Information Security Officer

Varengold Bank AG

Hamburg

Hybrid

EUR 60.000 - 90.000

Vollzeit

14 Tage+

Erhalte mehr Antworten von Arbeitgebern

Versende in nur wenigen Minuten einen passgenauen Lebenslauf.

Benefits dieser Stelle

Hybrid work model
European workation
Elbe-view offices
Gym and gaming room
Height-adjustable desks
Company bike
Job ticket subsidy
Preventive & dental insurance

Zusammenfassung

Varengold Bank AG in Hamburg is seeking an Information Security professional to advance the ISMS, ensure regulatory alignment, and support strategic security projects within the bank’s digital resilience program.

In this hybrid role, you will collaborate across IT, risk, compliance and audits, interpret requirements like DORA, MaRisk, ISO 27001, and translate them into practical controls for ICT deployments.

Qualifikationen

  • A completed (dual) degree in IT security or a related field.
  • 2–3 years’ experience in information security, IT risk, GRC or IT audit.
  • Experience with information security reviews, audits or assessments and handling findings, controls and measures.
  • Knowledge of regulatory requirements and standards such as DORA, MaRisk, ISO 27001, NIS2 or comparable frameworks.
  • Very good written and spoken German and English.

Aufgaben

  • Develop and continuously improve the ISMS, considering regulatory requirements and best practices.
  • Contribute to implementing regulatory requirements and standards (DORA, MaRisk, ISO 27001, NIS2).
  • Plan, support and track audits, manage findings and corrective actions.
  • Perform risk analyses, protection needs assessments, and security evaluations.
  • Assess ICT projects, cloud solutions, outsourcing, and new tech from an information-security perspective.

Kenntnisse

Regulatory compliance
IT risk management
GRC
Information security audits
German and English

Ausbildung

Dual degree or similar

Jobbeschreibung

WHAT YOU SHOULD KNOW ABOUT US:
Who we are. What drives us. Where we want to go.

Information security is a key factor in our bank’s success. As part of our Information Security Team, you will work on regulatory, organisational and technological issues. Together with our CISO, you will further develop security standards, support strategic projects and make a direct contribution to the bank’s digital resilience.

Hamburg | Hybrid working with face-to-face interaction in the office (2 to 3 times a week)

YOUR RESPONSIBILITIES:
  • Further development and continuous improvement of the Information Security Management System (ISMS), taking into account regulatory requirements and best practices
  • Contributing to the implementation and further development of regulatory requirements and standards, in particular DORA, MaRisk, ISO 27001 and other relevant supervisory requirements
  • Planning, supporting and following up on internal and external audits, as well as managing the resolution of findings and corrective actions
  • Conducting risk analyses, protection needs assessments, and security and control evaluations
  • Assessing ICT projects, cloud solutions, outsourcing arrangements and new technologies from an information security perspective
  • Developing and maintaining policies, standards, processes and security requirements
  • Supporting the further development of governance, risk and control structures within the information security environment
  • Analysing, handling and following up on information security incidents, and assisting in the identification of sustainable improvement measures
  • Working closely with, amongst others, IT, risk management, compliance, internal audit, as well as external auditors and service providers
YOUR PROFILE:
  • A successfully completed (dual) degree in (business) informatics, business law, IT security or a comparable qualification
  • 2 to 3 years’ relevant professional experience in the fields of information security, IT risk, GRC or IT audit
  • Experience in supporting or conducting information security reviews, audits or assessments, as well as in dealing with findings, controls and measures
  • Good knowledge of regulatory requirements and standards such as DORA, MaRisk, ISO 27001, NIS2 or comparable frameworks
  • Very good written and spoken German and English
  • Ability to communicate regulatory and security-related requirements in a pragmatic manner tailored to the audience
  • Analytical and structured way of thinking, as well as a meticulous approach to work
  • Proactive attitude, willingness to learn and enjoyment of familiarising oneself with new topics
  • High level of initiative and willingness to take on responsibility
YOUR BENEFITS:
  • Hybrid working model with flexible use of mobile working - you decide (from) where you work.
  • 20 days of workation in another European country.
  • Longing for your colleagues? Then we offer you attractive offices in an excellent location with a great view of the Elbe, including a gym and gaming room, height-adjustable desks, laptop bars and much more.
  • You will enjoy 30 days of vacation per year and have the 24.12. and 31.12. off all day.
  • Wherever you are - do unlimited sport throughout Germany with our partner EGYM Wellpass.
  • Whether by e-bike, cargo bike or classic bike - with your leased company bike, you are environmentally friendly on the road.
  • And when the weather is bad in Hamburg, you can use your Germany-wide job ticket, which we subsidize.
  • We also take out supplementary insurance for preventive check-ups and dental treatment for you.
  • A corporate culture that promotes personal development and combines the energy and innovation of a FinTech with the business orientation of a bank.
Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.
oder ziehe deine Datei hierhin.
Similar jobs

Ähnliche Jobs, die dir auch gefallen könnten

Information Security Officer (m/w/d)
Information Security Officer (m/w/d)

Ascory Bank • Hamburg

Hybrid
EUR 45.000 - 65.000
Hybrides Arbeiten
Workation 20 Tage
30 Tage Urlaub
+3
Experienced HR Generalist
Experienced HR Generalist

Varengold Bank AG • Hamburg

Hybrid
EUR 55.000 - 75.000
Hybrid work model
20 days workation in Europe
Gym and gaming room in offices
+4
Junior Information Security Officer
Junior Information Security Officer

Varengold Bank AG • Hamburg

Hybrid
EUR 42.000 - 65.000
Hybrid working model
25 days vacation
Gym and gaming room facilities
+3
(Senior) DevOps Engineer
(Senior) DevOps Engineer

Varengold Bank AG • Hamburg

Hybrid
EUR 70.000 - 110.000
Hybrid work
Work-life balance
30 days vacation
+2
Information Security Risk Manager (m/f/d)
Information Security Risk Manager (m/f/d)

hellmann • Osnabrück

Vor Ort
EUR 90.000 - 120.000
Flexible working hours
Mobile working options
Company pension
(Senior) DevOps Engineer:in
(Senior) DevOps Engineer:in

Varengold Bank AG • Hamburg

Hybrid
EUR 75.000 - 110.000
Hybrid work model
30 days vacation per year
Offices with Elbe view and gym
Information Security Manager (m/w/d) Informationssicherheit Hamburg dpa-IT Services GmbH
Information Security Manager (m/w/d) Informationssicherheit Hamburg dpa-IT Services GmbH

dpa Deutsche Presse-Agentur GmbH • Hamburg

Vor Ort
EUR 90.000 - 125.000
Betriebliche Altersvorsorge
(Senior) Internal IT Auditor (m/f/x)
(Senior) Internal IT Auditor (m/f/x)

Scalable GmbH • Bayern

Vor Ort
EUR 60.000 - 80.000
Education budget for career development
Free German language classes
Monthly contribution for public transport
+1
(Senior) DevOps Engineer (m/w/d)
(Senior) DevOps Engineer (m/w/d)

Varengold Bank AG • Hamburg

Hybrid
EUR 75.000 - 110.000
Information Security Manager (m/f/d)
Information Security Manager (m/f/d)

Synaptikon GmbH • Berlin

Vor Ort
EUR 85.000 - 110.000
BVG ticket
Urban Sports Club membership