Die KI-Suchmaschine für Jobs
Head of Security Certification Management(m/w/x)
Building Compliance-as-Code culture for SMB digitalization services, leading 10+ direct and 50+ indirect GRC team. Senior Tech Leadership, 5+ years GRC/Security, and 3-year GRC roadmap definition required. Hybrid work, flexible hours, subsidized canteen.
Anforderungen
- Senior Tech Leadership
- 5+ years in GRC/Security
- Ideally experience in Hosting, SaaS, or Cloud sectors
- Understanding of operational vs. paper ISMS
- Ability to define 3-year GRC maturity roadmap
- Moving organization from reactive to proactive GRC
- Hands-on experience with ISO 27001, NIS2 & BCM
- Ability to map frameworks to avoid double work
- Successful navigation of ISO27001/KRITIS audits
- Preparation or implementation of NIS2 strategies
- Preference for GRC tools (e.g., Auditboard) over Excel
- Understanding of using APIs to pull compliance evidence from Jira
- Vision for AI enhancing GRC best practices
- Familiarity with AI tools and applications
- People Management Experience
- Ability to build network in 10+ locations
- Experience reporting to all management levels
Aufgaben
- Build a Compliance-as-Code culture.
- Drive the organization to proactive, risk-driven compliance.
- Mentor a distributed GRC team.
- Lead a distributed GRC team of 10+ direct FTEs.
- Lead an indirect organization of 50+ people.
- Transition the team to automated, data-driven oversight.
- Design the end-to-end ISMS lifecycle.
- Implement the end-to-end ISMS lifecycle.
- Continuously improve the end-to-end ISMS lifecycle.
- Lead the team to architect a unified IMS.
- Bridge ISMS, Risk Management, and BCM within the IMS.
- Act as the primary interface for the BSI.
- Implement NIS2 across international brands and products.
- Implement KRITIS across international brands and products.
- Drive ISO27001 re-certifications.
- Drive TKG and BSIG (KRITIS) audits.
- Move towards continuous compliance.
- Develop real-time dashboards for executive reporting.
- Refine vendor risk management.
- Meet NIS2 and CRA requirements for vendor risk.
- Integrate ML algorithms with Development teams.
- Leverage AI tools for customer-facing operations.
- Leverage AI tools for internal workflows.
Berufserfahrung
- 5 Jahre
Ausbildung
- Bachelor-AbschlussODER
- Master-Abschluss
Sprachen
- Deutsch – fließend
- Englisch – verhandlungssicher
Tools & Technologien
- ISO 27001
- NIS2
- BCM
- KRITIS
- Auditboard
- Excel
- APIs
- Jira
- Artificial Intelligence
Benefits
Flexibles Arbeiten
- Hybrid working model
- Home office option
- Flexible working hours
Gratis oder Vergünstigte Mahlzeiten
- Subsidized canteen
Snacks & Getränke
- Free drinks
Modernes Büro
- Modern office space
Parkplatz & Pendelvorteile
- Good transport connections
Mitarbeiterrabatte
- Employee discounts
Team Events & Ausflüge
- Employee events
Weiterbildungsangebote
- Workshops
- Training opportunities
- Development opportunities
Gesundheits- & Fitnessangebote
- Sports courses
- Health courses
Noch nicht perfekt?
- IONOS SEVollzeitmit HomeofficeManagementBerlin
- IONOS DE
Head of Service & Security Management - Cloud(m/w/x)
Vollzeitmit HomeofficeManagementBerlin - IONOS SE
Cloud Security Manager - Cyber Security(m/w/x)
Vollzeitmit HomeofficeBerufserfahrenBerlin - IONOS DE
Cloud Informationssicherheits-Manager - Cyber Security(m/w/x)
Vollzeitmit HomeofficeSeniorBerlin - MEDIAN Unternehmenszentrale Berlin
IT Risk & Compliance Manager / Informationssicherheitsbeauftragter(m/w/x)
Vollzeitmit HomeofficeSeniorBerlin
Head of Security Certification Management(m/w/x)
Building Compliance-as-Code culture for SMB digitalization services, leading 10+ direct and 50+ indirect GRC team. Senior Tech Leadership, 5+ years GRC/Security, and 3-year GRC roadmap definition required. Hybrid work, flexible hours, subsidized canteen.
Anforderungen
- Senior Tech Leadership
- 5+ years in GRC/Security
- Ideally experience in Hosting, SaaS, or Cloud sectors
- Understanding of operational vs. paper ISMS
- Ability to define 3-year GRC maturity roadmap
- Moving organization from reactive to proactive GRC
- Hands-on experience with ISO 27001, NIS2 & BCM
- Ability to map frameworks to avoid double work
- Successful navigation of ISO27001/KRITIS audits
- Preparation or implementation of NIS2 strategies
- Preference for GRC tools (e.g., Auditboard) over Excel
- Understanding of using APIs to pull compliance evidence from Jira
- Vision for AI enhancing GRC best practices
- Familiarity with AI tools and applications
- People Management Experience
- Ability to build network in 10+ locations
- Experience reporting to all management levels
Aufgaben
- Build a Compliance-as-Code culture.
- Drive the organization to proactive, risk-driven compliance.
- Mentor a distributed GRC team.
- Lead a distributed GRC team of 10+ direct FTEs.
- Lead an indirect organization of 50+ people.
- Transition the team to automated, data-driven oversight.
- Design the end-to-end ISMS lifecycle.
- Implement the end-to-end ISMS lifecycle.
- Continuously improve the end-to-end ISMS lifecycle.
- Lead the team to architect a unified IMS.
- Bridge ISMS, Risk Management, and BCM within the IMS.
- Act as the primary interface for the BSI.
- Implement NIS2 across international brands and products.
- Implement KRITIS across international brands and products.
- Drive ISO27001 re-certifications.
- Drive TKG and BSIG (KRITIS) audits.
- Move towards continuous compliance.
- Develop real-time dashboards for executive reporting.
- Refine vendor risk management.
- Meet NIS2 and CRA requirements for vendor risk.
- Integrate ML algorithms with Development teams.
- Leverage AI tools for customer-facing operations.
- Leverage AI tools for internal workflows.
Berufserfahrung
- 5 Jahre
Ausbildung
- Bachelor-AbschlussODER
- Master-Abschluss
Sprachen
- Deutsch – fließend
- Englisch – verhandlungssicher
Tools & Technologien
- ISO 27001
- NIS2
- BCM
- KRITIS
- Auditboard
- Excel
- APIs
- Jira
- Artificial Intelligence
Benefits
Flexibles Arbeiten
- Hybrid working model
- Home office option
- Flexible working hours
Gratis oder Vergünstigte Mahlzeiten
- Subsidized canteen
Snacks & Getränke
- Free drinks
Modernes Büro
- Modern office space
Parkplatz & Pendelvorteile
- Good transport connections
Mitarbeiterrabatte
- Employee discounts
Team Events & Ausflüge
- Employee events
Weiterbildungsangebote
- Workshops
- Training opportunities
- Development opportunities
Gesundheits- & Fitnessangebote
- Sports courses
- Health courses
Über das Unternehmen
IONOS SE
Branche
IT
Beschreibung
The company is the leading European digitalization partner for small and medium-sized businesses, offering a range of cloud and hosting services.
Noch nicht perfekt?
- IONOS SE
Head of Service & Security Management - Cloud(m/w/x)
Vollzeitmit HomeofficeManagementBerlin - IONOS DE
Head of Service & Security Management - Cloud(m/w/x)
Vollzeitmit HomeofficeManagementBerlin - IONOS SE
Cloud Security Manager - Cyber Security(m/w/x)
Vollzeitmit HomeofficeBerufserfahrenBerlin - IONOS DE
Cloud Informationssicherheits-Manager - Cyber Security(m/w/x)
Vollzeitmit HomeofficeSeniorBerlin - MEDIAN Unternehmenszentrale Berlin
IT Risk & Compliance Manager / Informationssicherheitsbeauftragter(m/w/x)
Vollzeitmit HomeofficeSeniorBerlin