company

Compliance Engineer - Security & GRC

On-site Full-time

Clicking Apply Now takes you to AutoApply where you can tailor your resume and apply.


Unlock Your Potential

Generate Job-Optimized Resume

One Click And Our AI Optimizes Your Resume to Match The Job Description.

Is Your Resume Optimized For This Role?

Find Out If You're Highlighting The Right Skills And Fix What's Missing

Experience Level

Experience

Qualifications

Key Qualifications:Proven experience in compliance engineering, particularly in security frameworks like ISO 27001.Strong understanding of regulatory requirements in the healthcare sector. Experience with risk management and internal audits. Excellent communication skills and ability to work collaboratively in cross-functional teams. Proficiency in tools for automation and reporting.

About the job

About Us

At Resilience, we are revolutionizing patient care in oncology, gastroenterology, and psychiatry by enhancing access to treatment and support throughout the patient journey. Our health applications are designed not only to improve patient lives but also to develop techniques and processes that minimize patient risks. Joining Resilience means contributing to a tangible mission within a scale-up environment where autonomy and impact are integral to our culture.

Your Role

In Brief:

You will take ownership of our security compliance program (ISO 27001) within the QARA (Quality, Assurance & Regulatory Affairs) team.

Your mission is to lead our Information Security Management System (ISMS) and ensure alignment with the existing quality management system (QMS). This role focuses on GRC/security compliance with a health sensitivity: you will interpret regulatory requirements related to security, collaborate closely with your colleagues and the Security Manager, while remaining deeply rooted in your expertise.

Your Impact:

You will drive Resilience's growth in regulated markets (healthcare, sensitive data) by ensuring our security posture and maintaining credibility with clients, partners, and authorities.

Your Daily Responsibilities:

  • Lead and automate the ISO 27001 ISMS: Full ownership of the ISO 27001 program integrated into the QMS — controls, risk register, policies, internal audits, corrective actions. Build and enhance automation workflows (Notion, AI agents, reporting) to remain audit-ready at all times.

  • Interface between ISMS and medical device cybersecurity: Ensure coherence between ISMS and QMS, support cybersecurity requirements for medical devices (IEC 81001-5-1, IEC 62443, SBOM, MDR Annex I §17) in collaboration with the QARA team, contribute to technical files and audits on security aspects, assist with the security gap assessment for DiGA (BSI TR-03161), and maintain FDA cybersecurity monitoring.

  • Prepare for new regulatory frameworks: Anticipate and translate NIS2, HIPAA, SOC2 requirements into pragmatic controls and concrete deliverables.

Your Team

We do not work in silos here. You will join an agile structure where compliance is truly a team sport:

  • Your Manager: You will report to the Head of QARA, working collaboratively with diverse teams on compliance projects.

  • Team Dynamics: Emphasis on open communication, shared goals, and a supportive environment to enhance compliance practices.

About Resilience

Resilience is a forward-thinking company dedicated to transforming patient care in oncology, gastroenterology, and psychiatry. We focus on enhancing access to treatment and ensuring patient safety through innovative health applications and rigorous compliance practices.

Similar jobs

Tailoring 0 resumes

We'll move completed jobs to Ready to Apply automatically.