Group Information Security Lead - Remote-First & Impactful Growth

orcristtechnologies

United States

Remote

USD 180,000 - 240,000

Full time

14 days+
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Remote-first across Europe
Home-office budget
30 days vacation
Performance bonuses
Growth and team events

Job summary

orcristtechnologies is seeking a Group Information Security Officer to lead security strategy and hands-on efforts during the build-up phase, then transition to governance as the program matures. The role spans risk analysis, compliance with BSI IT-Grundschutz, and aligning processes for ISO 27001 readiness.

The incumbent will drive a group-wide ISMS, manage vendor risk, and coordinate incident response while ensuring regulatory alignment with NIS-2, EU AI Act, and Cyber Resilience Act.

Qualifications

  • Experience as an Information Security Officer or similar role.
  • Strong knowledge of BSI IT-Grundschutz (200-x standards) and Grundschutz Compendium.
  • Track record in ISO 27001 programme development and audits.
  • Strong risk management skills; able to communicate to technical and non-technical stakeholders.
  • Willingness to be hands-on during build phases in addition to governance.
  • German at C1+ and English at B2+.

Responsibilities

  • Build and evolve a group-wide ISMS aligned with BSI IT-Grundschutz; perform analysis, protection needs assessment, modelling and risk analysis.
  • Prepare and steer ISO 27001 certification, run internal audits, and coordinate external auditors.
  • Translate NIS-2 obligations into operational processes, including reporting and remediation tracking.
  • Own the group security policy and process framework; coordinate entity-specific addenda.
  • Manage third-party and vendor risk, including security assessments for new tools and providers.
  • Plan and evolve incident response with IT, legal, and leadership during incidents.
  • Create a security awareness programme with training and ongoing sensitisation.
  • Monitor regulatory regimes like EU AI Act and Cyber Resilience Act and convert into actions.

Skills

Risk management
Hands-on security
German language (C1)
English language (B2)
ISO 27001 programmes

Education

IT-Grundschutz certification cycle completed

Job description

orcristtechnologies is seeking a Group Information Security Officer to lead security strategy and hands-on efforts during the build-up phase, then transition to governance as the program matures. The role spans risk analysis, compliance with BSI IT-Grundschutz, and aligning processes for ISO 27001 readiness.

The incumbent will drive a group-wide ISMS, manage vendor risk, and coordinate incident response while ensuring regulatory alignment with NIS-2, EU AI Act, and Cyber Resilience Act.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Infosec or GRC Leader
Infosec or GRC Leader

Avantdigitalnow • San Francisco (CA)

On-site
USD 95,000 - 130,000
Gruppen Informationssicherheitsbeauftragter (m/f/d)
Gruppen Informationssicherheitsbeauftragter (m/f/d)

orcristtechnologies • United States

Remote
USD 180,000 - 240,000
Remote-first across Europe
Home-office budget
30 days vacation
+2
Information Security Officer — Remote‑Ready, Europe Impact
Information Security Officer — Remote‑Ready, Europe Impact

Action • Netherlands (MO)

Hybrid
USD 97,165 - 125,743
Market-based salary
Annual bonus
Flexible working hours (up to 40% from
+1
Staff Security Operations Engineer - Remote-First, Impactful Defense
Staff Security Operations Engineer - Remote-First, Impactful Defense

Jobgether SRL • United States

Remote
USD 90,000 - 150,000
Remote-first environment
In-person team sprints twice a year
Annual learning budget USD 2000
+1
Senior Manager of Information Security
Senior Manager of Information Security

Plume • United States

On-site
USD 180,000 - 240,000
Chief Information Security Officer
Chief Information Security Officer

Glocomms • Charlotte (NC)

On-site
USD 150,000 - 200,000
Remote Infosec & GRC Leader - ISO27001 & Risk
Remote Infosec & GRC Leader - ISO27001 & Risk

Avantdigitalnow • San Francisco (CA)

Remote
USD 95,000 - 130,000
Information Security Manager
Information Security Manager

Arco Solutions • Kansas

On-site
USD 120,000 - 150,000
Flexible schedule
Health insurance
GRC Security compliance leader
GRC Security compliance leader

Avantdigitalnow • San Francisco (CA)

On-site
USD 120,000 - 150,000
Senior Manager - BISO Program Leader
Senior Manager - BISO Program Leader

10xTalents • Malvern

On-site
USD 120,000 - 160,000