Die KI-Suchmaschine für Jobs
Information Security Specialist (German-speaking)(m/w/x)
Managing compliance lifecycle for a platform serving European startups and SMBs, assessing tech stack posture across cloud and container environments. Experience leading ISO 27001 certification projects required. Generous equity package, €1,000 annual development budget, remote workspace budget.
Anforderungen
- Fluency in German (C1/C2) and English
- Fluency in German (C1/C2) and English
- 3+ years of hands-on information security and GRC experience
- Experience leading ISO 27001 certification projects
- Hands-on experience with a GRC platform—Secfix or similar
- Cloud infrastructure readiness across AWS, Azure, and GCP
- Experience automating internal processes and building prototypes
- SOC 2 implementation and audit experience
- Experience acting as DPO
Aufgaben
- Own the compliance lifecycle from onboarding to certification and continuous compliance
- Scope controls and drive risk treatment, evidence, and gap closure
- Draft customer roadmaps for security improvements
- Lead audits to ensure a clean pass as the primary security contact
- Assess tech stack posture and map controls to AWS, Azure, GCP, Kubernetes, Docker, and Terraform
- Draft new best practices for security
- Prioritize actionable remediation with clear timelines
- Tailor security programs across ISO 27001, SOC 2, NIST, and other frameworks
- Align security requirements to each customer's environment and objectives
- Build and run runbooks, templates, QA, and knowledge base
- Communicate with executives and represent Secfix in select public forums
- Translate frontline insights into clear requirements for the AI product
- Collaborate with Product and Engineering to prioritize and ship features
- Lead customer-side audits, confidently answering auditor questions
- Build and automate new internal processes
- Draft security policies and custom security documents
- Answer security questionnaires and cross-map controls
- Get onboarded into new regulations or infosec standards
- Create lists of relevant cloud security hardening tasks for AWS, Azure, and GCP
Berufserfahrung
- 3 Jahre
Ausbildung
- Abgeschlossene BerufsausbildungODER
- Bachelor-AbschlussODER
- Master-Abschluss
Sprachen
- Deutsch – verhandlungssicher
- Englisch – verhandlungssicher
Tools & Technologien
- AWS
- Azure
- GCP
- Secfix
Benefits
Attraktive Vergütung
- Generous equity package
Gesundheits- & Fitnessangebote
- Health insurance
Weiterbildungsangebote
- €1,000 annual personal development budget
Flexibles Arbeiten
- Remote workspace budget
Modernes Büro
- Access to co-working spaces
Team Events & Ausflüge
- Annual retreat
- Company-wide events
Moderne Technikausstattung
- Latest tech equipment
Mentoring & Coaching
- Direct access to world-class mentors
Noch nicht perfekt?
- PAIR Finance GmbHVollzeitmit HomeofficeSeniorBerlin
- Bitpanda
Senior Information Security Specialist(m/w/x)
Vollzeitmit HomeofficeManagementWien, Berlin - Kertos GmbH
Information Security Expert(m/w/x)
Vollzeitmit HomeofficeBerufserfahrenBerlin - KNIME
Legal & Compliance Specialist(m/w/x)
Vollzeitmit HomeofficeBerufserfahrenBerlin, Konstanz, Zürich - IONOS SE
Information Security Professional(m/w/x)
Vollzeitmit HomeofficeManagementBerlin, Karlsruhe
Information Security Specialist (German-speaking)(m/w/x)
Managing compliance lifecycle for a platform serving European startups and SMBs, assessing tech stack posture across cloud and container environments. Experience leading ISO 27001 certification projects required. Generous equity package, €1,000 annual development budget, remote workspace budget.
Anforderungen
- Fluency in German (C1/C2) and English
- Fluency in German (C1/C2) and English
- 3+ years of hands-on information security and GRC experience
- Experience leading ISO 27001 certification projects
- Hands-on experience with a GRC platform—Secfix or similar
- Cloud infrastructure readiness across AWS, Azure, and GCP
- Experience automating internal processes and building prototypes
- SOC 2 implementation and audit experience
- Experience acting as DPO
Aufgaben
- Own the compliance lifecycle from onboarding to certification and continuous compliance
- Scope controls and drive risk treatment, evidence, and gap closure
- Draft customer roadmaps for security improvements
- Lead audits to ensure a clean pass as the primary security contact
- Assess tech stack posture and map controls to AWS, Azure, GCP, Kubernetes, Docker, and Terraform
- Draft new best practices for security
- Prioritize actionable remediation with clear timelines
- Tailor security programs across ISO 27001, SOC 2, NIST, and other frameworks
- Align security requirements to each customer's environment and objectives
- Build and run runbooks, templates, QA, and knowledge base
- Communicate with executives and represent Secfix in select public forums
- Translate frontline insights into clear requirements for the AI product
- Collaborate with Product and Engineering to prioritize and ship features
- Lead customer-side audits, confidently answering auditor questions
- Build and automate new internal processes
- Draft security policies and custom security documents
- Answer security questionnaires and cross-map controls
- Get onboarded into new regulations or infosec standards
- Create lists of relevant cloud security hardening tasks for AWS, Azure, and GCP
Berufserfahrung
- 3 Jahre
Ausbildung
- Abgeschlossene BerufsausbildungODER
- Bachelor-AbschlussODER
- Master-Abschluss
Sprachen
- Deutsch – verhandlungssicher
- Englisch – verhandlungssicher
Tools & Technologien
- AWS
- Azure
- GCP
- Secfix
Benefits
Attraktive Vergütung
- Generous equity package
Gesundheits- & Fitnessangebote
- Health insurance
Weiterbildungsangebote
- €1,000 annual personal development budget
Flexibles Arbeiten
- Remote workspace budget
Modernes Büro
- Access to co-working spaces
Team Events & Ausflüge
- Annual retreat
- Company-wide events
Moderne Technikausstattung
- Latest tech equipment
Mentoring & Coaching
- Direct access to world-class mentors
Über das Unternehmen
Secfix
Branche
IT
Beschreibung
The company is building the leading compliance automation platform for startups and SMBs in Europe.
Noch nicht perfekt?
- PAIR Finance GmbH
Senior Information Security Specialist(m/w/x)
Vollzeitmit HomeofficeSeniorBerlin - Bitpanda
Senior Information Security Specialist(m/w/x)
Vollzeitmit HomeofficeManagementWien, Berlin - Kertos GmbH
Information Security Expert(m/w/x)
Vollzeitmit HomeofficeBerufserfahrenBerlin - KNIME
Legal & Compliance Specialist(m/w/x)
Vollzeitmit HomeofficeBerufserfahrenBerlin, Konstanz, Zürich - IONOS SE
Information Security Professional(m/w/x)
Vollzeitmit HomeofficeManagementBerlin, Karlsruhe