Auf einen Blick
- Aufgaben: Leite IT-Operationen, Cyber-Sicherheit und Compliance für Doodle und sorge für einen reibungslosen Betrieb.
- Unternehmen: Doodle, eine innovative B2B SaaS-Plattform mit einem starken Fokus auf Vertrauen.
- Vorteile: Hybrides Arbeitsmodell, dynamisches Team und die Möglichkeit, in einem wachsenden Unternehmen zu arbeiten.
- Weitere Informationen: Wachstumsorientierte Umgebung mit vielfältigen Karrieremöglichkeiten und einem engagierten Team.
- Warum dieser Job: Gestalte die Sicherheits- und Compliance-Strategien eines führenden Unternehmens und mache einen echten Unterschied.
- Qualifikationen: Erfahrung in IT-Operationen, Cyber-Sicherheit und Compliance-Management.
Das prognostizierte Gehalt liegt zwischen 80000 - 100000 € pro Jahr.
- Finance & BI
- Berlin
- Hybrid
- Lead, IT Operations, Cyber Security and Compliance - All Genders
- We usually respond within two weeks
- Own the Trust Foundation Behind Every Doodle Product
Doodle is a B2B Saa S platform used by millions of professionals to coordinate meetings and collaboration.
As we grow, trust has become one of our most valuable products.
Every enterprise deal, every AI feature, every new hire depends on a secure, compliant, well run IT foundation.
You are more than an IT and Security lead.
You own the governance, compliance, and operational backbone that lets Doodle move fast without breaking trust.
Working closely with the CEO, CFO, People Ops, and external partners, you will run our security stack, our compliance programmes, and our AI governance framework, and you will lead the IT team that keeps Doodle running day to day.
What You Will Do
As Lead, IT Operations, Cyber Security and Compliance, you will own security, compliance, and IT operations across Doodle.
- IT Operations
- Run day to day IT for 100+ employees across Berlin, remote EU, and our contractor base, including onboarding and offboarding, access provisioning, device management, and service desk.
- Own and continuously rationalize our Saa S portfolio of approximately 30 tools.
- Design and automate IT and People Ops workflows, including ticketing based onboarding with compliance gates such as NDA sign off, reducing manual work and strengthening contractor governance.
- Evaluate and select tooling, including CLM platforms, to enable self serve, scalable processes.
- Security Stack & Engineering
- Operate and evolve Doodle's full security toolset, including Sentinel One and Crowd Strike for EDR, Jamf Pro and Jump Cloud for MDM, Okta and Jump Cloud for IAM and SSO, email security, and Know Be4 for security awareness.
- Lead platform migrations and evaluate new security technologies as our security stack continues to mature.
- Compliance Programmes & Privacy
- Own and drive SOC 2 Type II, ISO 27001, HIPAA, and ISO 42001 programmes simultaneously.
- Serve as Privacy Officer, managing the DPA portfolio and the relationship with our external DPO.
- Maintain a live, prioritized risk register and drive remediation across more than 10 concurrent risk items.
- Vendor & Third Party Risk
- Run a structured vendor due diligence programme, including SOC 2 reviews, security questionnaires, and code of conduct sign off.
- Support enterprise sales and customer security reviews across regulated industries, including government, energy, and healthcare.
- AI Governance
- Design and own Doodle's AI governance framework, including agentic AI security controls, EU AI Act assessments, and risk management for AI tools and external contributors such as MCP and Cursor.
- Translate AI risk into practical policy, risk register updates, and technical enforcement through our SSE platform.
- Board & Leadership
- Author board level cybersecurity posture presentations using the NIST CSF 2.0 framework.
- Translate technical and security risk into clear business language for the CEO, CFO, and Board.
- Nice to Have
- Experience supporting enterprise customers in regulated verticals such as government, energy, or healthcare.
- Experience with Netskope or similar SSE platforms.
- Experience automating IT workflows using tools such as Linear.
- Background in a high growth B2B Saa S environment.
- Hiring Journey
- Initial Application Review + BRYQ Assessment
- Hiring Manager Interview
- Technical Assessment
- Cross Functional Technical Interview
- Executive Interview + HR Interview
So, Get in Touch!
At Doodle, we are committed to providing an environment of mutual trust and respect, where equal employment opportunities are available to all applicants and teammates without regard to age, race, color, disability, religion, gender, or sexual orientation.
Diversity and inclusion are important to us because the best products are built by teams with different experiences, perspectives, and backgrounds.
IMPORTANT NOTICE
Please note that we can only consider your application if you are based and have the right to work in Germany.
At this time, we are unable to sponsor visas for this position or support relocation.
- Department Finance & BI Locations Berlin Remote status Hybrid
- Team & Culture
We're a tight-knit team of 100+ spread out over four different countries.
We’ve got our home-base in Zurich and awesome offices in Berlin and Belgrade.
We also have colleagues working remotely from the USA.
- Founded in 2007
- #J-18808-Ljbffr
Lead, IT Operations, Cyber Security and Compliance - All Genders Arbeitgeber: Leap Ahead
Doodle ist ein hervorragender Arbeitgeber, der eine dynamische und flexible Arbeitskultur in Berlin bietet. Mit einem hybriden Arbeitsmodell, 30 Urlaubstagen und einem großzügigen Lern- und Entwicklungsetat fördert Doodle das persönliche Wachstum seiner Mitarbeiter. Zudem profitieren die Angestellten von attraktiven Zusatzleistungen wie einer betrieblichen Altersvorsorge und einem umfassenden Wohlfühlbudget, was Doodle zu einem idealen Ort für engagierte Fachkräfte macht, die in einem innovativen Umfeld arbeiten möchten.