Job Description
We're Celonis, the global leader in Process Intelligence technology and one of the world's fastest-growing SaaS firms. We believe there is a massive opportunity to unlock productivity by placing AI, data and intelligence at the core of business processes - and for that, we need your help. Care to join us?
The Team: Our Global information security organization is responsible for security and trust. We think security offensively and defensively, continuously monitoring our global security posture and adapting to the ever-changing threat landscape. Within this org, the Trust team ensures that our people, platforms, and data remain secure from all forms of harm.
The Role: At Celonis, we believe that trust in our security, governance, and compliance is critical. As a Working Student for Third-Party Risk Management (TPRM), you will support the Security Risk Management team in ensuring our vendor ecosystem meets our high security standards. You will contribute to efforts that provide transparency to stakeholders and help maintain our security goals by evaluating the risk profiles of our partners. This role is a blend of analytical assessment, technical administration, and cross-functional collaboration.
T he work you’ll do:
Third-Party Risk Assessments: Assist in performing security evaluations of new and existing vendors to ensure they meet Celonis’ security requirements.
Vendor Risk Monitoring: Monitor the ongoing security posture of our third-party ecosystem for deficiencies and track remediation efforts.
GRC Tool Administration: Support the day-to-day management and configuration of our Governance, Risk, and Compliance (GRC) platform to streamline risk workflows.
Data Integrity: Maintain high-quality data within our risk registers and vendor databases, ensuring all records are accurate, up-to-date, and audit-ready.
Security Documentation: Help create and maintain internal records related to vendor audits and compliance checks (e.g., SOC2, ISO 27001).
Cross-Functional Support: Coordinate with stakeholders in Procurement and Legal to ensure alignment on third-party security standards
The qualifications you’ll need:
Currently enrolled in a Bachelor’s or Master’s program in Information Security, Business Informatics, or a related field.
Basic understanding of security and regulatory frameworks (e.g., ISO 27001, GDPR, or SOC 2).
A keen interest in how cloud-native environments (AWS, Azure, or GCP) manage security and compliance.
An exceptional eye for detail and a value for correctness and efficiency.
Excellent problem-solving skills and the ability to communicate effectively in English.
A proactive mindset and the desire to work in a fast-paced, high-growth environment.
Location : Must be currently based in or around Munich, Germany, and able to work on-site at our headquarters
Bonus : Experience with GRC tools or a passion for using automation to improve repeatable processes.
What Celonis Can Offer You:
Pioneer Innovation: Work with the leading, award-winning process mining technology, shaping the future of business.
Accelerate Your Growth: Benefit from clear career paths, internal mobility, a dedicated learning program, and mentorship opportunities.
Receive Exceptional Benefits: Including generous PTO, hybrid working options, company equity (RSUs), comprehensive benefits, extensive parental leave, dedicated volunteer days, and much more . Interns and working students explore your benefits here .
Prioritize Your Well-being: Access to resources such as gym subsidies, counseling, and well-being programs.
Connect and Belong: Find community and support through dedicated inclusion and belonging programs.
Make Meaningful Impact: Be part of a company driven by strong values that guide everything we do: Live for Customer Value, The Best Team Wins, We Own It, and Earth Is Our Future.
Collaborate Globally: Join a dynamic, international team of talented individuals.
Empowered Environment: Contr ... (truncated, view full listing at source)