Erhalte mehr Antworten von Arbeitgebern
Versende in nur wenigen Minuten einen passgenauen Lebenslauf.
VIA HealthTech sucht eine hands-on IT Security & Compliance Managerin bzw. Manager, die unsere IT-Compliance, ISMS und Sicherheitssetup end-to-end verantworten.
Sie arbeiten eng mit Engineering zusammen, implementieren Systeme, konfigurieren Tools, führen Audits durch und gestalten Security pragmatisch in unserer Cloud-nativen Infrastruktur.
Die Rolle ist part-time in unserem Berliner Büro, mit direktem Austausch zu Gründern und CTO und Beteiligung am Unternehmenserfolg.
VIA HealthTech automates psychotherapy documentation — from session notes to psychological reports — so therapists spend less time on admin and more time with patients.
We work at the intersection of mental healthcare, AI, and software. Security is central to what we build: we process highly sensitive data and already hold C5 and ISO27001 certification.
We are looking for a hands-on IT Security & Compliance Manager to own our IT Compliance, ISMS, and our IT security setup end-to-end.
This is a broad role in a small team. You will not only maintain policies but also implement systems, configure tools, run audits, and work directly with engineering to make security a practical part of how we build.
In practice, that means:
Required:
Nice to have:
What matters beyond the checklist:
We are a 10-person startup. This role needs breadth, ownership, and hands‑on execution. ISO27001 and C5 are in place and yours to own. That means maintaining them, keeping Vanta current, and updating controls and policies as we grow. What we don't need is someone to collect evidence. We need someone who decides what a control should actually be, builds it, and can tell whether it works.
We are not looking for someone who only writes policies, but for someone who builds and operates the security and compliance foundation VIA needs as it scales.
The role is part‑time given the small team size, but workloads may vary (eg. increased when building certain security features or during the audit periods).