Principal Information Security Manager - remote working within Germany

Staffbase

Belgique

À distance

EUR 90 000 - 120 000

Plein temps

14 jours+
Générateur de candidature

Transformez ce poste en entretien — un CV et une lettre de motivation conçus selon ce que cet employeur recherche.

Passez les filtres ATS

Résumé du poste

Staffbase seeks a senior InfoSec leader within Finance & Operations to own day-to-day security functions, represent InfoSec internally and externally, and streamline governance with automation and templates.

You will report to the SVP Business Operations & Transformation, collaborating with Legal, Procurement, Engineering, auditors, and enterprise customers to strengthen security posture and trust.

Qualifications

  • 5+ years of hands-on InfoSec experience in a SaaS or B2B tech company.
  • Proven ownership of ISO 27001 and/or SOC 2 programs.
  • Track record of representing InfoSec to enterprise customers, including security reviews and escalations.
  • Fluent in English.
  • Comfortable with AI-driven tooling; actively looks for automation opportunities in compliance and operations.

Responsabilités

  • Own the control framework and ensure it stays current as the business evolves.
  • Prepare the InfoSec program for investor and M&A due diligence scrutiny.
  • Own the incident response plan and lead execution when incidents occur.
  • Coordinate with Engineering, Legal, and leadership during incidents.
  • Drive post-incident reviews and close findings with owners.
  • Own vendor security assessments for critical and high-risk suppliers.
  • Partner with Procurement and Legal on AI-assisted review workflows.

Connaissances

InfoSec
SaaS security
SOC 2
ISO 27001
Security reviews
Fluent English
Automation opportunities

Outils

AI-driven tooling

Description du poste

About Staffbase

We inspire people to achieve great things together. Our mission is to help organizations unlock the power of inspirational communication with the first AI-native Employee Experience Platform . Our industry-leading and award-winning agentic AI communications channels - intranet, employee app and email solutions - create engaging experiences that connect and empower employees. Headquartered in Chemnitz, Germany and New York City, with offices in Berlin, London, Sydney, Tokyo, Prague, and Minneapolis-St. Paul, our diverse team of 550+ employees supports 1,500+ customers—reaching over 14 million employees—in transforming their employee experience. We are proud to be a Unicorn company—privately valued at over $1 billion—demonstrating strong growth, innovation, and lasting impact in our industry. Together, we're shaping the future of workplace communication. Our information security program is fit for purpose and operationally sound. The next chapter is about making it investor-ready, AI-efficient, and capable of sustaining enterprise customer trust at scale. This is not a build-from-scratch role. It is a step up in maturity: fewer manual processes and sharper governance.



What you’ll be doing

You will act as the senior deputy for InfoSec within our Finance & Operations department, owning the function day-to-day, representing it internally and externally, and making it run with less friction and more intelligence.


You report directly to the SVP Business Operations & Transformation and work closely with Legal, Procurement, Engineering, external auditors and enterprise customers.



  • Own the control framework and ensure it stays current as the business evolves

  • Prepare the InfoSec program for investor and M&A due diligence scrutiny

  • Customer Trust

  • Own the response to enterprise customer security questionnaires and RFPs

  • Represent Staffbase credibly in customer security reviews, calls, and audits

  • Build scalable approaches (automation, templates, knowledge base) to reduce response time without sacrificing quality

  • Risk & Vendor Security Maintain the risk register and drive risk treatment decisions with relevant stakeholders

  • Own vendor security assessments for critical and high-risk suppliers

  • Partner with Procurement and Legal on AI-assisted review workflows



Policy & Awareness


  • Own the internal security policy framework, keep it current, understandable, and enforced

  • Design and run security awareness programs that change behaviour, not just tick boxes



Incident Response


  • Own the incident response plan and lead execution when incidents occur

  • Coordinate with Engineering, Legal, and leadership during incidents

  • Drive post-incident reviews and close findings with owners



What you need to be successful


  • 5+ years of hands-on InfoSec experience in a SaaS or B2B tech company

  • Proven ownership of ISO 27001 and/or SOC 2 programs

  • Track record of representing InfoSec to enterprise customers, including security reviews and escalations

  • Must be fluent in English

  • Comfortable with AI-driven tooling; actively looks for automation opportunities in compliance and operations



Highly Desirable Experience


  • supporting or preparing for M&A or investor due diligence processes

  • Background working alongside Legal, Procurement, and Engineering

  • Practical understanding of cloud security architecture (enough to challenge and validate, not operate)

Obtenez votre examen gratuit et confidentiel de votre CV.

ou faites glisser et déposez votre fichier ici.

Similar jobs

Postes similaires à comparer

Senior InfoSec Lead - AI-Driven Security & Investor Readiness
Senior InfoSec Lead - AI-Driven Security & Investor Readiness

Staffbase • Belgique

À distance
EUR 90 000 - 120 000
Information Security Engineer
Information Security Engineer

Fortegra Europe Insurance Company Ltd • Profondeville

À distance
EUR 65 000 - 110 000
Medical
Dental
Life insurance
+4
Information Security / Resilience (Senior) Manager (m/w/d)
Information Security / Resilience (Senior) Manager (m/w/d)

Nviso • Brussel Hoofdstad

Sur place
EUR 90 000 - 130 000
Flexible working hours
Home office possibilities
30 holidays
+4
Senior Security Operations Engineering Manager (m/w/d)
Senior Security Operations Engineering Manager (m/w/d)

NVISO GmbH • Brussel Hoofdstad

Sur place
EUR 90 000 - 130 000
Training budget: 10,000 EUR plus 10 in
Base salary 90,000–130,000 EUR p.a.
Flexible hours and home office (EU)
Security application engineer
Security application engineer

Daikin Europe • Gent

Sur place
EUR 70 000 - 100 000
Hybrid work option (2 days from home)
Senior Information Security Officer
Senior Information Security Officer

TechWolf • Gent

Hybride
EUR 90 000 - 130 000
Equity
Hybrid working
Mobility budget
+4
Senior Operations Security Engineer
Senior Operations Security Engineer

Dstny • Brussel Hoofdstad

À distance
EUR 70 000 - 95 000
AI-first tooling environment
Scale to millions of users
Autonomy and ownership
Senior Cyber Security Risk Assessment Consultant – DAST / SAST/ OWASP
Senior Cyber Security Risk Assessment Consultant – DAST / SAST/ OWASP

Salt • Brussel Hoofdstad

Hybride
EUR 90 000 - 140 000
Senior Information Security Officer
Senior Information Security Officer

TechWolf • Oost-Vlaanderen

Hybride
EUR 90 000 - 130 000
Hybrid working
Equity
Health insurance
+4
Product Security Lead
Product Security Lead

Mondeadditif • Heverlee

Sur place
EUR 90 000 - 140 000