Information Security Officer

Varengold Bank AG

Hamburg

Hybrid

EUR 60.000 - 90.000

Vollzeit

14 Tage+
Bewerbungsgenerator

Eine Bewerbung wie gemacht für diesen Job — ein maßgeschneiderter Lebenslauf und ein Anschreiben, die genau zur Stellenanzeige passen.

Schaffe es an den ATS-Filtern vorbei

Benefits dieser Stelle

Hybrid work model
European workation
Elbe-view offices
Gym and gaming room
Height-adjustable desks
Company bike
Job ticket subsidy
Preventive & dental insurance

Zusammenfassung

Varengold Bank AG in Hamburg is seeking an Information Security professional to advance the ISMS, ensure regulatory alignment, and support strategic security projects within the bank’s digital resilience program.

In this hybrid role, you will collaborate across IT, risk, compliance and audits, interpret requirements like DORA, MaRisk, ISO 27001, and translate them into practical controls for ICT deployments.

Qualifikationen

  • A completed (dual) degree in IT security or a related field.
  • 2–3 years’ experience in information security, IT risk, GRC or IT audit.
  • Experience with information security reviews, audits or assessments and handling findings, controls and measures.
  • Knowledge of regulatory requirements and standards such as DORA, MaRisk, ISO 27001, NIS2 or comparable frameworks.
  • Very good written and spoken German and English.

Aufgaben

  • Develop and continuously improve the ISMS, considering regulatory requirements and best practices.
  • Contribute to implementing regulatory requirements and standards (DORA, MaRisk, ISO 27001, NIS2).
  • Plan, support and track audits, manage findings and corrective actions.
  • Perform risk analyses, protection needs assessments, and security evaluations.
  • Assess ICT projects, cloud solutions, outsourcing, and new tech from an information-security perspective.

Kenntnisse

Regulatory compliance
IT risk management
GRC
Information security audits
German and English

Ausbildung

Dual degree or similar

Jobbeschreibung

WHAT YOU SHOULD KNOW ABOUT US:
Who we are. What drives us. Where we want to go.

Information security is a key factor in our bank’s success. As part of our Information Security Team, you will work on regulatory, organisational and technological issues. Together with our CISO, you will further develop security standards, support strategic projects and make a direct contribution to the bank’s digital resilience.

Hamburg | Hybrid working with face-to-face interaction in the office (2 to 3 times a week)

YOUR RESPONSIBILITIES:
  • Further development and continuous improvement of the Information Security Management System (ISMS), taking into account regulatory requirements and best practices
  • Contributing to the implementation and further development of regulatory requirements and standards, in particular DORA, MaRisk, ISO 27001 and other relevant supervisory requirements
  • Planning, supporting and following up on internal and external audits, as well as managing the resolution of findings and corrective actions
  • Conducting risk analyses, protection needs assessments, and security and control evaluations
  • Assessing ICT projects, cloud solutions, outsourcing arrangements and new technologies from an information security perspective
  • Developing and maintaining policies, standards, processes and security requirements
  • Supporting the further development of governance, risk and control structures within the information security environment
  • Analysing, handling and following up on information security incidents, and assisting in the identification of sustainable improvement measures
  • Working closely with, amongst others, IT, risk management, compliance, internal audit, as well as external auditors and service providers
YOUR PROFILE:
  • A successfully completed (dual) degree in (business) informatics, business law, IT security or a comparable qualification
  • 2 to 3 years’ relevant professional experience in the fields of information security, IT risk, GRC or IT audit
  • Experience in supporting or conducting information security reviews, audits or assessments, as well as in dealing with findings, controls and measures
  • Good knowledge of regulatory requirements and standards such as DORA, MaRisk, ISO 27001, NIS2 or comparable frameworks
  • Very good written and spoken German and English
  • Ability to communicate regulatory and security-related requirements in a pragmatic manner tailored to the audience
  • Analytical and structured way of thinking, as well as a meticulous approach to work
  • Proactive attitude, willingness to learn and enjoyment of familiarising oneself with new topics
  • High level of initiative and willingness to take on responsibility
YOUR BENEFITS:
  • Hybrid working model with flexible use of mobile working - you decide (from) where you work.
  • 20 days of workation in another European country.
  • Longing for your colleagues? Then we offer you attractive offices in an excellent location with a great view of the Elbe, including a gym and gaming room, height-adjustable desks, laptop bars and much more.
  • You will enjoy 30 days of vacation per year and have the 24.12. and 31.12. off all day.
  • Wherever you are - do unlimited sport throughout Germany with our partner EGYM Wellpass.
  • Whether by e-bike, cargo bike or classic bike - with your leased company bike, you are environmentally friendly on the road.
  • And when the weather is bad in Hamburg, you can use your Germany-wide job ticket, which we subsidize.
  • We also take out supplementary insurance for preventive check-ups and dental treatment for you.
  • A corporate culture that promotes personal development and combines the energy and innovation of a FinTech with the business orientation of a bank.
Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.

oder ziehe deine Datei hierhin.

Similar jobs

Ähnliche Jobs, die dir auch gefallen könnten

(Junior) Information Security Officer – GRC
(Junior) Information Security Officer – GRC

Varengold Bank AG • Hamburg

Vor Ort
EUR 42.000 - 65.000
Hybrid working model
20 days workation in another European
Gym & gaming room
+7
Information Security Officer (m/w/d)
Information Security Officer (m/w/d)

Varengold Bank AG • Hamburg

Hybrid
EUR 50.000 - 75.000
Hybrid Work
Workation 20 Tage
30 Tage Urlaub
+7
(Junior) Information Security Officer (m/w/d) - GRC, Hamburg
(Junior) Information Security Officer (m/w/d) - GRC, Hamburg

Ascory Bank AG • Hamburg

Hybrid
EUR 42.000 - 66.000
Hybrides Arbeiten
20 Tage Workation
30 Tage Urlaub
+4
Junior Information Security Officer (m/w/d)
Junior Information Security Officer (m/w/d)

Varengold Bank AG • Hamburg

Hybrid
EUR 42.000 - 65.000
Hybrid-Arbeitsmodell
30 Tage Urlaub
Jobticket
+2
(Junior) Information Security Officer (m/w/d) – GRC
(Junior) Information Security Officer (m/w/d) – GRC

Remotely • Hamburg

Vor Ort
EUR 42.000 - 54.000
Hybrid Work
Workation 20 Tage
30 Tage Urlaub
+4
(Junior) Information Security Officer (m/w/d) – GRC
(Junior) Information Security Officer (m/w/d) – GRC

Varengold Bank AG • Hamburg

Vor Ort
EUR 48.000 - 62.000
Hybrides Arbeiten
Workation 20 Tage
Urlaub 30 Tage
+6
Junior Information Security Officer
Junior Information Security Officer

Varengold Bank AG • Hamburg

Vor Ort
EUR 42.000 - 65.000
Hybrid working model
25 days vacation
Gym and gaming room facilities
+3
Information Security Specialist (m/w/d)
Information Security Specialist (m/w/d)

Aioi Nissay Dowa Europe • Deutschland

Vor Ort
EUR 70.000 - 110.000
32 days leave per year
Flexible working hours
Home office ~60%
+3
Information Security Analyst (f/m/x)
Information Security Analyst (f/m/x)

Deutsche Bank AG • Frankfurt

Vor Ort
EUR 70.000 - 100.000
Emotional balance
Health & wellbeing
Social networking
+1
Information Security Expert (m/w/d)
Information Security Expert (m/w/d)

Crealogix BaaS GmbH & Co. KG • Coburg, Stuttgart, Jever

Vor Ort
EUR 70.000 - 95.000
30 Tage Urlaub
Weiterbildungsmöglichkeiten
JobRad Leasing
+3