Auf einen Blick
- Aufgaben: Manage risk, conduct audits, and support GTM teams in Information Security.
- Arbeitgeber: Join SAP LeanIX, a leader in IT Risk and Corporate Security.
- Mitarbeitervorteile: Enjoy learning opportunities, collaboration, and potential for growth in a dynamic environment.
- Warum dieser Job: Perfect for those eager to dive into IT security and make an impact.
- Gewünschte Qualifikationen: 4+ years in audit/implementation of standards like ISO 9001, ISO 27001, SOC 2.
- Andere Informationen: Relevant security certifications are a plus; experience with penetration testing is beneficial.
Das voraussichtliche Gehalt liegt zwischen 43200 - 72000 € pro Jahr.
As an Assistant Manager – Information Security, you will be responsible for carrying out risk management, auditing and supporting Go-To-Market (GTM) teams within SAP LeanIX. You shall also be liaising with employees across the company and help with any Information Security related queries. The role involves plenty of learning opportunity for someone looking to grow within IT Risk / Auditing / Corporate Security domain.
WHAT IS WAITING FOR YOU?
- Coordinate external audits such as ISO 9001, ISO 27001, ISO 27018, SOC 1, SOC 2, TISAX, BSI C5, Cyber Essentials Plus
- Assist Information security team in responding to evidence requests and queries as part of the internal audits
- Respond to Request for Proposal (RFPs) and liaise with the Sales and Solution Engineering teams on security topics
- Support ongoing integration and continued compliance with SAP policies and procedures
- Follow-up with respective Point of Contact (POCs) on audit findings and support remediation
- Assist in execution of internal controls at SAP LeanIX such as log reviews, security incident management, phishing simulation exercises and risk management activities
- Liaise with relevant stakeholders and help in improvising existing processes
- Assist Information Security team with new projects and initiatives
WHAT ARE WE LOOKING FOR?
- Candidate must have 4+ years of hands-on experience in audit/ implementation of standards such as ISO 9001, ISO 27001, SOC 2 TSPs, TISAX, NIST 800 series, Cyber Essentials scheme
- Knowledge of information security program, control processes and audit procedures
- Relevant Security Certifications are a plus e.g. CISA, CISSP, CISM, CCSK, ISO 27001 LI, ISO 27001 LA, etc.
- Ability to multi-task and manage stakeholder expectations
- A drive to learn and grow within the IT Risk / Auditing / Corporate Security domain
- Any experience with standards and frameworks such as FedRAMP, ISO 22301, ISO 27017, ISO 27018, BSI C5, CSA STAR Level 2, HIPAA would be a plus
- Any experience in Web Application and Network penetration testing / Vulnerability Management is a plus
#J-18808-Ljbffr
Assistant Manager - Information Security Arbeitgeber: LeanIX

Kontaktperson:
LeanIX HR Team
StudySmarter Bewerbungstipps 🤫
So bekommst du den Job: Assistant Manager - Information Security
✨Tip Number 1
Familiarize yourself with the specific standards and frameworks mentioned in the job description, such as ISO 9001, ISO 27001, and SOC 2. This knowledge will not only help you understand the role better but also demonstrate your commitment to the field during discussions.
✨Tip Number 2
Network with professionals in the Information Security domain, especially those who have experience with SAP LeanIX or similar companies. Engaging in conversations can provide insights into the company culture and expectations, which can be beneficial during interviews.
✨Tip Number 3
Stay updated on the latest trends and challenges in Information Security. Being knowledgeable about current events and emerging threats can help you stand out as a candidate who is proactive and well-informed.
✨Tip Number 4
Prepare to discuss your hands-on experience with audits and compliance processes in detail. Be ready to share specific examples of how you've contributed to risk management or security initiatives in your previous roles.
Diese Fähigkeiten machen dich zur top Bewerber*in für die Stelle: Assistant Manager - Information Security
Tipps für deine Bewerbung 🫡
Tailor Your CV: Make sure to customize your CV to highlight your 4+ years of experience in audit and implementation of relevant standards like ISO 9001 and ISO 27001. Emphasize any relevant security certifications you hold.
Craft a Strong Cover Letter: In your cover letter, express your enthusiasm for the role and how your background aligns with the responsibilities listed. Mention specific experiences that demonstrate your ability to manage stakeholder expectations and support compliance efforts.
Showcase Relevant Skills: Clearly outline your knowledge of information security programs, control processes, and audit procedures. If you have experience with frameworks like FedRAMP or vulnerability management, be sure to include that as well.
Highlight Learning Opportunities: Since the role offers plenty of learning opportunities, mention your drive to grow within the IT Risk / Auditing / Corporate Security domain. Share examples of how you've pursued professional development in the past.
Wie du dich auf ein Vorstellungsgespräch bei LeanIX vorbereitest
✨Showcase Your Audit Experience
Make sure to highlight your hands-on experience with standards like ISO 9001 and ISO 27001. Be prepared to discuss specific audits you've conducted or participated in, as well as the outcomes and improvements that resulted from them.
✨Demonstrate Knowledge of Information Security
Familiarize yourself with key information security concepts and frameworks. Be ready to explain how you have applied these in past roles, especially in relation to risk management and compliance.
✨Prepare for Technical Questions
Expect questions related to vulnerability management and penetration testing. Brush up on your technical knowledge and be ready to discuss any relevant experiences you have in these areas.
✨Emphasize Your Learning Mindset
Since this role offers plenty of learning opportunities, express your eagerness to grow within the IT Risk and Auditing domain. Share examples of how you've pursued professional development in the past.