Hybrid Information Security Officer, ISO

Posted 2 months ago

Apply now

About the role

  • Information Security Officer driving security strategy and compliance at AllUnity, a fintech company. Leading Information Security Management System design and liaising with regulators and stakeholders.

Responsibilities

  • Develop, implement, and maintain AllUnity’s Information Security Management System (ISMS) in compliance with ISO 27001, GDPR, ZAG-MaRisk, DORA, and other relevant standards.
  • Identify, assess, and mitigate information security risks across the organization, safeguarding critical data and systems.
  • Draft, enforce, and continuously improve information security policies, guidelines, and technical standards.
  • Lead internal and external audits, coordinate remediation activities, and ensure full regulatory compliance on information security matters.
  • Act as lead in security incidents and crises, managing detection, response, and recovery processes.
  • Oversee security monitoring solutions (e.g., SIEM, IDS/IPS, DLP, endpoint protection).
  • Report on vulnerabilities, incidents, and overall security posture to senior management.
  • Assess and monitor third-party providers’ compliance with AllUnity’s security standards.
  • Design and deliver ongoing awareness programs to strengthen security culture across the company.
  • Serve as Emergency Officer, maintaining readiness, continuity planning, and effective crisis communication.
  • Act as central contact for supervisory authorities, internal audit, and external auditors on information security matters.

Requirements

  • Bachelor’s or Master’s degree in Information Security, Cybersecurity, Computer Science, or a related field, or comparable professional training with relevant experience and recognized certifications (e.g., CISSP, CISM, CISA, ISO 27001 Lead Auditor).
  • At least 6 years in information security, ideally in financial services or banking.
  • Experience with blockchain/DLT and crypto environments required.
  • Proven leadership in managing security projects in dynamic, regulated settings.
  • Strong understanding of ZAG-MaRisk, DORA, GDPR, ISO 27001, and comparable compliance frameworks.
  • Proficiency with security technologies (SIEM, IDS/IPS, firewalls, endpoint protection, DLP).
  • Fluent in German and English, with the ability to present complex issues clearly to both technical and non-technical stakeholders.

Benefits

  • Competitive Compensation
  • 30 Days Paid Vacation
  • Transparent culture, open communication and a driven, collaborative team committed to innovation, professionalism, and excellence.
  • Regular team retreats & offsites
  • Welcome packages & company swag

Job title

Information Security Officer, ISO

Job type

Experience level

Mid levelSenior

Salary

Not specified

Degree requirement

Bachelor's Degree

Location requirements

Report this job

See something inaccurate? Let us know and we'll update the listing.

Report job