About this job
<p>We are looking for an <strong>experienced Information Security Manager</strong> to join our TechOps department in a split role that combines information security ownership with internal IT management. You have a solid understanding of ISO 27001? You enjoy running and maintaining high scale projects? Then we’re looking for you!</p>
<p>We are a company where everyone can make a difference and actively participate in shaping our path. We’re <strong>actively hiring at earliest availability</strong> to expand our team.</p>
<h2>Tasks</h2>
<p><strong>Owning your field - Your responsibilities</strong></p>
<p>As an <strong>Information Security Manager (gn)</strong>, you’ll work at the intersection of governance, process management, and technical implementation all within ISO 27001: You’ll translate security requirements into practical processes across a complex, cloud-native SaaS environment as well as maintain hardware, IT infrastructure and assets.</p>
<p>In this cross-functional role your main responsibilities include:</p>
<ul>
<li>Owning and driving our information security management system (ISMS) ensuring it remains current, effective, and up to our ISO 27001 certified standards</li>
<li>Create and maintain all documentation required to live and sustain our ISO 27001 certification</li>
<li>Organize the preparation and execution of both internal and external audits and ensure audit-readiness at all times</li>
<li>Proactively plan and conduct regular management reviews for the ISMS</li>
<li>Design, implement, and continuously improve ISMS processes and controls across the organization</li>
<li>Handle the whole risk management including risk identification/assessment and treatment plans up to incident reporting, tracking, and following up</li>
<li>Oversee the security posture of our technical environment, including e.g. penetration testing, implementation of security controls etc</li>
<li>Partner closely with engineering, operations, and business stakeholders to embed security practices into day-to-day ways of working</li>
<li>Support and update local office infrastructure as needed</li>
<li>Set up and maintain hardware troubleshoot office surroundings (e.g. workstations, meeting room equipment, network devices), acting as first-line support for day-to-day tech issues</li>
<li>Manage basic user access and account provisioning/deprovisioning for internal systems, in line with security policies</li>
</ul>
<h2>Requirements</h2>
<p><strong>Being an asset - The skillset we’re looking for</strong></p>
<ul>
<li>Proven experience managing an ISO 27001 ISMS end-to-end, including certification and surveillance/recertification audits</li>
<li>Experience working in or with cloud-based SaaS environments - AWS and/or Kubernetes exposure is a strong plus</li>
<li>A background in cybersecurity, information security management, or IT compliance</li>
<li>Strong stakeholder management and communication skills, with the ability to work effectively with both technical and non-technical audiences</li>
<li>Some hands-on experience with internal IT support</li>
<li>A proactive, ownership-driven mindset whilst still keeping in touch with the team spirit</li>
<li>Comfortable switching between strategic/documentation-heavy security work and hands-on, practical IT support tasks</li>
<li>Fluent English (written and spoken) is a must, German language skills are a bonus</li>
<li>Located in Germany or the Netherlands with the right to work there and ability & willingness to travel to the Amsterdam location if required</li>
</ul>
<h2>Benefits</h2>
<p><strong>More than a job - Benefits to look forward to</strong></p>
<ul>
<li>An established company living the energy of the start-up spirit with a culture of trust and constructive growth feedback without the restraint of strict hierarchies</li>
<li>Based in locations in Amsterdam (NL) and Düsseldorf & Hannover (DE) we are an international company group providing flexible working hours and working models (including remote-first)</li>
<li>Freedom to expand your professional knowledge. You can educate yourself in tech sessions, training courses, lectures and workshops to exchange knowledge</li>
<li>Elaborate team events</li>
<li>A technically varied role with real ownership and responsibility</li>
<li>A collaborative team of highly skilled professionals</li>
</ul>
<p><strong>Piqued your interest? Then we should connect!</strong></p>
<p>Send us your CV to our Mailadress - we at the i-doit group are looking forward to hearing from you!</p>
<p><strong>About us</strong></p>
<p>The <strong>i-doit group</strong> builds software that thousands of IT teams rely on every day: our <strong>cabling documentation</strong> PATCH MANAGER, the <strong>CMDB and IT documentation</strong> platform i-doit, plus <strong>solutions for ITSM</strong>, discovery, <strong>ISMS</strong>, <strong>data protection</strong>, and <strong>IT emergency management</strong>. From our locations in Amsterdam, Netherlands and Düsseldorf & Hannover (Germany), we serve customers worldwide.<br>
We are expanding our cloud business and are hiring at earliest availability - that's where you come in!</p>
<p><em>Our statement</em></p>
<p><em>We celebrate a company culture built on integrity, tolerance and mutual respect. We value each person for their contribution to our identity; regardless of gender, religion, age, sexual orientation, disability or origin. That is why we are proudly committed to equal employment.</em></p>
<p>Find <a href="https://www.arbeitnow.com">Jobs in Germany</a> on Arbeitnow</a>