Назад
Company hidden
2 дня назад

Information Security Engineer

Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
Germany
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Information Security Engineer (ISO 27001/GRC): Maintaining and improving the ISO/IEC 27001 ISMS, security governance, risk registers, audits, documentation, and operational security controls with an accent on compliance, information asset management, and cross-functional coordination. Focus on preparing audits, tracking vulnerability remediation, supporting incident response, and improving security technologies including DLP, SIEM, and EDR.

Location: Frankfurt, Germany; flexible home-office work is available.

Company

hirify.global develops high-performance computing infrastructure, data-center technologies, cooling concepts, and software solutions for accelerated computing, with a focus on sustainability.

What you will do

  • Maintain and continually improve the ISO/IEC 27001 Information Security Management System.
  • Own the lifecycle of security policies, standards, procedures, guidelines, registers, repositories, and workflow processes.
  • Lead audit preparation, evidence collection, finding remediation, risk assessments, and corrective-action tracking.
  • Coordinate information security projects, metrics, dashboards, KPIs, and management reporting.
  • Support security technology implementation, third-party assessments, vulnerability remediation, incident response, and security awareness initiatives.
  • Work with Compliance, Legal, IT, Engineering, HR, Infrastructure, and business stakeholders.

Requirements

  • Bachelor’s degree in information security, cybersecurity, computer science, or a related discipline.
  • 5–7 years of experience in information security, GRC, or security operations.
  • Strong understanding of ISMS and security governance frameworks, particularly ISO/IEC 27001.
  • Experience with risk assessments, security compliance frameworks, regulatory requirements, DLP, information protection, data classification, and enterprise documentation platforms.
  • Familiarity with vulnerability management, security testing, SIEM, incident detection, EDR, and endpoint security technologies.
  • Ability to work from or regularly attend the Frankfurt, Germany location, with flexible home-office work.

Nice to have

  • Understanding of IAM, authentication, and privileged access management.
  • Knowledge of networking, web application security, cloud security, and shared responsibility models.
  • Scripting or automation fundamentals with PowerShell or Python.

Culture & Benefits

  • Flexible work-from-home arrangements with an international and virtual team.
  • Hardware support to enable high-performance computing work.
  • Opportunities to shape departments, processes, and company culture.
  • Focus on sustainability and carbon-neutral data centers.
  • Wellbeing, diversity, and inclusion initiatives.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →