Compliance & Information Security Manager

GlassDollar
Berlin
EUR 60.000 - 80.000
Jobbeschreibung

About

If you are a compliance and security professional with SaaS B2B experience, join us to co-create the future of Corporate Open Innovation!


Mission

Your mission will be to ensure the security and compliance of our products and services while balancing business needs.


Responsibilities

  1. Manage vendor security processes, including completing security questionnaires (IT checks) and incorporating security language into contractual agreements.
  2. Develop and maintain policies and guidelines regarding information security and compliance.
  3. Manage our security and compliance activities, such as our TISAX recertification and annual penetration testing.
  4. Act as the central point of contact regarding security and compliance with the Product, Law consultants, and Clients' IT teams.
  5. Help Product leadership articulate security and compliance requirements when evaluating third-party products.
  6. Take a pragmatic approach to balance security best practices with business needs.
  7. Develop, implement, review, and assess the Information Security Management System (ISMS) for compliance and effectiveness, ensuring alignment with regulatory requirements and market demands (including a security strategy, roadmap, policies, procedures, guidelines, and controls).

Your profile

  1. Ability to conduct threat and risk assessments and help the Product grow while covering minimal pragmatic requirements.
  2. German speaker - Highly preferable.
  3. Knowledge and experience designing controls and processes for TISAX and/or ISO 27001 requirements.
  4. Hands-on experience with information security, particularly in cloud-based environments (AWS, Azure, or GCP).
  5. A strong understanding of privacy requirements (GDPR).
  6. Experience working with developer and product teams to improve security processes and integrate security tooling.
  7. Experience managing and completing incoming vendor security reviews and collaborating with legal and procurement teams on contractual agreements.
  8. Sufficient technical competence to understand relevant concepts and support ongoing projects and technology efforts.
  9. Excellent interpersonal skills to communicate complex technical concepts to various stakeholders.
  10. High professional standards and strong attention to detail.

What happens once you apply

We will review your application and contact you regarding the next steps.

Erhalte deine kostenlose, vertrauliche Lebenslaufüberprüfung.
Datei wählen oder lege sie per Drag & Drop ab
Avatar
Kostenloses Online-Coaching
Erhöhe deine Chance auf eine Einladung zum Interview!
Sei unter den Ersten, die neue Stellenangebote für Compliance & Information Security Manager in Berlin entdecken.