GRC Program Manager (d/f/m)

Posted 12 Hours Ago
Be an Early Applicant
Hiring Remotely in Germany
Remote
Entry level
Events • Software
Relentlessly building smarter solutions to help event businesses win and seeking driven innovators like you to help
The Role
Leads governance, risk, and compliance programs from planning through delivery. Owns third-party audits, evidence collection, remediation, risk assessments, compliance frameworks, vendor risk workflows, and GRC tooling. Partners with Engineering, Product, Legal, and Security to embed controls and privacy practices. Supports enterprise security questionnaires and provides executive reporting through risk dashboards and key risk indicators.
Summary Generated by Built In
Redefine the future of live entertainment tech

Welcome to vivenu, the global leader in event ticketing tech and one of the world’s fastest-growing live entertainment tech firms. We are transforming event ticketing for global leaders like the Grammys, the Golden Globes, Stanford University and the Hockenheimring turning what was once a simple transaction into a strategic business advantage. Backed by over $65 million in funding, our platform empowers event organizers to own their brand experience, unlock deep data insights, and seamlessly integrate ticketing into their digital infrastructure.

With six offices worldwide and growing, we deliver a customizable, intuitive solution and industry-leading support that simplify even the most complex ticketing challenges – helping organizers deliver exceptional experiences and drive real growth.

Join us and build the future of live entertainment.

With over 10 million end users and usage quadrupling annually, our infrastructure now handles over 1 billion requests per month — and counting. Our API-first platform solves complex system challenges at scale — delivering performance, flexibility, and reliability for the world’s leading live entertainment brands.
 

As our GRC Program Manager, you will be the driving force behind vivenu’s Governance, Risk, and Compliance execution. This is fundamentally an execution- and delivery-focused role: you are a true program manager who knows how to get things done yourself while driving cross-functional accountability across Engineering, Product, Legal, and Security teams.

You will lead our GRC initiatives end-to-end, driving audit strategy, owning internal risk workflows, and managing complex compliance projects across the organization. By translating regulatory and framework requirements into actionable, practical business processes, you will ensure vivenu continues to scale securely and responsibly across global markets without sacrificing developer velocity.


As a Senior Security Engineer - AppSec (d/f/m) your responsibilities will include:

  • Drive Program Execution & Ownership: Take full end-to-end accountability for GRC deliverables, setting timelines, tracking cross-functional dependencies, and orchestrating teams to ensure compliance milestones are hit on schedule.
  • Lead Internal Audit Operations: Serve as the primary internal leader and project owner for third party audits (e.g., SOC 2 Type II, PCI DSS, ). Own the process from scoping to successful completion, managing evidence collection, guiding control owners, and leading remediation efforts.
  • Build & Scale Compliance Frameworks: Maintain and mature robust compliance frameworks, ensuring continued preparation for evolving global requirements such as GDPR and related security standards.
  • Manage Risk & Remediation Workflows: Conduct practical IT, security, and third-party risk assessments. Maintain vivenu’s risk register, ensuring risk treatment plans and corrective actions are actively assigned, tracked, and closed out by control owners.
  • Optimize GRC Operations & Tooling: Leverage modern GRC platforms and automation tools to streamline audit tracking, policy administration, vendor risk management and issue remediation workflows.
  • Enable Engineering & Product Teams: Partner closely with technical teams to embed security controls, privacy-by-design, and cloud best practices directly into our development lifecycle and API-first platform.
  • Support Enterprise Sales Readiness: Assist in answering complex enterprise customer security questionnaires, supporting third-party risk reviews, and demonstrating vivenu's robust compliance posture during high-value sales engagements.
  • Governance & Executive Reporting: Translate complex technical and regulatory findings into clear risk posture dashboards, KRIs, and operational updates for leadership.

What you will need to succeed in this role:

  • Execution & Program Management: Proven track record of getting things done: driving cross-functional projects, aligning diverse technical and business stakeholders, and holding teams accountable to deliverables.
  • Audit Leadership Experience: Hands-on experience leading major compliance audits (e.g., SOC 2, PCI DSS, ISO 27001) from start to finish as the internal counterpart and owner.
  • Domain Context: Prior experience in SaaS, Fintech, or cloud-native technology environments is highly preferred. If your background is from another sector, a strong curiosity and fast-learning mindset toward modern cloud, API, and SaaS architectures is required.
  • GRC Experience: demonstrated exposure to GRC and Security processes such as risk assessments, internal audits, policy development, corrective actions management.
  • Framework Familiarity: Solid working knowledge of core industry standards and frameworks (e.g., SOC 2, PCI DSS, ISO 27001, GDPR, NIST CSF/RMF).
  • Communication & Influence: Outstanding ability to translate regulatory requirements into clear operational steps, communicating effectively with both deep technical experts and business executives.
  • Languages: Business fluency in English is required. 
  • Nice to have: 
  • Technical Aptitude: Basic hands-on technical familiarity (e.g., basic scripting, working with APIs, or reading system logs/configurations) is a big plus.
  • Exposure to GRC automation tools (e.g., Vanta, Drata, ServiceNow IRM, or LogicGate).
  • Relevant professional certifications such as CRISC, CISA, CISM, CISSP, CSSP or ISO/IEC 27001 Lead Auditor.
  • German language proficiency would be a plus.

Why join vivenu?

Live Entertainment Tech
Play a mission-critical role for global brands, redefining fan experiences from festivals to major sports events. Here, you’re part of the business of fun — powered by cutting-edge technology that brings moments to life for millions.

Sustainable Growth
We scale sustainably on a profitable, VC-backed foundation with true product-market fit. This means continuous investment in our people, products, and long-term vision.

Top-tier Team
Collaborate with over 160 dedicated professionals, including leaders from Google, Slack, and Salesforce. Together, we’re shaping the future of live entertainment technology, one decision at a time.

Global DNA
We’re a diverse, merit-driven team spread across six global offices. Talent and impact are what matter here — not hierarchy or background.

Fast Growing, in All Aspects
Sifted consistently ranks us among the fastest-growing scale-ups in Europe. We’re driven by daily learning, shared wins, and collective growth.

Next-Gen Leaders & Insights
Work alongside some of tech’s brightest minds — from Forbes 30 Under 30 founders to Executive of the Year award winners. At vivenu, you’ll help set the standard for the ticketing industry’s future.

vivenu Inclusion Statement
At vivenu, we believe our people define our success – and that we win with bold, diverse minds. The strongest teams are built on different perspectives, experiences, and voices. We’re committed to creating a workplace where everyone feels empowered to contribute, grow, and thrive to shape the future of live entertainment globally.

Check out our mission statement and corporate values here.

Skills Required

  • Proven track record driving cross-functional projects, aligning technical and business stakeholders, and managing deliverables
  • Hands-on experience leading major compliance audits such as SOC 2, PCI DSS, or ISO 27001 from start to finish
  • Experience in GRC and security processes, including risk assessments, internal audits, policy development, and corrective action management
  • Working knowledge of SOC 2, PCI DSS, ISO 27001, GDPR, and NIST CSF/RMF frameworks
  • Ability to translate regulatory requirements into operational processes and communicate with technical and executive stakeholders
  • Business fluency in English
  • Prior experience in SaaS, fintech, or cloud-native technology environments
  • Basic technical familiarity with scripting, APIs, system logs, or configurations
  • Experience with GRC automation tools such as Vanta, Drata, ServiceNow IRM, or LogicGate
  • Professional certification such as CRISC, CISA, CISM, CISSP, CSSP, or ISO/IEC 27001 Lead Auditor
  • German language proficiency
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Dusseldorf
150 Employees
Year Founded: 2018

What We Do

Hundreds of thousands of sellers around the globe rely on primary ticketing solutions that haven’t kept up with their needs and expectations. Platforms from the 90s that still feel like we are in the 90s made the jobs of ticket managers worldwide constant miseries. Now there is a better way — customer-centric ticketing! vivenu is a primary ticketing provider that helps event organizers manage, market, and analyze ticket sales from one unified platform. Our mission is to build a ticketing platform that puts ticket sellers first – so they’re empowered to create experiences that people love. We empower organizers to be more efficient, absolutely independent, and fully connected – to say the very least. vivenu is the exclusive ticketing solution for the Grammy Awards, the Special Olympics, FC Schalke 04, Qatar Creates, and many many more. With $65 million in funding from renowned global investors, we’ve set out to revolutionize event ticketing – now and forever. Pumped enough? We are not just another company and we are not looking for people who seek just another job. Ready for personal growth? Join us.

Why Work With Us

Join us to shape the future of live entertainment with purpose and variety. Whether you’re refining innovative product features, creating memorable fan experiences, closing strategic partnerships, or driving customer success — every step at vivenu impacts hundreds of clients and thousands of fans daily. Here, your work truly matters.

Similar Jobs

Pfizer Logo Pfizer

Digital Operations Agentic Lead - Senior Manager

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
Remote or Hybrid
29 Locations
121990 Employees

Pfizer Logo Pfizer

Product Specialist

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
Remote or Hybrid
29 Locations
121990 Employees

InterSystems Logo InterSystems

Senior Sales Engineer

Artificial Intelligence • Big Data • Healthtech • Machine Learning • Software • Database • Analytics
Easy Apply
Remote
Germany
2100 Employees

Atlassian Logo Atlassian

Account Executive

Cloud • Information Technology • Productivity • Security • Software • App development • Automation
In-Office or Remote
Munich, Bayern, DEU
11000 Employees

Similar Companies Hiring

Hanover Park Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
42 Employees
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account