivery of compliance consulting projects.
– Leading initiatives to obtain and maintain certifications (ISO 27001, ISO 9001, ISO 27701, SOC 2, etc.).
– Managing relationships with external auditors and certification bodies.
– Maintaining ISMS/PIMS documentation and ensuring continuous compliance with frameworks.
– Experience in compliance, information security, risk management, or similar roles for at least 5 years.
– Experience managing or mentoring compliance teams.
– Understanding of GDPR, ISO 27001, SOC 2, and global regulatory requirements.
– Experience in the Healthcare domain.
– Experience with ISO 13485, HIPAA, PDPL, GDPR, DiGa, CFR 21 Part 11 FDA.
– Experience in IT, software development, or a consulting environment.
– Documentation, process management, and communication skills.
– Ability to work cross-functionally with Legal, HR, Security, and executive leadership.
– English proficiency at Upper-Intermediate+ level or higher.
– Certifications such as ISO 27001 Lead Implementer/Auditor, CISM, CISA, CIPM, or equivalent.
– Experience building compliance services in consulting or technology companies.
– Knowledge of risk management frameworks (NIST, COBIT, CIS).