Dein persönlicher KI-Karriere-Agent
Principal Information Security Manager(m/w/x)
Driving InfoSec outcomes for an AI-native Employee Experience Platform, representing the function in Finance & Operations. 5+ years SaaS InfoSec experience, ISO 27001/SOC 2 ownership required. Yearly flex work allowance, LTIP.
Deine Match-Analyse
Warum dieser Job zu dir passt
Mögliche Lücken
Tipps für deine Bewerbung
Anforderungen
- 5+ years InfoSec experience in SaaS/B2B tech
- Proven ownership of ISO 27001 and/or SOC 2 programs
- Representing InfoSec to enterprise customers
- Fluent in German and English
- Comfortable with AI-driven tooling; automation opportunities
- Experience supporting M&A or investor due diligence
- Background working with Legal, Procurement, Engineering
- Practical understanding of cloud security architecture
- Relevant certification: CISM, CISSP, ISO 27001 Lead Auditor/Implementer
Aufgaben
- Coordinate across teams and represent InfoSec function
- Own and drive InfoSec outcomes
- Act as senior deputy for InfoSec in Finance & Operations
- Report to SVP Business Operations & Transformation
- Collaborate with Legal, Procurement, Engineering, external auditors, and enterprise customers
- Lead ISO 27001 and SOC 2 audit cycles
- Prepare and manage audit evidence and findings remediation
- Maintain and update the control framework
- Prepare InfoSec program for investor and M&A due diligence
- Respond to enterprise customer security questionnaires and RFPs
- Represent Staffbase in customer security reviews and audits
- Build scalable approaches for security responses
- Maintain the risk register and drive risk treatment decisions
- Conduct vendor security assessments for critical and high-risk suppliers
- Partner with Procurement and Legal on AI-assisted review workflows
- Own and update the internal security policy framework
- Design and implement security awareness programs
- Lead incident response planning and execution
- Coordinate with Engineering, Legal, and leadership during incidents
- Conduct post-incident reviews and close findings
Berufserfahrung
Ausbildung
Sprachen
Tools & Technologien
Benefits
- Flexible working time models
- Hybrid work option
- Yearly flex work allowance
- Attractive salary packages
- LTIP (unit-based Long Term Incentive Plan)
- 31 vacation days annually
- Floating holiday
- Pro rata fully paid Fridays off during August
- Company pension scheme
- One day off per year for supporting a social project
Von Nejo automatisch aufbereitet
Nejo hat diesen Job automatisch von der Website des Unternehmens Staffbase erfasst und die Informationen auf Nejo mit Hilfe von KI für dich aufbereitet. Trotz sorgfältiger Analyse können einzelne Informationen unvollständig oder ungenau sein. Bitte prüfe immer alle Angaben in der Originalanzeige! Inhalte und Urheberrechte der Originalanzeige liegen beim ausschreibenden Unternehmen.
Zur Originalanzeige bei StaffbaseÜber das Unternehmen
The company helps organizations unlock the power of inspirational communication with an AI-native Employee Experience Platform.
Nejo bewertet ihn, und bringt ihn danach gemeinsam mit dir in Bestform.
Noch nicht perfekt?
- StaffbaseSenior Product Security Engineer(m/w/x)Vollzeitmit HomeofficeSeniorDresden, Chemnitz, Berlin
- Umweltgerechte Kraftanlagen GmbH & Co. KGAI & Information Security Professional(m/w/x)Vollzeitmit HomeofficeBerufserfahrenBerlin, Köln, Essen, Dresden, Hannover, Bielefeld, Kiel, Magdeburg, Halle (Saale), Mainz
- Elisabeth Vinzenz Verbund GmbHSenior Informationssicherheitsbeauftragter(m/w/x)Vollzeit/Teilzeitmit HomeofficeSeniorDresden
- operational services GmbH & Co KGSenior Consultant/Auditor IT-Grundschutz(m/w/x)Vollzeitmit HomeofficeManagementFrankfurt am Main, Berlin, Dresden, Hamburg, Leinfelden-Echterdingen, München, Nürnberg, Senftenberg, Wolfsburg, Zwickau
- CANCOMInformation Security Consultant(m/w/x)Vollzeitmit HomeofficeKeine AngabeBerlin, Dresden, Leipzig, Magdeburg