Auf einen Blick
- Aufgaben: Lead and mentor a team while ensuring information security compliance and monitoring.
- Arbeitgeber: Everphone is a top device-as-a-service provider managing over 400,000 devices for major companies.
- Mitarbeitervorteile: Enjoy 30 vacation days, a premium smartphone, hybrid work options, and a dog-friendly office.
- Warum dieser Job: Join a dynamic team, shape your growth, and make a real impact in cybersecurity.
- Gewünschte Qualifikationen: Deep knowledge of ISO 27001, GDPR, and strong technical skills in cloud security required.
- Andere Informationen: Fluency in German and English is essential; don't hesitate to apply even if you don't meet all criteria!
Das voraussichtliche Gehalt liegt zwischen 72000 - 100000 € pro Jahr.
Everphone is the one-stop solution for corporate smartphones and tablets. As a leading device-as-a-service provider, Everphone handles device procurement, configuration, management, security, and replacement for businesses and organizations. The time this frees up for clients’ IT teams totals two hours per device. DaaS allows companies and their employees to choose their preferred smartphone from manufacturers such as Apple, Samsung, Google, and Fairphone. Everphone currently manages over 400.000 devices for more than a thousand companies, including international management consultancies and several DAX companies.
Founded in 2016 by Jan Dzulko, the company employs around 300 employees in Berlin, Munich, and Miami. Investors include Alleycorp, ApolloCapital, Cadence Growth Capital, signals Venture Capital, and T.Capital.
We are looking for an exceptional
Lead Information Security Manager (w/m/d)
About the role:
As an Lead Information Security Manager, you will play a critical role in safeguarding our systems, processes, and data. You will contribute to building and maintaining a secure environment by ensuring compliance with key standards, frameworks, and best practices while actively monitoring and responding to security events. This is a challenging and rewarding opportunity to work on a wide array of information security and compliance topics while supporting our secure software development lifecycle. You will also lead and mentor a team of information security professionals, fostering their growth and development while ensuring effective collaboration and achievement of security objectives.
What you\’ll do:
Information Security & Compliance
- Develop, implement, and maintain our Information Security Management System (ISMS) in alignment with ISO 27001, GDPR, BCM, BSI IT-Grundschutz and other relevant frameworks.
- Ensure documentation and compliance with information security policies and procedures including test runs.
- Conduct risk assessments, audits, and evaluations to identify security gaps and recommend improvements.
Cybersecurity Monitoring & Management
- Monitor security logs from cloud services, including Google Workspace and other SaaS tools, to detect and respond to potential threats.
- Evaluate and address vulnerabilities based on the OWASP Top 10 and other cybersecurity standards.
- Work with development teams to integrate secure practices into the software development lifecycle (Secure SDLC).
- Train and advise teams on implementing security controls and adhering to compliance requirements.
Team Management
- Lead and mentor a team of information security professionals, providing guidance, support, and performance feedback.
- Delegate tasks effectively and ensure team members have the necessary resources and training to succeed.
- Foster a collaborative and positive team environment, encouraging knowledge sharing and professional development.
- Set team goals and objectives, monitor progress, and provide regular updates to management.
What you’ll need:
Compliance Knowledge
- You have a deep understanding of ISO 27001, GDPR, BCM and other relevant information security frameworks.
- You have acquired experience in managing and executing test runs and contributing to ISMS processes and documentation.
- Experience with BSI IT-Grundschutz is a plus.
Technical Expertise
- Strong technical background with hands-on experience in security monitoring tools and cloud service security (GCP/AWS, Google Workspace, SaaS environments).
- Familiarity with secure software development practices, vulnerability scanning, and threat modeling.
Analytical Skills
- Ability to assess risks, prioritize security improvements, and document findings clearly and concisely.
- Proficiency in analyzing logs and monitoring tools to identify security incidents.
Communication & Collaboration
- Excellent communication and project management skills to work with cross-functional teams, including developers, legal/compliance, and operations.
- Capability to provide security training and awareness across the organization.
- Fluency in German and English (both C1) .
Leadership & Management
- Proven experience in leading and managing a team of information security professionals.
- Strong leadership skills with the ability to motivate, inspire, and guide team members.
- Excellent interpersonal and communication skills to build strong relationships within the team and across the organization.
- Experience in performance management, including setting goals, providing feedback, and conducting performance reviews.
- Ability to foster a collaborative and inclusive team environment.
Don’t match all the criteria? Go for it anyway!
At Everphone, we are looking for passionate individuals with vibrant personalities. So if you\’re excited about this position, but don\’t match every single requirement—please apply anyway. You may well be just the right candidate for another position, if not this one, so go for it!
Benefits:
- a premium smartphone of your choice for personal use,
- 30 vacation days per year,
- a monthly budget of 30 € in Circula vouchers to spend however you like,
- a 300 € subsidy for public transport,
- two bright, modern offices in the heart of Berlin (Mitte and Kreuzberg),
- a dog-friendly office (Kreuzberg), where your four-legged friend is welcome to join you
- a mental health program with Voiio access for personal and professional solutions, also open to family members
- a dynamic work environment where you can actively help shape your own growth,
- a hybrid work model for more flexibility,
- access to the Everphone Learning Academy to promote professional development,
- a referral program with an up to 2000 € bonus,
- a company pension plan,
- social drinks- and karaoke night to get to know your colleagues better,
- a large open kitchen area with free drinks, snacks and fruit,
- a relaxation area with sofas and a quiet room to simply unwind.
For more information visit our website: everphone.com/en/career/
#J-18808-Ljbffr
Lead Information Security Manager (w/m/d) Arbeitgeber: Everphone

Kontaktperson:
Everphone HR Team
StudySmarter Bewerbungstipps 🤫
So bekommst du den Job: Lead Information Security Manager (w/m/d)
✨Tip Number 1
Familiarize yourself with the specific compliance frameworks mentioned in the job description, such as ISO 27001 and GDPR. Being able to discuss these frameworks in detail during your interview will demonstrate your expertise and commitment to information security.
✨Tip Number 2
Showcase your experience with security monitoring tools and cloud services like GCP or AWS. Prepare examples of how you've successfully managed security incidents or vulnerabilities in previous roles to highlight your technical expertise.
✨Tip Number 3
Emphasize your leadership skills by sharing experiences where you mentored or led a team. Discuss how you foster collaboration and support team members' growth, as this is crucial for the Lead Information Security Manager role.
✨Tip Number 4
Prepare to discuss your communication strategies when working with cross-functional teams. Highlight instances where you successfully trained others on security practices or collaborated with different departments to achieve security objectives.
Diese Fähigkeiten machen dich zur top Bewerber*in für die Stelle: Lead Information Security Manager (w/m/d)
Tipps für deine Bewerbung 🫡
Understand the Role: Make sure to thoroughly read the job description for the Lead Information Security Manager position at Everphone. Highlight key responsibilities and required skills, and think about how your experience aligns with these.
Tailor Your CV: Customize your CV to reflect your relevant experience in information security, compliance, and team management. Use specific examples that demonstrate your expertise in ISO 27001, GDPR, and other frameworks mentioned in the job description.
Craft a Compelling Cover Letter: Write a cover letter that showcases your passion for information security and your leadership abilities. Mention how you can contribute to Everphone's mission and culture, and provide examples of past successes in similar roles.
Highlight Communication Skills: Since the role requires excellent communication and collaboration skills, be sure to include examples in your application that demonstrate your ability to work effectively with cross-functional teams and provide security training.
Wie du dich auf ein Vorstellungsgespräch bei Everphone vorbereitest
✨Showcase Your Compliance Knowledge
Make sure to highlight your understanding of ISO 27001, GDPR, and other relevant frameworks during the interview. Be prepared to discuss how you've implemented these standards in previous roles and any specific challenges you faced.
✨Demonstrate Technical Expertise
Discuss your hands-on experience with security monitoring tools and cloud services like GCP or AWS. Provide examples of how you've integrated secure practices into the software development lifecycle and any vulnerability assessments you've conducted.
✨Emphasize Leadership Skills
As a Lead Information Security Manager, you'll be expected to lead a team. Share your experiences in mentoring and managing teams, including how you've fostered collaboration and professional development among team members.
✨Prepare for Scenario-Based Questions
Expect questions that assess your analytical skills and decision-making abilities. Prepare to discuss specific scenarios where you've identified security gaps, prioritized improvements, and communicated effectively with cross-functional teams.