Fractional Security & Compliance Lead (IT & GRC) - Remote

Fractional Security & Compliance Lead (IT & GRC) - Remote

Fractional Security & Compliance Lead (IT & GRC) - Remote

Fractional Security & Compliance Lead (IT & GRC) - Remote

Optiml

Computer-Software

München

  • Art der Beschäftigung: Selbstständig
  • Home-Office

Fractional Security & Compliance Lead (IT & GRC) - Remote

Passt der Job zu Dir?

Mit einem XING Profil siehst Du gleich, welche Deiner Fähigkeiten und Wünsche konkret zum Job passen. Damit Du Dich nicht nur im Home-Office wie zuhause fühlst.

Jetzt anmelden und herausfinden

Über diesen Job

About You

As a Fractional Security & Compliance Lead (20-40%) at Optiml, you will take full ownership of our security and compliance function. You’ll run our SOC 2 Type II and ISO 27001 programs end to end, coordinating audits, managing evidence and remediation, and ensuring controls stay effective as the company scales.

This is a hands-on role. You’ll administer and secure our internal IT and identity stack (Microsoft 365 / Entra ID, Google Workspace, access management, device provisioning), design and enforce RBAC and least-privilege access, and own onboarding and offboarding processes. You’ll also respond directly to enterprise customer security questionnaires, maintaining a clear, reusable knowledge base.

You’ll work closely with the CTO and Head of Operations but operate independently day to day, with flexibility around hours and workload. We’re looking for someone who has done this before—who can move quickly, automate where possible, and treat security as a practical enabler for the business, not a checkbox exercise.

About Optiml

Optiml is revolutionizing real estate with our Real Estate Decision Intelligence (REDI) software—a new class of decision technology that embeds AI to help decarbonize buildings while optimizing asset financial performance.

We are an ETH Zurich spin-off that launched our first product in April 2024 and are now scaling across Europe and the US. We recently raised an oversubscribed €8M Seed round to accelerate our growth, supported by leading VCs such as KOMPAS, Planet A Ventures, Innovation Endeavors (the fund of former Google CEO Eric Schmidt), BitStone Capital, and The Bau Ventures, along with leading angels.

Built on more than a decade of research and proprietary IP, our platform enables institutional investors, owners, and asset managers to make underwritable, forward-looking decisions across the full asset lifecycle — from acquisition to exit — replacing static, backward-looking reports with actionable intelligence.

Trusted by leading organizations across Europe and beyond, Optiml supports capital allocation decisions that balance key financial, regulatory, and sustainable considerations under real-world constraints.

As of early 2026, we are expanding our team to scale our product capabilities and operational delivery as we work to make Real Estate Decision Intelligence the global standard for real estate investment decision-making.

Tasks

Responsibilities

  • Manage the full lifecycle of SOC 2 Type 2 and ISO 27001 compliance programs, utilizing automation platforms like Vanta to ensure continuous control monitoring.
  • Serve as the primary liaison and coordinator for external compliance auditors, managing all evidence submission and remediation timelines.
  • Lead rapid and accurate responses to technical security questionnaires that arise during the enterprise sales due diligence process by maintaining a knowledge base
  • Securely administer and harden core internal IT infrastructure, specifically Google Workspace and Microsoft 365/Entra ID.
  • Handle the IT onboarding/offboarding process for new employees.
  • Design, implement, and audit Role-Based Access Controls (RBAC) across all systems to strictly enforce the Principle of Least Privilege and protect customer data.
  • Develop, maintain, and socialize essential security policies and documentation aligned with GRC frameworks.

Requirements

You Have:

  • Direct experience managing compliance frameworks (SOC 2, ISO 27001) using Vanta or other.
  • Hands-on experience administering Microsoft 365/Entra ID and Google Workspace security configurations.
  • Knowledge of Identity and Access Management (IAM) principles, including RBAC, SSO, and Multi-Factor Authentication (MFA) enforcement.
  • Proficiency in no-code platforms or scripting languages for automating administrative tasks and enforcing configuration standards.
  • Proven ability to operate independently and drive complex, cross-functional security projects.
  • Outstanding written and verbal communication skills .

Benefits

🌍 Impact: Play a critical role in scaling a company transforming how real estate decarbonizes.

⚙️ Ownership: Build and own the operational backbone of a fast-growing startup.

🚀 Growth: Work closely with an exceptional leadership team and gain exposure to all company functions.

🏆 Culture: Join a mission-driven, high-performance, and collaborative team.💡 Benefits: Competitive salary, equity options, learning budget (CHF 1k), and additional insurance support. 25 days paid vacation.

Unternehmens-Details

company logo

Optiml

Computer-Software

1-10 Mitarbeitende

Zurich, Schweiz

Ähnliche Jobs

Senior Cyber Security Consultant / ISMS mit Teamlead-Perspektive (m/w/d)

HvS-Consulting GmbH

Garching bei München + 0 weitere

72.500 €88.000 €

Senior Cyber Security Consultant / ISMS mit Teamlead-Perspektive (m/w/d)

Garching bei München + 0 weitere

HvS-Consulting GmbH

72.500 €88.000 €

Fachlicher Teamleiter - Cyber Security (m/w/d)

Franklin Fitch Limited

München, Hamburg, Stuttgart, Leipzig, Berlin, Frankfurt am Main + 0 weitere

80.000 €95.000 €

Fachlicher Teamleiter - Cyber Security (m/w/d)

München, Hamburg, Stuttgart, Leipzig, Berlin, Frankfurt am Main + 0 weitere

Franklin Fitch Limited

80.000 €95.000 €

Externes Job-Angebot. Von einem Partner.

Wirtschaftsinformatiker als Teamleiter (m/w/d)

Aenova Group

Starnberg + 0 weitere

82.550 €100.895 €

Externes Job-Angebot. Von einem Partner.

Wirtschaftsinformatiker als Teamleiter (m/w/d)

Starnberg + 0 weitere

Aenova Group

82.550 €100.895 €

IT Security Lead (m/w/d)

Rheinmetall AG

München + 0 weitere

77.500 €102.500 €

IT Security Lead (m/w/d)

München + 0 weitere

Rheinmetall AG

77.500 €102.500 €

IT Strategy Lead (m/w/d)

Rheinmetall ICEYE Space Solutions GmbH

München + 0 weitere

81.500 €107.500 €

IT Strategy Lead (m/w/d)

München + 0 weitere

Rheinmetall ICEYE Space Solutions GmbH

81.500 €107.500 €

Projektleitung Cyberresilienz & IT-Asset-Management (m/w/d)

Ludwig-Maximilians-Universität München

München + 0 weitere

57.000 €72.500 €

Projektleitung Cyberresilienz & IT-Asset-Management (m/w/d)

München + 0 weitere

Ludwig-Maximilians-Universität München

57.000 €72.500 €

Head of Campus Network Germany & Service Delivery Manager (Connectivity) (m/w/d)

Airbus

München + 0 weitere

85.000 €113.000 €

Head of Campus Network Germany & Service Delivery Manager (Connectivity) (m/w/d)

München + 0 weitere

Airbus

85.000 €113.000 €

Chief Information Security Officer (m/w/d)

Akkodis Germany Tech Experts GmbH

Augsburg + 0 weitere

Chief Information Security Officer (m/w/d)

Augsburg + 0 weitere

Akkodis Germany Tech Experts GmbH

Head of Secure Identity & Privileged Management (m/w/d)

Hays AG

München + 0 weitere

84.500 €110.000 €

Head of Secure Identity & Privileged Management (m/w/d)

München + 0 weitere

Hays AG

84.500 €110.000 €