Über diese Security & Compliance Consultant Stelle bei BreachLock
About BreachLock
BreachLock Inc. is a global leader in automated penetration testing services, offering cutting-edge Web, Network,
and API Pen Testing solutions. Our proprietary technology and expertise have earned the trust of over 1,200 clients
worldwide. We thrive on innovation, collaboration, and delivering exceptional results that redefine cybersecurity
standards.
Role Overview
We are looking for a detail-oriented Security & Compliance Consultant to support our Security & Compliance
function. The ideal candidate will assist with compliance operations, audit readiness, and contract review, while
building a strong understanding of security frameworks and emerging areas such as AI governance. You will work
closely with the Security & Compliance team and collaborate with cross-functional teams.
Requirements
- Support the review of contracts and related documents, flagging risks for escalation where needed.
- Assist in maintaining compliance readiness against recognized security and privacy frameworks.
- Support internal and external audits, including evidence collection and coordination.
- Help monitor and track compliance controls across the organization.
- Assist with endpoint security monitoring, using an understanding of endpoint detection and response (EDR) tools and concepts.
- Support security awareness initiatives, including training content and internal communications.
- Contribute to periodic security and compliance reporting for leadership.
- Maintain accurate and organized compliance documentation.
Required Qualifications
- Bachelor's degree in Cybersecurity, Information Security, Computer Science, or a related field; candidates with strong practical experience in lieu of a formal degree will also be considered.
- 1–3 years of experience in compliance, GRC, or a related security function.
- Working knowledge of at least one security framework, such as SOC 2, ISO 27001, ISO 42001, or NIST.
- Basic understanding of endpoint detection and response tools and concepts.
- Strong written communication skills, with the ability to summarize risk clearly for non-technical stakeholders.
- Ability to work cross-functionally across teams.
Preferred Qualifications
- Prior exposure to contract or document review.
- Interest or working knowledge in AI governance and how AI relates to cybersecurity and compliance.
- Relevant certifications or training, such as ISO 27001 Lead Auditor/Implementer, CISA etc, completed or in
- progress.
Benefits
- Mentorship from experienced Security & Compliance professionals.
● Exposure to real-world audits and enterprise compliance operations.
● A growth path toward broader GRC and compliance management roles.
● Support for relevant certifications and professional development.