Skip to content

Job opening

Information Security Manager (f/d/m)

ISO 27001

rating-stars-transparent-white auf Capterra | 2.000+ zufriedene Kunden

pwr-woman-laptop-blue
ISO 27001 Project Management

Information Security Manager (f/d/m)

We are looking for an experienced Information Security Manager to join our TechOps department in a split role that combines information security ownership with internal IT management. You have a solid understanding of ISO 27001? You enjoy running and maintaining high scale projects?  Then we’re looking for you!
We are a company where everyone can make a difference and actively participate in shaping our path. We’re actively hiring at earliest availability to expand our team.

 


 

The Role

As Information Security Manager (gn), you’ll work at the intersection of governance, process management, and technical implementation all within ISO 27001: You’ll translate security requirements into practical processes across a complex, cloud-native SaaS environment as well as maintain hardware, IT infrastructure and assets.

In this cross-functional role your main responsibilities include:

  • Owning and driving our information security management system (ISMS) ensuring it remains current, effective, and up to our ISO 27001 certified standards

  • Create and maintain all documentation required to live and sustain our ISO 27001 certification

  • Organize the preparation and execution of both internal and external audits and ensure audit-readiness at all times

  • Proactively plan and conduct regular management reviews for the ISMS

  • Design, implement, and continuously improve ISMS processes and controls across the organization

  • Handle the whole risk management including risk identification/assessment and treatment plans up to incident reporting, tracking, and following up

  • Oversee the security posture of our technical environment, including e.g. penetration testing, implementation of security controls etc

  • Partner closely with engineering, operations, and business stakeholders to embed security practices into day-to-day ways of working

  • Support and update local office infrastructure as needed

  • Set up and maintain hardware troubleshoot office surroundings (e.g. workstations, meeting room equipment, network devices), acting as first-line support for day-to-day tech issues

  • Manage basic user access and account provisioning/deprovisioning for internal systems, in line with security policies

 

Being an asset - The skillset weʼre looking for
  • Proven experience managing an ISO 27001 ISMS end-to-end, including certification and surveillance/recertification audits
  • Experience working in or with cloud-based SaaS environments - AWS and/or Kubernetes exposure is a strong plus
  • A background in cybersecurity, information security management, or IT compliance
  • Strong stakeholder management and communication skills, with the ability to work effectively with both technical and non-technical audiences
  • Some hands-on experience with internal IT support
  • A proactive, ownership-driven mindset whilst still keeping in touch with the team spirit
  • Comfortable switching between strategic/documentation-heavy security work and hands-on, practical IT support tasks
  • Fluent English (written and spoken) is a must, German language skills are a bonus
  • Located in Germany or the Netherlands with the right to work there and ability & willingness to travel to the Amsterdam location if required

 


More than a job - Benefits to look forward to
  • An established company living the energy of the start-up spirit with a culture of trust and constructive growth feedback without the restraint of strict hierarchies

  • Based in locations in Amsterdam (NL) and Düsseldorf & Hannover (DE) we are an international company group providing flexible working hours and working models (including remote-first)

  • Freedom to expand your professional knowledge. You can educate yourself in tech sessions, training courses, lectures and workshops to exchange knowledge

  • Elaborate team events

  • A technically varied role with real ownership and responsibility

  • A collaborative team of highly skilled professionals

 

Piqued your interest? Then we should connect!

Send us your CV - we at the i-doit group are looking forward to hearing from you!


 
Our statement

We celebrate a company culture built on integrity, tolerance and mutual respect. We value each person for their contribution to our identity; regardless of gender, religion, age, sexual orientation, disability or origin. That is why we are proudly committed to equal employment.

Apply to i-doit

Information security - integrated, efficient, practical

1. Apply via the linked application form with your personal data and your informative and detailed CV as a PDF file.


2. A confirmation of receipt by e-mail or an initial brief screening by telephone will usually be sent within three days.


3 We carefully check whether your profile matches our position. Depending on the number of applications, this may take two to three weeks. If we are convinced by your application, we will invite you to a short digital quick-meet.


4 If you are still successful, we will go into more detail about your skills and competencies in a second personal interview. We can also clarify any unanswered questions and talk about the general conditions. Please bring relevant references or certificates with you to this interview.


5. You convince us and fit in with i-doit? You will be accepted as soon as possible, usually within a few days. Then it's time to start: Welcome to the team!


6. If it doesn't fit, this is not a rejection of your qualifications, often it is only due to small differences that make the difference. If you are interested, we will be happy to add you to our talent pool for 6 months and contact you if we have a suitable position to fill. Please let us know if you are interested!