Rodeo
Get started

DeepHealth

Governance, Risk, and Compliance (GRC) Specialist

Hazerswoude-Dorp
€65k – €75k/yr
Posted 1 day ago
Sign up to applySee more jobs like this

How your CV stacks up

1Upload CV
2Analyse CV
3Improve CV

Upload your CV to see how well it fits this job role

?%

The Governance, Risk, and Compliance (GRC) Specialist

The Governance, Risk, and Compliance (GRC) Specialist is a strategic role within DeepHealth’s Quality, Regulatory, and Compliance department, responsible for assisting in the development, implementation, and maintenance of comprehensive information security compliance strategies. This position is critical in protecting organizational data, ensuring regulatory adherence, and mitigating potential security risks in the complex digital health landscape.

Duties and Responsibilities

As the Governance, Risk, and Compliance Specialist, this position will work with Information Security, IT Operations, Sec Operations and the broader Compliance team to:

  • Develop and implement holistic security compliance programs
  • Use Vanta to manage existing security certifications and requirements
  • Manage comprehensive risk management frameworks
  • Design and maintain security policies, procedures, and guidelines
  • Continuously assess and update security strategies
  • Ensure alignment with organizational objectives and regulatory requirements

Regulatory Compliance:

  • Ensure compliance with complex regulatory standards and certifications including, but not limited to:
    • HIPAA
    • SOC 2
    • ISO 27001
    • C5
    • DSP Toolkit
    • Cyber Essentials
    • HITRUST
  • Conduct thorough risk assessments and vulnerability evaluations
  • Prepare detailed compliance reports and documentation
  • Support external and internal audit processes
  • Track and implement regulatory changes

Technical Security:

Reasons to use Rodeo

I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?

Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.

Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.

Start with a chat, not a search bar

Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.

P

Graduate Consultant — 2026 Scheme

PwC·London, UK
£35,000/yr

Why you're a good match

Strong

Your economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.

See breakdown
Save jobNot relevant
View details

It searches the market for you

Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.

Why you're a good match

You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.

See breakdown
Strong

Experience fit

Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.

See breakdown
Strong

Only hits

No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.

  • Perform comprehensive security vulnerability assessment
  • Develop and implement security control frameworks
  • Monitor and analyze security incidents and breaches
  • Design and conduct security awareness training programs
  • Manage access control and identity management systems
  • Evaluate and recommend security technologies and solutions

Incident Response and Management:

  • Develop and maintain incident response plans
  • Coordinate rapid and effective responses to security incidents
  • Conduct post-incident analysis and implement preventive measures
  • Maintain detailed incident documentation and reporting

Interdepartmental Collaboration:

  • Work closely with IT, Legal, Compliance, and Clinical teams
  • Provide security guidance and recommendations to maintain the Security by Design concept
  • Facilitate cross-functional security awareness and training
  • Support technology implementation and security best practices

Please Note: This is not an exhaustive list of all duties, responsibilities and requirements of the position described above. Other functions may be assigned, and management retains the right to add or change duties at any time.

Qualifications

Qualifications include:

  • Bachelor’s degree in Cybersecurity, Information Security, Computer Science or related field (or equivalent experience). Master’s degree or advanced security certifications preferred, such as:
    • CISSP (Certified Information Systems Security Professional)
    • CISM (Certified Information Security Manager)
    • CRISC (Certified in Risk and Information Systems Control)
  • 3-5 years of progressive experience in security compliance with healthcare, medical technology, or highly regulated industries
  • Proven track record of developing and implementing security strategies
  • Experience with regulatory compliance in complex environments, including:
    • An advanced understanding of security frameworks and compliance standards
    • Proficiency in security tools and technologies
    • Experience with risk assessment and management tools
  • Excellent written and oral communication and interpersonal skills with the ability to explain complex security concepts to diverse audiences, including upper management.
  • High level of integrity and confidentiality

Get help with your application

Your very own career expert that helps elevate your application to the next level.

Get help applying for this job

Working conditions

This position may be based in the European Union in a typical office setting. This position will have the ability to work remotely.

Physical requirements

This position often requires sitting, standing, walking, bending, twisting, reaching with hands and arms, using hands and fingers, handling, or feeling, speaking, listening, and high-level cognitive thinking. Also, must be able to lift up to 10 pounds occasionally. The position requires the ability to travel (~10% of time), drive a vehicle, and utilize other forms of transportation

ACCOMMODATIONS

Reasonable accommodations may be made to enable people with disabilities to perform the essential functions of the job.

Salary Range:

  • €65,000 - €75,000 EUR Annually
  • £55,000 - £65,000 GBP Annually
Trusted by 25,000+ job seekers

“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”

Jessica, London

Get help applying for this job

Skills

Governance
Risk Management
Compliance
Information Security
Vanta
HIPAA
SOC 2
ISO 27001
HITRUST
Vulnerability Assessment
Incident Response
Security Policies
Identity Management
Security Awareness Training
Audit Support
Regulatory Compliance

Location

Amsterdam, North Holland, Netherlands

Sign up to applySee more jobs like this