Information Security Controls Manager - Cloud & AI Governance

EngineersOfAI

Berlin

Vor Ort

EUR 75.000 - 95.000

Vollzeit

14 Tage+

Erhalte mehr Antworten von Arbeitgebern

Versende in nur wenigen Minuten einen passgenauen Lebenslauf.

Zusammenfassung

EngineersOfAI is seeking an Information Security Controls Manager in Berlin to strengthen Cloud Security and AI Governance. This role involves execution of controls monitoring, stakeholder communication, and compliance with various regulations.

Ideal candidates will have 4-6 years of experience in information security, expertise in Cloud Security controls, and familiarity with ISO standards.

Qualifikationen

  • 4-6 years of experience in information security compliance, risk, or audit roles.
  • Strong knowledge of Cloud Security controls and AI/ML governance risk frameworks.
  • Experience with security standards like ISO 27001, BSI C5, EU AI Act and GDPR.

Aufgaben

  • Communicate with stakeholders and execute the IS Controls Framework monitoring process.
  • Highlight risks and suggest improvements regarding cloud and AI systems.
  • Maintain controls documentation for audit readiness.

Kenntnisse

Cloud Security controls (AWS/Google Cloud)
AI/ML governance risk frameworks
Information & Communication Technologies (ICT)
Risk management
Audit methodologies

Ausbildung

Bachelor’s or Master’s degree in information security or computer science

Tools

Jira
Confluence
Google Workspace

Jobbeschreibung

About the opportunity

We are seeking an Information Security Controls Manager to join the Information Risk Management (IRM) Segment within the Information Security (IS) Controls team at N26. As a member of this team, you will contribute to ensuring that Information Security Controls Framework processes are operated without any disruptions, with a specialized focus on strengthening our Cloud Security posture and AI Governance frameworks. N26 and its subsidiaries operate in a variety of regulatory environments and across international boundaries, while the IRM team helps N26 to navigate this complex, demanding, and rapidly evolving technological landscape.

In this role, you will:
  • Frequently communicate with various stakeholders of all levels.
  • Execution and review of the Information Security (IS) Controls Framework monitoring process, ensuring comprehensive coverage of cloud infrastructure and AI/ML deployments.
  • Communicate, Collate and review the evidence received via monthly control review request tickets (TOE).
  • Perform QA reviews, query and or seek clarification from stakeholders to achieve the objectives of controls effectiveness.
  • Highlight the gaps/risks observed during reviews, raise non-conformities, particularly concerning cloud misconfigurations and AI model risks, and suggest improvements to the teams or stakeholders.
  • Liaise with the CISO office and the DPO office to provide updates on a monthly basis over the status of controls, including compliance updates regarding cloud security and AI systems.
  • Improve awareness of controls, security practices, and responsible AI utilization among stakeholders.
  • Contribute to the team in developing KRIstailored to traditional IT, Cloud environments, and AI use cases.
  • Working independently and managing the IS Controls daily tasks.
  • Review and update the design of the controls pages from a technical perspective and maintain the control calendar.
  • Actively work on the change requests from stakeholders.
  • Preparation and follow-up of Change Request tickets.
  • Drafting and publishing of the monthly control reports & other documentation (MoMs).
  • Support the team and stakeholders during audits and coordinating the action items and evidence.
  • Maintain controls team’s key documentation to ensure audit readiness.
  • Equally participate in designing controls, developing working instructions and procedures that are required based on security standards and regulations such as ISO 27001, EU GDPR, DORA, SWIFT, NIS2,and the EU AI Act.
  • Evaluate and map internal control frameworks to cloud security benchmarks (e.g., Cloud Security Alliance (CSA), BSI C5) and AI governance frameworks.
  • Facilitate and make sure that all key processes have been documented in an easy and efficient process flow.
  • Design and update working instructions to implement the requirements coming from the policies.
  • Identify and surface process or tooling-related inefficiencies and support AI enabled process optimizations
  • Mapping of Internal control framework to the various regulations/Standards.
What you need to be successful:
  • Bachelor’s or Master’s degree, relevant to information security or computer science.
  • You have approximately 4-6 years of experience in an information security compliance, risk, or audit role.
  • Demonstrated experience or strong knowledge of Cloud Security controls (AWS/Google Cloud preferred) and AI/ML governance risk frameworks.
  • Previous hands‑on experience or knowledge on security standards such as ISO 27001, ISO42001, NIST, BSI C5, and other regulatory requirements like DORA, EU AI Act, EU CRA & EU GDPR.
  • Good understanding of Information & Communication Technologies (ICT) and Security controls. Previous experience related to audit/compliance frameworks and methodologies is a plus.
  • Ability to communicate clearly with peers, as well as stakeholders of all levels.
  • You are proficient in using Jira, Confluence and Google Workspace apps. (i.e. Docs, Sheets, Slides). Good understanding of Google Sheets features and formulas.
Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.
oder ziehe deine Datei hierhin.
Similar jobs

Ähnliche Jobs, die dir auch gefallen könnten

Information Security Controls Manager - Cloud & AI Governance
Information Security Controls Manager - Cloud & AI Governance

N26 • Berlin

Vor Ort
EUR 90.000 - 130.000
Relocation visa support
Premium N26 account access
Flexible benefits: home work budget, L
+1
ICT Risk Assessment Manager
ICT Risk Assessment Manager

N26 • Berlin

Vor Ort
EUR 90.000 - 140.000
Work from home budget
Relocation package with visa support
Premium N26 subscription
Senior Cloud Security Engineer
Senior Cloud Security Engineer

EngineersOfAI • Berlin

Vor Ort
EUR 90.000 - 140.000
Senior Cloud Security Engineer
Senior Cloud Security Engineer

DUDE CHEM • Berlin

Vor Ort
EUR 90.000 - 150.000
Work from home budget
Professional development budget
Discretionary annual bonus
Team Lead Non-Financial Risk and Internal Controls
Team Lead Non-Financial Risk and Internal Controls

N26 • Berlin

Vor Ort
EUR 120.000 - 150.000
Information Security Manager (m/f/d) - Ownership in Open Finance
Information Security Manager (m/f/d) - Ownership in Open Finance

Remotely • Berlin

Hybrid
EUR 90.000 - 130.000
Impact & Ownership
Hybrid work model across Berlin andMun
Personal growth budget
+1
Information Security Manager
Information Security Manager

Digital Waffle • Berlin

Hybrid
EUR 85.000 - 100.000
IT Security Consultant: Secure by Design (m/f/d)
IT Security Consultant: Secure by Design (m/f/d)

CLOUDYRION • Düsseldorf

Hybrid
EUR 60.000 - 85.000
30 days of vacation
Hybrid work model
In-house gym and break spaces
+1
Risk Consulting-Digital Risk-Manager-Cloud
Risk Consulting-Digital Risk-Manager-Cloud

EY • Deutschland

Vor Ort
EUR 110.000 - 150.000
(Senior) Information Security Officer (German)
(Senior) Information Security Officer (German)

United States Digital Space LLC • München

Vor Ort
EUR 90.000 - 130.000