Compliance & Information Security Manager
We’re hiring a hands-on Compliance & Information Security Manager to own and scale our security program. You will replace external advisory support and act as the internal lead for compliance and security governance, working closely with Engineering, Product, Legal, and Sales.
Tasks
- Own the ISMS and security governance
Maintain and evolve our Information Security Management System (ISMS), including policies, standards, control documentation, and the company-wide risk register. - Lead certification lifecycle Run readiness assessments, manage evidence collection, coordinate auditors, track remediation, and ensure continuous audit readiness and not just point-in-time compliance.
- Manage vendor security and third-party risk
Conduct security assessments for new and existing vendors, define security requirements in contracts, and ensure critical partners meet our standards. - Support enterprise sales through security assurance
Own customer security questionnaires, RFP responses, and due diligence processes; maintain a structured library of reusable answers and documentation. - Oversee control monitoring and remediation tracking
Ensure controls are operating effectively, coordinate internal testing, and partner with engineering to close gaps in a timely manner. - Support security incident and business continuity governance
Ensure proper documentation, post-incident follow-up, and alignment with compliance requirements for incident management and disaster recovery processes. - Compliance Management System Build and maintain a company-wide Compliance Management-System
Requirements
- 4+ years in Information Security, GRC, or compliance roles
- Hands-on experience owning or significantly contributing to SOC 2 and/or ISO 27001
- Practical experience managing audits and working with external auditors
- Experience handling customer security questionnaires in a B2B environment
- Familiarity with compliance tools such as Drata, Vanta, or similar
- Ability to work cross-functionally with technical and non-technical teams
- Structured, pragmatic, and execution-oriented mindset
Benefits
- Work with a globally distributed, high-talent engineering team
- Competitive compensation
- Remote-first culture
- final Benefits depensing on loction
Empfohlene Jobs
Jugendamtsleitung (m,w,d)
Das Bezirksamt Tempelhof-Schöneberg Abt. Jugend und Gesundheit – Jugendamt – sucht ab 01.03.2027 (Wissenstransfer ab 01.10.2026 mit der derzeitigen Jugendamtsleitung) eine Jugendamtsleit…
UX/UI Designer (m/f/d)
We’re building a new kind of mortgage experience: transparent, digital, and truly customer-centric. We are a Berlin-based B2C Fintech founded by two repeat founders (YC alum, exit) with prior 10+ yea…
Stellvertretender Regionalleiter (w/m/d)
Aufgaben Pflege und Ausbau unserer partnerschaftlichen Kundenbeziehungen Betreuung unserer wichtigsten Kunden in der Region Optimierung der Organisation des Tagesgeschäfts unter Berücksichtig…
Tiefbauhelfer/innen
Tiefbauhelfer/innen für den bundesweiten Einsatz. Tätigkeitsbeschreibung: ***************************Das Leistungsspektrum unseres Unternehmens umfasst - Grundwasserabsenkung - Spezialtiefbauarbeit…
Brandmeldetechniker (m/w/d) (Vollzeit, Teilzeit | unbefristet)
Stellenbeschreibung Du interessierst dich für Sicherheitstechnik und kannst dich für Neues begeistern? Du arbeitest selbstständig und kundenorientiert, um die Welt unserer Kunden sicherer zu mac…
Pflegefachkraft als Dauernachtwache (m/w/d)
Seit über 100 Jahren ist die Caritas-Klinik Dominikus ein fester Bestandteil der medizinischen Versorgung des Berliner Nordens . Umgeben von einer großen Parkanlage befindet sich unsere Klinik …
Staff Backend Engineer (Technical Lead Responsibilities - Multi-Domain)
About Qdrant Qdrant is a fully remote, cutting-edge technology company building the next generation of AI-native search infrastructure through our open-source vector database and managed Cloud off…
Prüfungsassistent (m/w/d) - Audit mit Struktur, Team & Perspektive
Mitwirkung bei der Prüfung von Jahres- und Konzernabschlüssen nach HGB und IFRS Durchführung von analytischen Prüfungshandlungen sowie Dokumentation der Ergebnisse Vorbereitung und Auswertung v…