Your personal AI career agent
Chief Information Security Officer (CISO)(m/w/x)
DORA-aligned ICT risk framework development for FinTech investor tools. Proven leadership in information security required. Modern office hubs, hybrid working.
Requirements
- Proven leadership in information security
- Ideal experience in regulated financial services or FinTech
- Strong knowledge of DORA, GDPR, BaFin
- Strong knowledge of common control frameworks (CIS, ISO 27001, SOC 2)
- Experience leading audits, assessments, and regulatory reviews
- Track record of building structured, risk-driven security programmes
- Experience improving security maturity in complex or fast-growing environments
- Strong understanding of vulnerability management
- Strong understanding of remediation workflows
- Strong understanding of risk reporting
- Ability to communicate security risks clearly to Board and senior stakeholders
- Strong cross-functional influence across Engineering, IT, Legal, and Compliance
- Proven ability to roll out security processes with measurable impact
- Solid understanding of security architecture (endpoints, identity, networks, cloud)
- Hands-on experience with SIEM, EDR/XDR, vulnerability scanning, asset management tools
- Good awareness of AI-related security risks
- Good awareness of secure AI adoption in regulated environments
Tasks
- Lead and mature information security posture
- Shape and drive Group-wide security strategy
- Translate regulatory requirements into priorities
- Close key gaps in assets, vulnerabilities, and third parties
- Build and run a DORA-aligned ICT risk framework
- Create transparency across risks and controls
- Report clearly to senior leadership and the board
- Roll out vulnerability management across the Group
- Reduce critical findings and remediation backlog
- Improve detection through stronger SIEM capabilities
- Expand endpoint protection and MFA coverage
- Improve device health and security visibility
- Enforce consistent controls across all entities
- Build a stronger security-first culture
- Increase awareness training completion
- Enable developers through secure coding and champions
- Lead incident response and post-incident reviews
- Run regular backup and response tests
- Anchor assurance activities in daily operations
- Strengthen third-party risk management
- Raise due diligence standards for vendors
- Reduce supply chain risk across the Group
Work Experience
- approx. 4 - 6 years
Education
- Bachelor's degreeOR
- Master's degree
Languages
- English – Business Fluent
Tools & Technologies
- DORA
- GDPR
- BaFin
- CIS
- ISO 27001
- SOC 2
- SIEM
- EDR/XDR
Benefits
Modern Office
- Modern office hubs
Flexible Working
- Hybrid working
Learning & Development
- Training and development opportunities
Team Events
- Regular team events
Informal Culture
- Strong company culture
Healthcare & Fitness
- Health benefits
Parking & Commuter Benefits
- Mobility benefits
Company Bike
- Bike leasing
Public Transport Subsidies
- Public transport subsidy
Competitive Pay
- Attractive financial benefits
Other Benefits
- Additional perks
Workation & Sabbatical
- Workation within EU
Not a perfect match?
- finanzen.net GmbHFull-timeWith HomeofficeSeniorMünchen
- Mobility Concept GmbH
Senior Information Security Officer(m/w/x)
Full-timeWith HomeofficeSeniorOberhaching - NOVENTI Health SE
Information Security Officer(m/w/x)
Full-timeWith HomeofficeExperiencedMünchen - neoshare AG
Head of Offensive & Defensive Security(m/w/x)
Full-timeWith HomeofficeSeniorMünchen, Frankfurt am Main, Berlin - Helsing
Manager Information Security(m/w/x)
Full-timeRemoteExperiencedMünchen
Chief Information Security Officer (CISO)(m/w/x)
DORA-aligned ICT risk framework development for FinTech investor tools. Proven leadership in information security required. Modern office hubs, hybrid working.
Requirements
- Proven leadership in information security
- Ideal experience in regulated financial services or FinTech
- Strong knowledge of DORA, GDPR, BaFin
- Strong knowledge of common control frameworks (CIS, ISO 27001, SOC 2)
- Experience leading audits, assessments, and regulatory reviews
- Track record of building structured, risk-driven security programmes
- Experience improving security maturity in complex or fast-growing environments
- Strong understanding of vulnerability management
- Strong understanding of remediation workflows
- Strong understanding of risk reporting
- Ability to communicate security risks clearly to Board and senior stakeholders
- Strong cross-functional influence across Engineering, IT, Legal, and Compliance
- Proven ability to roll out security processes with measurable impact
- Solid understanding of security architecture (endpoints, identity, networks, cloud)
- Hands-on experience with SIEM, EDR/XDR, vulnerability scanning, asset management tools
- Good awareness of AI-related security risks
- Good awareness of secure AI adoption in regulated environments
Tasks
- Lead and mature information security posture
- Shape and drive Group-wide security strategy
- Translate regulatory requirements into priorities
- Close key gaps in assets, vulnerabilities, and third parties
- Build and run a DORA-aligned ICT risk framework
- Create transparency across risks and controls
- Report clearly to senior leadership and the board
- Roll out vulnerability management across the Group
- Reduce critical findings and remediation backlog
- Improve detection through stronger SIEM capabilities
- Expand endpoint protection and MFA coverage
- Improve device health and security visibility
- Enforce consistent controls across all entities
- Build a stronger security-first culture
- Increase awareness training completion
- Enable developers through secure coding and champions
- Lead incident response and post-incident reviews
- Run regular backup and response tests
- Anchor assurance activities in daily operations
- Strengthen third-party risk management
- Raise due diligence standards for vendors
- Reduce supply chain risk across the Group
Work Experience
- approx. 4 - 6 years
Education
- Bachelor's degreeOR
- Master's degree
Languages
- English – Business Fluent
Tools & Technologies
- DORA
- GDPR
- BaFin
- CIS
- ISO 27001
- SOC 2
- SIEM
- EDR/XDR
Benefits
Modern Office
- Modern office hubs
Flexible Working
- Hybrid working
Learning & Development
- Training and development opportunities
Team Events
- Regular team events
Informal Culture
- Strong company culture
Healthcare & Fitness
- Health benefits
Parking & Commuter Benefits
- Mobility benefits
Company Bike
- Bike leasing
Public Transport Subsidies
- Public transport subsidy
Competitive Pay
- Attractive financial benefits
Other Benefits
- Additional perks
Workation & Sabbatical
- Workation within EU
About the Company
finanzen.net GmbH
Industry
FinancialServices
Description
Das Unternehmen ist ein innovatives FinTech-Unternehmen, das private und professionelle Anleger bei ihren Investitionsentscheidungen unterstützt.
Not a perfect match?
- finanzen.net GmbH
Chief Information Security Officer(m/w/x)
Full-timeWith HomeofficeSeniorMünchen - Mobility Concept GmbH
Senior Information Security Officer(m/w/x)
Full-timeWith HomeofficeSeniorOberhaching - NOVENTI Health SE
Information Security Officer(m/w/x)
Full-timeWith HomeofficeExperiencedMünchen - neoshare AG
Head of Offensive & Defensive Security(m/w/x)
Full-timeWith HomeofficeSeniorMünchen, Frankfurt am Main, Berlin - Helsing
Manager Information Security(m/w/x)
Full-timeRemoteExperiencedMünchen