4 дня назад
Head of Information Security (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Head of Information Security (Cybersecurity): Leading and expanding a hands-on security function covering application security, compliance, cloud infrastructure, and business applications with an accent on AI-assisted code reviews, ISO 27001 and SOC 2 audits, and secure Kubernetes environments. Focus on integrating security into CI/CD, securing Microsoft 365 and enterprise systems, managing vendor risk, and balancing technical priorities with executive-level risk decisions.
Location: Germany; remote work is available in locations without offices, while locations with offices follow a hybrid schedule of 2 days in-office and 3 days remote.
Company
builds an all-in-one platform for digital education and research using machine intelligence and data science.
What you will do
- Lead and expand the security function across application security, compliance, infrastructure and cloud security, and business application security.
- Build an application security program with AI-assisted code and pull-request reviews, CI/CD security checks, and secure coding training.
- Own ISO 27001 and SOC 2 certifications, security audits, policies, controls, evidence, and the roadmap for additional certifications.
- Secure Kubernetes infrastructure, cloud environments, sovereign cloud deployments, infrastructure-as-code, networks, and access controls with DevOps and Engineering.
- Protect Microsoft 365, CRM, ERP, and other business applications, including identity, access, data protection, and third-party vendor risk.
- Represent security to executives while working hands-on with Engineering, IT, DevOps, and compliance teams.
Requirements
- 8+ years of information security experience, including 3+ years in a leadership role.
- Experience running application security programs with CI/CD-integrated tooling and modern AI-assisted code review.
- Hands-on experience leading ISO 27001 and/or SOC 2 audits through successful completion.
- Experience securing Microsoft 365, CRM, and ERP systems and managing vendor risk.
- Working knowledge of Kubernetes and cloud security, with the ability to explain risks and trade-offs to engineers and executives.
- Applications and resumes must be submitted in English.
Nice to have
- Experience in all-remote or hybrid international organizations.
- Experience with sovereign cloud environments.
Culture & Benefits
- Choice of work equipment, including a laptop and monitor.
- English classes through iTalki, valued at $130 per month.
- Flexible working schedule, usually between 09:00/10:00 and 18:00/19:00.
- Paid leave and a €500 newborn bonus per child.
- Patent remuneration and location-based remote or hybrid work options.
- Equal-opportunity environment with a focus on diversity and inclusion.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
CrowdStrike
7 дней назад
Channel Solution Architect (Cybersecurity)
7 дней назад
Information Security Officer (Gaming & Competitions)
10 дней назад
Vice President & Chief Information Security Officer (Cybersecurity)
228 700 - 285 900$
10 дней назад
Security GRC Specialist (Fintech)
4 дня назад
Head of Security (Cloud & IoT)
10 дней назад
DevSecOps Architect / Technical Lead (Azure)
4 600 - 6 900€