Назад
Company hidden
4 дня назад

Head of Information Security (Cybersecurity)

Формат работы
remote (только Germany)/hybrid
Тип работы
fulltime
Грейд
head
Английский
b2
Страна
Germany
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Head of Information Security (Cybersecurity): Leading and expanding a hands-on security function covering application security, compliance, cloud infrastructure, and business applications with an accent on AI-assisted code reviews, ISO 27001 and SOC 2 audits, and secure Kubernetes environments. Focus on integrating security into CI/CD, securing Microsoft 365 and enterprise systems, managing vendor risk, and balancing technical priorities with executive-level risk decisions.

Location: Germany; remote work is available in locations without hirify.global offices, while locations with offices follow a hybrid schedule of 2 days in-office and 3 days remote.

Company

hirify.global builds an all-in-one platform for digital education and research using machine intelligence and data science.

What you will do

  • Lead and expand the security function across application security, compliance, infrastructure and cloud security, and business application security.
  • Build an application security program with AI-assisted code and pull-request reviews, CI/CD security checks, and secure coding training.
  • Own ISO 27001 and SOC 2 certifications, security audits, policies, controls, evidence, and the roadmap for additional certifications.
  • Secure Kubernetes infrastructure, cloud environments, sovereign cloud deployments, infrastructure-as-code, networks, and access controls with DevOps and Engineering.
  • Protect Microsoft 365, CRM, ERP, and other business applications, including identity, access, data protection, and third-party vendor risk.
  • Represent security to executives while working hands-on with Engineering, IT, DevOps, and compliance teams.

Requirements

  • 8+ years of information security experience, including 3+ years in a leadership role.
  • Experience running application security programs with CI/CD-integrated tooling and modern AI-assisted code review.
  • Hands-on experience leading ISO 27001 and/or SOC 2 audits through successful completion.
  • Experience securing Microsoft 365, CRM, and ERP systems and managing vendor risk.
  • Working knowledge of Kubernetes and cloud security, with the ability to explain risks and trade-offs to engineers and executives.
  • Applications and resumes must be submitted in English.

Nice to have

  • Experience in all-remote or hybrid international organizations.
  • Experience with sovereign cloud environments.

Culture & Benefits

  • Choice of work equipment, including a laptop and monitor.
  • English classes through iTalki, valued at $130 per month.
  • Flexible working schedule, usually between 09:00/10:00 and 18:00/19:00.
  • Paid leave and a €500 newborn bonus per child.
  • Patent remuneration and location-based remote or hybrid work options.
  • Equal-opportunity environment with a focus on diversity and inclusion.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →