Auf einen Blick
- Aufgaben: Ensure security and compliance of systems while managing vendor processes and policies.
- Arbeitgeber: Join a forward-thinking company focused on Corporate Open Innovation in the SaaS B2B space.
- Mitarbeitervorteile: Enjoy a dynamic work environment with opportunities for professional growth and collaboration.
- Warum dieser Job: Be at the forefront of security and compliance, making a real impact on business objectives.
- Gewünschte Qualifikationen: Experience in information security, TISAX/ISO 27001, and cloud environments; German speaker preferred.
- Andere Informationen: Ideal for those who thrive in collaborative settings and want to shape security practices.
Das voraussichtliche Gehalt liegt zwischen 48000 - 84000 € pro Jahr.
About
If you are a compliance and security professional with SaaS B2B experience, join us to co-create the future of Corporate Open Innovation!
Mission
Your mission will be to ensure the security and compliance of our systems and processes, supporting the overall business objectives.
Responsibilities
- Manage vendor security processes, including completing security questionnaires (IT checks) and incorporating security language into contractual agreements.
- Develop and maintain policies and guidelines regarding information security and compliance.
- Manage our security and compliance activities, such as our TISAX recertification and annual penetration testing.
- Act as the central point of contact regarding security and compliance with the Product, Law consultants, and Clients‘ IT teams.
- Help Product leadership articulate security and compliance requirements when evaluating third-party products.
- Take a pragmatic approach to balance security best practices with business needs.
- Develop, implement, review, and assess the Information Security Management System (ISMS) for compliance and effectiveness, ensuring alignment with regulatory requirements and market demands (including a security strategy, roadmap, policies, procedures, guidelines, and controls).
Your profile
- Ability to conduct threat and risk assessments and help the Product grow while covering minimal pragmatic requirements.
- German speaker – Highly preferable.
- Knowledge and experience designing controls and processes for TISAX and/or ISO 27001 requirements.
- Hands-on experience with information security, particularly in cloud-based environments (AWS, Azure, or GCP).
- A strong understanding of privacy requirements (GDPR).
- Experience working with developer and product teams to improve security processes and integrate security tooling.
- Experience managing and completing incoming vendor security reviews and collaborating with legal and procurement teams on contractual agreements.
- Sufficient technical competence to understand relevant concepts and support ongoing projects and technology efforts.
- Excellent interpersonal skills to communicate complex technical concepts to various stakeholders.
- High professional standards and strong attention to detail.
What happens once you apply
We will review your application and get back to you shortly.
#J-18808-Ljbffr
Information Security & Compliance Manager Arbeitgeber: GlassDollar GmbH
Kontaktperson:
GlassDollar GmbH HR Team
StudySmarter Bewerbungstipps 🤫
So bekommst du den Job: Information Security & Compliance Manager
✨Tip Number 1
Familiarize yourself with TISAX and ISO 27001 requirements. Understanding these standards will not only help you in the interview but also demonstrate your commitment to compliance and security.
✨Tip Number 2
Brush up on your knowledge of cloud security, especially in AWS, Azure, or GCP environments. Being able to discuss specific security measures and best practices in these platforms will set you apart.
✨Tip Number 3
Prepare to showcase your experience in managing vendor security processes. Think of examples where you've successfully navigated security questionnaires or integrated security language into contracts.
✨Tip Number 4
Highlight your interpersonal skills by preparing to discuss how you've communicated complex security concepts to non-technical stakeholders. This is crucial for the role, as you'll be the central point of contact for various teams.
Diese Fähigkeiten machen dich zur top Bewerber*in für die Stelle: Information Security & Compliance Manager
Tipps für deine Bewerbung 🫡
Understand the Role: Make sure to thoroughly read the job description for the Information Security & Compliance Manager position. Understand the key responsibilities and required skills, especially focusing on compliance and security in a SaaS B2B environment.
Tailor Your CV: Customize your CV to highlight relevant experience in information security, compliance, and vendor management. Emphasize any hands-on experience with TISAX, ISO 27001, and cloud environments like AWS, Azure, or GCP.
Craft a Strong Cover Letter: Write a compelling cover letter that showcases your understanding of the role and how your background aligns with the company's mission. Mention your ability to balance security best practices with business needs and your experience working with cross-functional teams.
Highlight Language Skills: If you are proficient in German, make sure to mention this prominently in your application. This is highly preferable for the role and can set you apart from other candidates.
Wie du dich auf ein Vorstellungsgespräch bei GlassDollar GmbH vorbereitest
✨Showcase Your SaaS B2B Experience
Make sure to highlight your previous experience in SaaS B2B environments. Discuss specific projects where you managed security and compliance, and how those experiences align with the company's mission.
✨Demonstrate Your Knowledge of TISAX and ISO 27001
Be prepared to discuss your understanding of TISAX and ISO 27001 requirements. Share examples of how you've designed controls and processes to meet these standards in past roles.
✨Communicate Effectively with Technical and Non-Technical Stakeholders
Practice explaining complex security concepts in simple terms. This will show your ability to bridge the gap between technical teams and business needs, which is crucial for this role.
✨Prepare for Scenario-Based Questions
Expect questions that assess your problem-solving skills in real-world scenarios. Think about how you would handle vendor security reviews or manage compliance activities, and be ready to share your thought process.