Responsible for the holistic advancement of the organization’s security posture.
Manage a security roadmap for regulated industries and translate regulatory requirements such as ISO 27001, BSI C5 or SOC II (SOC 2) into concrete measures.
Transform the existing ISMS into an effective governance and control system.
Define, optimize and pragmatically operationalize processes, policies and controls.
Independently manage audit and certification processes such as ISO 27001, BSI C5 or SOC II.
Conduct risk analyses, prioritize security measures and coordinate internal and external audits.
Build and maintain a binding security awareness structure for all employees.
Requirements
Several years of professional experience in a role such as Information Security Officer or IT Security Officer.
Ideally hands-on responsibility for ISO/IEC 27001 certifications (initial and surveillance audits), building and further developing an ISMS, and experience in project and action management.
Very good knowledge of ISO/IEC 27001, the GDPR and their interaction with information security.
Experience with additional regulatory requirements such as the AI Act, Data Act or DSA.
Solid understanding of cloud-based software architectures, preferably Microsoft Azure.
Confident presence when engaging with external auditors and consultants.
Experience with additional attestations such as BSI C5 or SOC II and with compliance requirements in regulated markets is desirable.
Expertise in building and implementing security awareness programs and the ability to communicate security requirements effectively to target audiences.
Structured, independent and precise way of working.
Strong communication skills and the ability to engage on equal terms with technical teams, management and customers.
A pragmatic drive to shape and improve security rather than merely administrate it — combined with team orientation, reliability and a strong sense of responsibility.
Tech Stack
Azure
Cloud
Benefits
Live New Work: Choose your ideal workplace and preferred working hours, plan a workation within the EU by arrangement, and try new ways of collaborating – camping, holiday apartment, café or your balcony are just some of the options.
Work at the cutting edge: Work with modern tools, methods and equipment in an exciting field.
New-Work Budget: If you need an additional monitor, a height-adjustable desk or an office chair for your home office, use your individual smapOne equipment budget.
Lifelong learning: 1:1 sessions for personal development, the “Masterplan” and access to our company library with professional books on request.
Step-by-step onboarding: Expect a structured, welcoming onboarding, personal mentoring and an open team.
Lasting moments: Company-wide offsites, regular team evenings and on-site events invite networking and socializing.
Employee perks portal: A portal offering savings of up to 60% with over 400 partner companies.
Pension advice: We offer a free consultation with our external insurance expert and a subsidy for your occupational pension scheme.
Eurorad bike leasing: Stay mobile and support your health with our Eurorad leasing offers.