ICT GRC – ICT Governance Manager
N26
Seniority
Midweight
Model
Remote
Sector
Salary
Undisclosed
Contract
Full-Time
About the role
You will drive and evolve the ICT governance framework within the CISO Office, ensuring alignment with regulatory requirements, industry standards, and organisational strategy across a fast-paced digital banking environment. You will work cross-functionally to strengthen governance, operational resilience, audit readiness, and compliance practices.
What you'll do
- Own, define, and continuously evolve the Governance Documentation framework for Information Security within the CISO Office (2nd LoD), including policies, standards, procedures, work instructions, and process flows.
- Ensure governance artifacts remain aligned with regulatory requirements, industry best practices, and organisational strategy.
- Own and strategically develop the Target Measure Catalogue (TMC), ensuring its completeness, regulatory alignment, and operational effectiveness.
- Drive enterprise-wide integration of Target Measure Catalogue requirements into 1st line procedures and operational processes.
- Ensure comprehensive mapping of governance controls to regulations such as MaRisk, DORA, AI Act, CRA, PSD3 and standards including ISO 27001/27002, NIST.
- Act as the subject matter expert for ICT Governance during regulatory reviews and supervisory interactions.
- Own the end-to-end delivery of all IT audits related requests for the CISO Office and act as the primary escalation and decision authority for audit findings.
- Define and implement AI-enabled approaches to automate compliance monitoring and control testing.
What you'll need
- Bachelor's degree in Information Technology, Computer Science, Information Security, or related field.
- Professional certifications such as CISA, CISM, CRISC, or equivalent strongly preferred.
- 6+ years of experience in IT governance, risk management, and information security compliance, ideally within banking or financial services.
- Knowledge of regulatory requirements such as MaRisk, DORA, AI Act, CRA, PSD3 and international standards such as ISO 27001/27002, NIST, COBIT.
- Strong strategic thinking with the ability to translate regulatory complexity into practical governance frameworks.
- Proven leadership and stakeholder management skills across 1st and 2nd line functions.
- Fluency in English required; German (fluent or basic) preferred, with willingness to learn.
What they offer
- Competitive personal development budget, work from home budget, fitness and wellness memberships, language apps, and public transportation discounts.
- Premium N26 bank account subscription and access for friends and family members.
- Additional day of annual leave for each year of service.
- High degree of autonomy, access to cutting edge technologies, and hybrid work setup.
- Relocation package with visa support.

