Chief Information Security Officer (CISO) (m/f/div.)

SmartRecruiters, Inc.

Ovar

On-site

EUR 120,000 - 180,000

Full time

3 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Health insurance
Medical office on site
Gym access
Training & certifications
Career progression
Global collaboration
Discounts
Disability friendly

Job summary

Keenfinity Group seeks a Chief Information Security Officer (CISO) to own security strategy during the divestiture and lead the IT security function across the organization. Based in Ovar, Portugal, the role requires 8+ years of IT security leadership, 3+ years as CISO or Head of Security, deep ISO 27001, IAM, SOC/SIEM and cloud security (Azure preferred).

Fluent German and English; regular travel to HQ and BU sites.

Qualifications

  • 8+ years in IT security leadership roles.
  • 3+ years at CISO or Head of Security level.
  • Deep expertise in ISO 27001 / ISMS, IAM architecture, SOC / SIEM, cloud security (Azure preferred).
  • Proven ability to prepare and present security due diligence packages for corporate transactions.

Responsibilities

  • Define and own Keenfinity's IT security strategy for the divestiture period: threat landscape assessment, security architecture principles, risk appetite definition
  • Establish and maintain IT security governance: policies, standards, exception management, risk register at enterprise level
  • Report security risk status monthly to Director IT STG; produce quarterly security dashboards for Triton / CFO
  • Advise on security implications of cost reduction initiatives (FinOps, vendor consolidations) and lead due diligence preparation
  • Coordinate with Enterprise Architect to embed security in separation blueprints from the start
  • Lead security due diligence for each BU sale: posture docs, pentest summaries, ISMS evidence, incident history
  • Act as primary security contact for buyer due diligence teams; represent Keenfinity credibly in technical/executive discussions
  • Provide strategic direction to SOC Lead, IAM Lead, ISMS Manager; approve major security architecture decisions
  • Maintain ISO 27001 ISMS certified and audit-ready; own enterprise risk register and quarterly reviews
  • Ensure GDPR, NIS2 and other regulatory compliance; flag gaps to Director IT STG

Skills

IT security leadership
ISO 27001
IAM architecture
SOC SIEM
Cloud security
Executive communication
German language
English language

Job description

Chief Information Security Officer (CISO) (m/f/div.)
  • Full-time

The Keenfinity Group delivers professional communication and security solutions that connect and protect people and assets. Following its carve-out from the Bosch Group in mid-2025, it operates as independent company within the portfolio of European investment firm Triton. The Group’s four Businesses include Audio delivering professional communication products of the globally renowned brands Bosch, Electro-Voice, Dynacord, RTS and Telex, IQSIGHT Video Systems, Radionix Intrusion & Access, and KEENFINITY Electronics Manufacturing Services (EMS). In fiscal year 2025, the group generated revenues of over €1 billion and employed approximately 4,000 people across more than 40 countries.

Security at Keenfinity is not a compliance exercise. It is a business-critical function that directly affects the valuation and saleability of four Business Units. Every BU exit involves a buyer who will scrutinise Keenfinity's security posture in due diligence. Any significant finding — unpatched vulnerabilities, weak IAM controls, an ISMS that doesn't survive audit — will either reduce the sale price or delay the transaction.

As CISO, the role owns that risk. The role is the security authority across the entire Keenfinity IT organisation, reporting directly to the Director IT STG (Director IT STG). The role sets the security strategy, oversee the SIEM/SOC (the SOC Lead), IAM (the IAM Lead) and ISMS (the ISMS Manager) functions, and hold sign-off authority at every divestiture phase gate for security readiness. The role is also the person who sits across the table from buyer security teams in due diligence and can defend Keenfinity's security programme with credibility.

This is a senior, high-visibility role in a PE-backed environment with a defined exit horizon. The right person thrives under that constraint — they see the exits as the forcing function to prioritise ruthlessly and deliver what matters.

Key Responsibilities

Security strategy & governance

  • Define and own Keenfinity's IT security strategy for the divestiture period: threat landscape assessment, security architecture principles, risk appetite definition
  • Establish and maintain the IT security governance framework: policies, standards, exception management, risk register at the enterprise level
  • Report security risk status monthly to Director IT STG; produce quarterly security dashboards for Triton / CFO as required
  • Advise the Director IT STG on security implications of cost reduction initiatives — particularly vendor consolidations, license exits and cloud rightsizing decisions (FinOps Analyst interface)

Divestiture security — phase gate authority

  • Hold formal security sign-off authority at every BU divestiture phase gate: no gate advances without CISO confirmation that security separation is complete and defensible
  • Define the security requirements checklist for each exit: network separation, IAM tenant split, data classification and handling, encryption standards, security tooling carve-out
  • Coordinate with the Enterprise Architect to ensure security architecture is embedded in every separation blueprint from the start — not retrofitted at the end
  • Lead security due diligence preparation for each BU sale: produce security posture documentation, penetration test summaries, ISMS certification evidence, incident history and remediation records
  • Act as the primary security contact for buyer due diligence teams; represent Keenfinity's security programme credibly in technical and executive-level conversations

Security operations oversight

  • Provide strategic direction to the SOC Lead: SIEM platform strategy, detection coverage priorities, incident response protocols, escalation thresholds
  • Provide strategic direction to the IAM Lead: identity governance framework, privileged access management, directory architecture — especially relevant for AD/Azure AD separation per exit
  • Provide strategic direction to the ISMS Manager: ISO 27001 programme priorities, ISMS scope management per BU exit, certification renewal strategy
  • Review and approve major security architectural decisions; maintain the security architecture principles document as a living standard

ISMS & compliance

  • Ensure Keenfinity's ISO 27001 ISMS remains certified and audit-ready throughout the divestiture period — including scope adjustments as each BU separates
  • Own the security risk register at the enterprise level; chair the security risk review with the ISMS Manager and the Director IT STG quarterly
  • Ensure regulatory compliance across all active jurisdictions (GDPR, NIS2, relevant sector requirements); flag material compliance gaps to Director IT STG
  • 8+ years in IT security leadership roles; 3+ years at CISO or Head of Security level
  • Demonstrable experience with M&A security — either as the security lead on a carve-out, divestiture or acquisition, or as a senior security advisor in a transaction context
  • Deep expertise in at least two of: ISO 27001 / ISMS programme management, IAM architecture (Active Directory / Entra ID), SOC / SIEM operations, cloud security (Azure preferred)
  • Proven ability to prepare and present security due diligence packages for corporate transactions; experience sitting in buyer due diligence conversations is a strong differentiator
  • Executive-level communication: able to translate complex security risk into language that resonates with a CFO and PE investor — without dumbing it down
  • Fluent German and English — both languages will be used daily
  • Based in Ovar; regular travel to Straubing (security team), Munich HQ and BU locations

Advantageous

  • CISSP, CISM or equivalent senior security certification
  • Experience in industrial technology, manufacturing or multi-site operational environments
  • Familiarity with NIS2 requirements and their practical implications for an international mid-market company
  • Background in PE-backed companies or experience working to PE investor reporting

Keenfinity benefits includes:

  • Health insurance and medical office on site (nutrition, psychology, physiotherapy and general clinic)
  • Sports and health related activities (gym)
  • Training opportunities (i.e., technical training, foreign languages training) & certifications
  • Opportunities for career progression and continuous professional development
  • Exchange with colleagues around the world
  • Access to great discounts in partnerships and products
  • All our positions are open to people with disability

At Keenfinity we don’t just build innovative solutions — we shape a smarter, more connected world through technology.

We value different backgrounds, ideas, and experiences and we’re committed to growing, learning, and celebrating success as one team. Everyone is welcome here — we foster an environment where everyone is respected, valued, and encouraged to be their authentic self.

Keenfinity is an equal opportunity employer, offering equal opportunities for all. We welcome applications from people with disabilities and can offer support, if needed. When everyone has a chance to contribute, we all do better.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Chief Information Security Officer (CISO) (m/f/div.)
Chief Information Security Officer (CISO) (m/f/div.)

SmartRecruiters, Inc. • Aveiro

On-site
EUR 150,000 - 190,000
Health insurance
On-site medical support
Training opportunities
Chief Information Security Officer (Ciso) (M/F/Div.)
Chief Information Security Officer (Ciso) (M/F/Div.)

Bosch Group • Viseu

On-site
EUR 120,000 - 180,000
Flexible work conditions
Hybrid work system
Health insurance and on-site medical
+2
Senior VS Industrialization Project Manager (m/f/div)
Senior VS Industrialization Project Manager (m/f/div)

SmartRecruiters, Inc. • Ovar

On-site
EUR 30,000 - 38,000
Health insurance
Sports and health activities
Training opportunities
+4
Global Inventory Controlling & Material Ledger Expert (m./f./div.)
Global Inventory Controlling & Material Ledger Expert (m./f./div.)

Keenfinity Group • Ovar

Hybrid
EUR 60,000 - 90,000
Flexible work
Health insurance
On-site clinic
+8
E2E IT Architect (Enterprise Systems) (div/w/m)
E2E IT Architect (Enterprise Systems) (div/w/m)

Keenfinity Group • Ovar

Hybrid
EUR 70,000 - 90,000
Flexible work conditions
Hybrid work system
Canteen
+7
CISO — Divestiture Security & Strategic Risk Lead
CISO — Divestiture Security & Strategic Risk Lead

SmartRecruiters, Inc. • Aveiro

On-site
EUR 150,000 - 190,000
Health insurance
On-site medical support
Training opportunities
Project Management Leader (m/f/div)
Project Management Leader (m/f/div)

Iqsight • Aveiro

Hybrid
EUR 60,000 - 80,000
Health insurance
Training opportunities
Career progression
+1
Hardware Test Engineering Internship (m./f,./div.)
Hardware Test Engineering Internship (m./f,./div.)

Keenfinity Group • Ovar

On-site
EUR 10,000 - 17,000
Flex schedule
Health insurance
Canteen
+4
Hardware Test Engineering Internship (m./f,./div.)
Hardware Test Engineering Internship (m./f,./div.)

SmartRecruiters, Inc. • Ovar

On-site
EUR 13,000 - 14,000
Flexible work conditions
Health insurance on site (medical)
Sports and health activities
+5
Senior Mechanical Process Engineer (f/m/div.)
Senior Mechanical Process Engineer (f/m/div.)

Keenfinity Group • São João

On-site
EUR 29,000 - 32,000
Flexible work conditions
Exchange with colleagues around the世界
Health insurance and on-site medical
+7