Information Security Officer developing risk management systems and collaborating with stakeholders for a tech company. Working on information assets and engineering teams in a hybrid working environment.
Responsibilities
Direct reporting line to C-level and representation of Nect to auditors (ISO 27001 and eIDAS)
Shape the security organization and build an internal SOC team
Areas of responsibility include IT, software development, product operations, biometrics and machine learning
Influence product development from a security perspective, working directly with product management and engineers
Risk management within the ISO 27001 framework and in cooperation with the GRC Manager
Select and coordinate penetration testers, including our product security tests (deepfakes, presentation attacks, etc.)
Responsibility for certifications and audits for ISO 27001 and eIDAS
Coordinate with our GRC Manager and Data Protection Officer
Interact with our external stakeholders (customers, qTSPs, gematik, BSI, BNetzA, public authorities)
Awareness and training for our teams and sharpening Nect's security awareness
Requirements
Sufficient technical depth to engage with experts across domains (cryptography, APIs and networking, ML security, secure SDLC)
Experience in relevant environments is a strong plus (eIDAS / eIDAS 2.0, ETSI EN 319 401/411/421, ETSI TS 119 461, BSI TR-03107, TR-03116, gematik specifications)
Qualifications: ISO 27001 Lead Auditor/Implementer or equivalent qualification
ISO 27001 Lead Risk Manager is a plus
Fluent German and English
Confident, clear communication of complex topics
Assertive yet tactful
High initiative, structured and precise working style
Benefits
Flexible work and modern working environment
Scale-up culture with security & vision: digital, innovative, ambitious
Flat hierarchies & fast decisions: real scope to shape your ideas
Personal development: grow within a forward-looking tech company
Modern office in Hamburg: central location between the Elbe and the Alster with a pleasant working atmosphere
Health benefit: company supplementary health insurance
Team spirit: regular events and exchange in a motivated environment
Security Manager responsible for overseeing risk - based security program and compliance. Leading team and collaborating with stakeholders for cybersecurity in Indonesia.
OT Cybersecurity Consulting Director at Marsh leading cyber risk assessments and consulting projects across Canada and other regions. Requires strong technical knowledge and client relationship building.
Senior Cyber Security Consultant delivering high - impact cybersecurity solutions to clients in various industries in Montreal. Collaborating closely with project managers and guiding junior consultants.
Consultant technique pour Microsoft 365 Security à Ingram Micro, impliqué dans le support avant - vente et le déploiement des solutions cloud Microsoft.
Specialist in Information Security at IESO ensuring security for Ontario's electricity system. Responsibilities include monitoring access logs, delivering security programs, and investigating breaches.
Partner Sales Specialist focusing on enabling partners to sell Microsoft Security solutions. Collaborating with teams to activate partners for effective sales across their customer base.
Cybersecurity Engineer enhancing enterprise security posture at GDIT. Designing secure identity controls and managing authentication solutions for Microsoft environments.
Activity Security Representative providing multi - disciplined security support for a customer’s facility at GDIT. Role involves ensuring security protocols and maintaining documentation for classified materials.
Security Lead managing GSA cloud applications security architecture. Collaborating with teams to ensure compliance with federal security standards and best practices.
Security Officer providing safety and security services in East Valley locations for Banner Health. Involves emergency response, patrols, alarm monitoring, and writing reports.