Skip to content

Open nowPosted 108 days ago

Compliance Platform Engineer

Phoeniqs Technologies10 open roles

Where
Basel
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowCompliance Platform EngineerPhoeniqs Technologies · Basel
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on Phoeniqs Technologies's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

7.4% of postings close within 7 days. Measured by our own scanner across the market.

Share of postings closed within
  1. 1.5%1 day
  2. 3.5%3 days
  3. 7.4%7 days
  4. 13.2%14 days
  5. 34.5%30 days
This job: posted 108 days ago

The posting

⚙️ Compliance Platform Engineer

Phoeniqs Technologies | Powering Sovereign Cloud Infrastructure

At Phoeniqs Technologies, we engineer the infrastructure that powers secure, compliant, enterprise‑grade digital ecosystems.

Job Description

Position Summary:

Phoeniqs is seeking a highly skilled Compliance Platform Engineer with a strong GRC (Governance, Risk, and Compliance) focus to join the Engineering organization.

This role is responsible for ensuring that regulatory requirements and certification frameworks are translated into concrete technical capabilities embedded within our platform, systems, and engineering processes. The focus is on building solutions that are secure, compliant by design, automated, and continuously verifiable, rather than relying on documentation alone.

The ideal candidate combines hands-on engineering expertise with a deep understanding of European and Swiss regulatory frameworks, and is capable of turning these into scalable, enforceable, and auditable technical implementations. The role contributes directly to certifications and future audits, ensuring that compliance is a natural outcome of how the platform operates.

Key Responsibilities

Regulatory & Certification Translation (Core Focus):

  • Interpret and operationalize requirements from:
  • GDPR and Swiss Federal Act on Data Protection (revDSG)
  • EU AI Act, with focus on technical and operational implications
  • ISO 27001 / 27017 / 27018
  • SOC / ISAE frameworks
  • FINMA expectations and outsourcing guidance
  • German Digital Services Act (DSA)
  • Spanish Esquema Nacional de Seguridad (ENS)
  • Translate these requirements into:
  • Technical controls and enforceable system configurations
  • Architecture patterns and engineering standards
  • Platform-level security and compliance capabilities
  • Maintain mappings between regulations, certifications, and implemented controls

Compliance as a Platform Capability:

  • Design and implement compliance controls as part of the platform itself, not as external or manual processes
  • Ensure controls are:
  • Technically enforced and measurable
  • Automated wherever possible
  • Continuously validated and testable
  • Embed compliance into:
  • System architecture
  • Platform services and components
  • Development and deployment workflows
  • Drive adoption of:
  • Policy-as-Code and Infrastructure-as-Code
  • Automated control validation and monitoring
  • Logging, traceability, and evidence generation mechanisms

Certification & Audit Readiness (Implementation-Focused):

  • Lead the technical readiness for certifications and audit processes
  • Ensure that systems inherently produce reliable, consistent, and auditable evidence
  • Support certification and audit activities by demonstrating real technical control implementation
  • Identify and remediate gaps between:
  • Defined requirements
  • Actual system behavior

Risk & Control Effectiveness:

  • Perform technical risk assessments across systems, services, and data flows
  • Implement practical and proportionate mitigation strategies aligned with regulatory expectations
  • Evaluate control effectiveness in real environments
  • Continuously improve control design based on evolving threats and regulatory changes

Cross-functional Enablement:

  • Collaborate across the organization to:
  • Align engineering practices with compliance and certification goals
  • Support ongoing and future certification initiatives
  • Provide practical guidance on implementing compliant systems
  • Contribute to customer-facing compliance needs (e.g., assurance materials, technical explanations of controls)

Continuous Improvement & Compliance Engineering:

  • Evolve the organization’s approach to compliance-by-design and compliance-by-default
  • Reduce reliance on manual processes through:
  • Automation
  • Standardization of controls
  • Reusable platform capabilities
  • Contribute to building compliance as a scalable engineering discipline embedded into the platform

Qualifications:

  • Bachelor’s or Master’s degree in Computer Science, Information Security, Engineering, or related field
  • Minimum of 5+ years of experience in security engineering, GRC engineering, or technical compliance roles
  • Strong understanding of (some):
  • ISO 27001 and related frameworks
  • GDPR and Swiss data protection regulations
  • EU AI Act (or strong willingness to specialize in it)
  • ENS (Esquema Nacional de Seguridad)
  • Proven ability to translate regulatory and certification requirements into real technical implementations
  • Solid experience in:
  • System and infrastructure security
  • Control implementation and validation
  • Modern engineering environments
  • Strong hands-on mindset with a focus on:
  • Implementation
  • Automation
  • Measurable outcomes (not only documentation)
  • Ability to collaborate across technical and non-technical domains
From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against Phoeniqs Technologies's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on Phoeniqs Technologies's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    Phoeniqs Technologies's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.