D

Information Security Manager

Digital Waffle

Berlin, Germany (Hybrid) · Full Time

Be the first to apply

Experience
Any
Salary
EUR 85,000 – EUR 100,000 / year
Openings
1
Posted
6 minutes ago
Work mode
Hybrid
Resume
Required to apply

Where you'll work

Sign in to tell us what does and doesn't work for you here — it sharpens every match we show you.

Job description

About the Role

Our client, a rapidly expanding digital technology company located in Berlin, seeks an experienced Information Security Manager to lead security, compliance, and governance initiatives across both the organizational framework and software platforms. This pivotal position bridges engineering, operations, and leadership teams, emphasizing scalable security and compliance within a contemporary software development environment. The role suits a candidate who thrives working directly with technical teams, as well as guiding policy, governance, and regulatory programs organizationally.

Key Responsibilities

  • Take ownership of and continuously improve the company's information security and compliance frameworks.
  • Lead ISO 27001-aligned Information Security Management System (ISMS) activities, including creating and maintaining documentation, controls, risk management processes, policies, and audit preparedness.
  • Collaborate closely with software engineering and DevOps teams to integrate security and compliance demands into development workflows.
  • Convert regulatory and security mandates into actionable technical and operational controls.
  • Foster ongoing enhancements in security, privacy, and governance practices.
  • Manage audits, prepare evidence, drive remediation efforts, and coordinate stakeholder communications.
  • Create and sustain comprehensive technical and procedural documentation company-wide.
  • Work cross-functionally to ensure that security measures facilitate efficient product delivery rather than impede it.

Candidate Requirements

  • Extensive practical experience managing ISO 27001 environments, including ownership of documentation, control systems, and compliance undertakings.
  • Direct involvement with software engineering, product, or DevOps teams within a technology-centric enterprise.
  • Proven ability to produce policies, procedures, technical documentation, and governance materials.
  • Deep understanding of information security fundamentals, risk management, and operational compliance.
  • Capability to oversee multiple initiatives and stakeholders in a dynamic, fast-paced setting.
  • Outstanding communication skills with the ability to engage both technical and non-technical audiences effectively.
  • Fluency in both German and English languages.

Preferred Attributes

  • Familiarity with GDPR, medical device regulations, or other regulated technology frameworks.
  • Experience in SaaS, digital health, fintech, or similarly regulated software sectors.
  • Background in security operations, DevSecOps, or cloud security environments.

Leave it if you'd like a reply — we won't use it for anything else.

Click to browse, drag & drop, or paste a screenshot

PNG, JPG, GIF, MP4, WebM, MOV · Max 20MB each · Up to 5 files

🤖
Online · instant AI help
Broxer