Technical Information Security Officer (ISO)

Eye Security

Berlin

Hybrid

EUR 90.000 - 150.000

Vollzeit

Vor 6 Tagen
Sei unter den ersten Bewerbenden
Bewerbungsgenerator

Eine zielgenaue Bewerbung für diesen Job — ein maßgeschneiderter Lebenslauf und ein Anschreiben, die genau zur Stellenanzeige passen.

Schaffe es an den ATS-Filtern vorbei

Benefits dieser Stelle

Remote-friendly culture
Quarterly meetups
Annual company retreats
Thursday socials
Wellbeing days
Competitive salary

Zusammenfassung

Eye Security seeks a senior Technical Information Security Officer to lead IT security architecture, monitoring infrastructure, and controls. You translate compliance needs into robust technical solutions, design security components, manage log analytics, and ensure controls operate effectively.

This role provides strategic influence over Eye Security's security posture, collaborating with the CISO office and engineering teams to scale security while maintaining regulatory compliance.

Qualifikationen

  • Hands-on experience with AWS, DLP, log analytics, SIEM, and secure configuration management.
  • Deep understanding of RBAC and separation of duties.
  • Expertise in ISO 27001:2022 and EU NIS2 requirements.
  • Excellent analytical and problem-solving skills with ability to translate compliance to technical solutions.
  • Strong communication skills bridging compliance and technical audiences.
  • Fluent English (written and spoken); Dutch is a plus.

Aufgaben

  • Design and implement insider threat solutions (DLP) to safeguard data.
  • Define and enforce RBAC and separation of duties across systems.
  • Establish secure configurations aligned with ISO 27001:2022 requirements.
  • Develop threat models and security design documentation.
  • Deploy centralized logging and SIEM; monitor security events in real time.
  • Coordinate vulnerability management and penetration testing engagements.
  • Translate compliance requirements into technical specifications with CISO.

Kenntnisse

AWS
DLP
Log analytics
SIEM platforms
RBAC
Separation of duties
ISO 27001:2022
EU NIS2
Security architecture
Communications

Tools

Security tooling

Jobbeschreibung

About Eye Security

Eye Security provides cybersecurity with embedded cyber insurance solutions for organizations across Europe. Headquartered in the Netherlands, we are already over 190 FTEs and continue to grow internationally, having secured our Series C funding of 60 million euros. We combine cutting-edge technology with hands‑on expertise to detect, respond to, and recover from cyber threats in real time. Our team brings together talent from intelligence, military, tech, and consulting backgrounds, all united by a shared mission: to make enterprise‑grade cybersecurity accessible to every business, particularly SMEs, not just the big players. At Eye, you will work on projects with an international footprint, helping ourselves to meet ISO 27001:2022 and EU NIS2 obligations while building a safer digital future.

About This Role

We are looking for a Technical Information Security Officer to lead the design and implementation of our IT security architecture, monitoring infrastructure, and technical controls. In this role, you will translate compliance requirements from our CISO office into robust technical solutions, design and deploy security architecture components, manage our log analytics and monitoring platform, and ensure all security controls are functioning as intended. You act as the technical counterpart to our compliance‑facing ISO. Where the CISO office defines what controls need to prove compliance, you design and implement how those controls work and ensure they remain operational and effective. This is a senior technical cybersecurity role with strategic influence over Eye Security's security posture.

What you will do
Security Architecture
  • Design and implement insider threat solutions, such as Data Loss Prevention (DLP), to safeguard sensitive information and prevent unauthorized data exfiltration.
  • Define and enforce role‑based access controls and separation of duties principles to prevent abuse and limit the effect of mistakes across systems and applications.
  • Establish and maintain secure configurations for systems, applications, and network components in alignment with industry standards and ISO 27001:2022 requirements.
  • Develop threat models and security design documentation to anticipate and mitigate emerging attack vectors.
Log Analytics & Systems Monitoring
  • Deploy and configure centralized logging infrastructure and SIEM platforms to collect, store, and analyze security events across all systems and applications.
  • Design and implement alerting rules and monitoring workflows to detect anomalies, suspicious activities, and potential security breaches in real time.
  • Monitor, investigate, and respond to security alerts in coordination with the CISO office and provide recommendations for remediation.
  • Optimize log retention, storage, and analytics performance to maintain compliance with regulatory and operational requirements.
Vulnerability & Risk Management
  • Coordinate vulnerability disclosure processes and manage the bug bounty program to identify and remediate security weaknesses in a timely manner.
  • Coordinate and oversee penetration testing engagements to validate security controls and identify gaps in the security architecture.
  • Develop and maintain a process for tracking, prioritizing, and remediating identified vulnerabilities and security findings.
Secure Development & Configuration Management
  • Establish and enforce secure coding principles and practices for all internal software development and third‑party components.
  • Implement configuration management processes to ensure systems are deployed and maintained in a secure, consistent, and auditable manner.
  • Design and implement secure data masking techniques to protect sensitive information in non‑production environments and during data processing.
Compliance Support & Collaboration with CISO office
  • Work closely with the Information Security Officers to translate compliance requirements into clear technical specifications for architecture, logging, and monitoring.
  • Provide evidence and documentation of technical controls to support compliance audits and regulatory assessments for ISO 27001:2022 and EU NIS2.
  • Support the ISO’s in defining technical monitoring requirements and help validate that implemented controls meet compliance objectives.
  • Develop and support cyber security incident exercises and participate in the Incident Response Team during security breaches.
What you will need
Must-haves
  • Hands‑on experience with AWS, DLP, log analytics, SIEM platforms, and secure configuration management in enterprise environments.
  • Deep understanding of role‑based access control (RBAC), separation of duties principles, and their implementation in modern IT infrastructures.
  • Expertise in security frameworks and compliance standards, particularly ISO 27001:2022 and EU NIS2 requirements.
  • Excellent analytical and problem‑solving skills with the ability to translate compliance requirements into technical solutions.
  • Strong communication skills to bridge compliance and technical audiences, including senior leadership and external auditors.
  • Fluent English (written and spoken); Dutch is a plus.
Nice‑to‑have
  • Experience with cloud security tools and architectures (Azure, or equivalent).
  • Experience with bug bounty programs and vulnerability management platforms.
  • Relevant certifications (e.g., OSCP).
  • Knowledge of secure development lifecycle (SDLC) practices and secure coding standards.
  • Experience leading security architecture design in a scaling organization.
How this role fits our team

This role is the technical foundation of Eye Security's security posture. While the Information Security Officers formulates what needs to be monitored and evidenced for compliance, you design and implement the technical infrastructure that makes it happen. You will build and lead the IT Security Office, ensuring that security architecture, log analytics, and monitoring capabilities remain aligned with our evolving compliance requirements and threat landscape as Eye Security scales. You will work closely with the ISO’s to ensure requirements flow seamlessly from compliance to implementation, and with the Engineering team to maintain operational excellence.

What we offer
  • A meaningful mission: protect organizations across Europe from real‑world cyber threats.
  • Work with top‑tier professionals from national CERTs, intelligence agencies, and leading tech backgrounds.
  • A remote‑friendly culture with quarterly meetups and annual company retreats (in Spain, Portugal, Italy...).
  • Thursday socials to stay connected.
  • A generous time‑off policy, including wellbeing and volunteering days.
  • Competitive salary and professional development opportunities.
Equal Opportunity

Eye Security is an equal opportunity employer. We are committed to making our hiring process accessible to everyone. If you need a reasonable accommodation to apply or interview for this role, please inform the TA team.

Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.
oder ziehe deine Datei hierhin.
Similar jobs

Ähnliche Jobs, die dir auch gefallen könnten

Junior Cyber Security Consultant (m/f/x)
Junior Cyber Security Consultant (m/f/x)

Eye Security • Berlin

Vor Ort
EUR 40.000 - 55.000
Remote-friendly culture
Annual company retreats
Flexible working hours
Senior Software Engineer (m/f/x)
Senior Software Engineer (m/f/x)

Meyandy LLC • Berlin

Hybrid
EUR 90.000 - 120.000
Junior Cyber Security Consultant (m/f/x)
Junior Cyber Security Consultant (m/f/x)

Meyandy LLC • Berlin

Hybrid
EUR 36.000 - 48.000
Senior Software Engineer, Agents
Senior Software Engineer, Agents

Eye Security • Berlin

Vor Ort
EUR 90.000 - 120.000
Senior Talent Acquisition Partner, Recruiter - Berlin (f/m/x)
Senior Talent Acquisition Partner, Recruiter - Berlin (f/m/x)

Meyandy LLC • Berlin

Hybrid
EUR 70.000 - 100.000
Staff AI Engineer
Staff AI Engineer

Eye Security • Berlin

Vor Ort
EUR 120.000 - 160.000
Research ownership
Shipped mitigations
Collaborative team
+2
Senior Software Engineer, Agents (m/f/x)
Senior Software Engineer, Agents (m/f/x)

Eye Security • Berlin

Hybrid
EUR 90.000 - 120.000
Senior Software Engineer, Agents
Senior Software Engineer, Agents

Meyandy LLC • Berlin

Hybrid
EUR 90.000 - 130.000
Senior Product Marketing Manager – German Speaking - Cybersecurity (m/f/x)
Senior Product Marketing Manager – German Speaking - Cybersecurity (m/f/x)

Eye Security • Berlin

Hybrid
GBP 90.000 - 140.000
Remote-friendly culture
Quarterly meetups
Annual company retreats
+2
Customer Success Manager Netherlands (m/f/x)
Customer Success Manager Netherlands (m/f/x)

Eye Security • Deutschland

Hybrid
EUR 60.000 - 90.000
Hybrid culture
Weekly NL lunches
Wellbeing days
+1