Compliance Officer

Company: CHAMP Cargosystems
Apply for the Compliance Officer
Location:
Job Description:

Overview

CHAMP Cargosystems provides the most comprehensive range of integrated IT solutions and distribution services for the air cargo transport chain. Our portfolio spans core management systems, messaging services, and eCargo solutions. These include applications designed to meet customs and security requirements, quality optimization, as well as e‑freight and mobility needs. Our products and services are recognized globally under the Cargospot and Traxon brands. We serve over 200 airlines and GSAs, connecting them with approximately 3,000 forwarders and GHAs worldwide. Our solutions help customers, and their clients, adapt to the critical and ongoing changes in air transport logistics and meet the demands of global trade. Headquarters in Luxembourg, CHAMP Cargosystems operates offices in Reading, Zurich, Frankfurt, Manila, Singapore, and Atlanta.

We are looking for a Compliance Officer to join our Security & GRC team. The role will be reporting to the Chief Information Security Officer.

Responsibilities

We are seeking a highly skilled Compliance Officer to lead our compliance monitoring, reporting, and certification efforts across multiple regulatory frameworks and industry standards. This role will ensure our organization maintains alignment with evolving regulations (e.g., NIS2, EU Data Act, EU AI Act…) and standards (ISO27001, ISO42000, ISO22301, SOC1, SOC2). The Compliance Officer will leverage ServiceNow GRC to map policy statements, define control objectives, track compliance status, and manage non‑conformities. This position is both strategic (monitoring regulations, maintaining certifications) and operational (hands‑on ServiceNow GRC work, facing auditors).

Regulatory & Standards Monitoring

  • Analyze and interpret requirements from NIS2, EU Data Act, EU AI Act, and other applicable regulations.
  • Maintain awareness of updates to ISO standards (ISO27001, ISO42000, ISO22301) and ensure organizational compliance.

Governance & Policy Management

  • Map policy statements and controls in ServiceNow GRC to the regulatory and standards authority documents.
  • Create and refine controls and control objectives where gaps exist.
  • Continuously improve internal policies and procedures to align with best practices.

Certification & Audit Readiness

  • Maintain certifications such as ISO27001 and prepare reports for SOC1 and SOC2.
  • Act as the primary point of contact for external auditors, demonstrating compliance posture and evidence.
  • Manage remediation of non‑compliance and non‑conformities.

Compliance Reporting & Metrics

  • Generate compliance dashboards and reports in ServiceNow to provide real‑time visibility into compliance status.
  • Present compliance metrics and risk assessments to senior management.

Collaboration & Training

  • Work closely with IT, Security, Legal, Product Development, Project Management and Risk teams to ensure integrated compliance efforts.
  • Provide guidance and training to staff on compliance requirements and best practices.

Knowledge, Skills and Abilities

  • Proven experience in compliance, cybersecurity governance, or risk management.
  • Strong knowledge of:
    • Regulatory frameworks: NIS2, EU Data Act, EU AI Act.
    • Industry standards: ISO27001, ISO42000, ISO22301.
    • Audit frameworks: SOC1, SOC2.
  • Hands‑on experience with ServiceNow GRC (policy mapping, control objectives, compliance reporting).
  • Excellent communication skills with the ability to face auditors and senior stakeholders confidently.
  • Analytical mindset with strong problem‑solving skills.

Education and Experience

  • Bachelor’s or Master’s degree in Information Security, Law, Risk Management, or related field.
  • 7‑10 years of expected.
  • Professional certifications such as CISA, CISM, ISO27001 Lead Auditor/Implementer, or CRISC.
  • Experience in multinational compliance environments.
  • Familiarity with cloud compliance frameworks (e.g., CSA STAR, ISO/IEC 27017 & 27018, SOC2 for SaaS provider).

The selected candidate may be subject to the provision of an up‑to‑date (not older than 3 months) criminal record certificate.

#J-18808-Ljbffr…

Posted: February 4th, 2026