Auf einen Blick
- Aufgaben: Lead information security risk assessments and improve our security management system.
- Arbeitgeber: Join SAP Fioneer, a fast-growing company revolutionizing financial services with innovative software solutions.
- Mitarbeitervorteile: Enjoy remote work options, attractive compensation, and a supportive environment for growth and innovation.
- Warum dieser Job: Be part of a dynamic team that values agility, creativity, and making a real impact in the industry.
- Gewünschte Qualifikationen: Bachelor's or master's in information security or related field; certifications like CISSP or CISM are a plus.
- Andere Informationen: Work remotely from Germany, Austria, UK, or Romania, with opportunities for travel.
Das voraussichtliche Gehalt liegt zwischen 54000 - 84000 € pro Jahr.
About SAP Fioneer:
Innovation is and will always be the core to SAP Fioneer, and it is the promise of why we were spun out of SAP: agility, innovation, and delivery.
SAP Fioneer builds on a heritage of outstanding technology and a deep understanding of corporate and consumer demands. At the heart of it all it is simple: We bring financial services to the next level with innovative software solutions and platforms.
We are helping companies in the financial services industry to achieve speed, scalability, and cost-efficiency through digital business innovation, cloud technology, and solutions that cover banking and insurance processes end-to-end.
A global company, with rapid growth, innovative people, and a lean organization makes SAP Fioneer a place where you accelerate your future!
Job Location:
You can work remotely from Germany, Austria, UK or Romania combined with a willingness to travel.
About the Role
As an Information Security Manager in the team of Cloud Platform and Products, you will support the team in operating and continual improvement of the Information Security Management System of SAP Fioneer. Your responsibilities will include:
- Conducting information security risk assessments and identifying potential vulnerabilities and threats to the organization’s information systems and data.
- Working with stakeholders across the organization to understand their security concerns and requirements and providing guidance and recommendations for managing risks.
- Developing and implementing risk management policies, procedures, and controls to mitigate identified risks.
- Liaising with our CISO, CSO and Security Operations team on information security requirements, risk assessments and being a point of contact for internal and external audits.
- Performing regular reviews and assessments of the effectiveness of risk management controls, identifying areas for improvement, and making recommendations to senior management.
- Staying up-to-date with the latest industry trends and best practices related to information security risk management, and recommending improvements to the organization’s risk management framework.
- Collaborating with other members of the security team to ensure that risk management activities are aligned with the organization’s overall security strategy and objectives.
- Maintaining and updating the organization’s risk register, risk management plans, and other risk management documentation.
- Assisting in the development of security awareness training programs and materials to ensure that employees are aware of their role in managing information security risks.
- Participating in incident response activities and providing guidance and recommendations for managing risks during and after an incident.
- Communicating effectively with stakeholders across the organization to ensure that they are aware of the risks to their systems and data, and that they understand the steps being taken to manage those risks.
Minimum Requirements:
- Education: A bachelor’s or master’s degree in information security, computer science, or a comparable field. Certifications such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), or Certified Risk and Information Systems Control (CRISC) are a plus.
- Experience: You have first experience in information security, risk management, or related fields. Experience in conducting risk assessments, developing risk management policies and procedures, and working with stakeholders to manage risks is a plus.
- Knowledge: Working knowledge of information security risk management principles, standards, and best practices such as ISO 27001, NIST Cybersecurity Framework, or CIS Controls are a plus.
- Skills: Good analytical, problem-solving, communication, and interpersonal skills are essential.
- Technology: Familiarity with information security technologies and tools such as firewalls, intrusion detection and prevention systems, and security information and event management (SIEM) systems may be beneficial.
- Continuous Learning: Continuously learning and keeping up-to-date with the latest trends, technologies, and regulations in the information security risk management field is crucial.
- Language: Fluency in English, both in written and spoken form is required.
We are a pragmatic, fast-paced startup company paired with years of system delivery expertise, a strong reputation on the market, and a long-established customer portfolio.
You will be offered growth opportunities based on merit and individual goals, as well as the space to bring new ideas, drive innovation and challenge the status quo.
Mobile Office
Attractive compensation package and country-specific range of benefits.
#J-18808-Ljbffr
Information Security Manager Arbeitgeber: SAP Fioneer GmbH
Kontaktperson:
SAP Fioneer GmbH HR Team
StudySmarter Bewerbungstipps 🤫
So bekommst du den Job: Information Security Manager
✨Tip Number 1
Familiarize yourself with the latest trends and best practices in information security risk management. This will not only help you in interviews but also demonstrate your commitment to continuous learning, which is highly valued at SAP Fioneer.
✨Tip Number 2
Network with professionals in the information security field, especially those who have experience with ISO 27001 or NIST Cybersecurity Framework. Engaging with industry experts can provide insights and potentially lead to referrals.
✨Tip Number 3
Prepare to discuss specific examples of how you've conducted risk assessments or developed risk management policies in previous roles. Being able to articulate your hands-on experience will set you apart from other candidates.
✨Tip Number 4
Showcase your communication skills by practicing how you would explain complex security concepts to non-technical stakeholders. This is crucial for the role, as you'll need to liaise with various teams within the organization.
Diese Fähigkeiten machen dich zur top Bewerber*in für die Stelle: Information Security Manager
Tipps für deine Bewerbung 🫡
Tailor Your CV: Make sure to customize your CV to highlight your experience in information security and risk management. Emphasize relevant certifications like CISSP or CISM, and showcase any specific projects or roles that align with the responsibilities outlined in the job description.
Craft a Strong Cover Letter: Write a compelling cover letter that reflects your understanding of SAP Fioneer's mission and values. Discuss how your background in information security can contribute to their goals, particularly in enhancing their Information Security Management System.
Highlight Relevant Experience: In your application, focus on your experience conducting risk assessments and developing risk management policies. Provide examples of how you've worked with stakeholders to address security concerns and improve risk management practices.
Showcase Continuous Learning: Mention any recent training, courses, or certifications you have pursued related to information security. This demonstrates your commitment to staying updated with industry trends and best practices, which is crucial for the role.
Wie du dich auf ein Vorstellungsgespräch bei SAP Fioneer GmbH vorbereitest
✨Show Your Knowledge of Information Security Standards
Make sure to familiarize yourself with key information security frameworks like ISO 27001 and NIST Cybersecurity Framework. Be prepared to discuss how these standards can be applied in real-world scenarios, as this will demonstrate your understanding of the field.
✨Highlight Your Risk Assessment Experience
Prepare examples from your past experiences where you conducted risk assessments or developed risk management policies. This will help illustrate your practical knowledge and ability to identify vulnerabilities and threats effectively.
✨Communicate Clearly with Stakeholders
Since the role involves liaising with various stakeholders, practice articulating complex security concepts in simple terms. This will show that you can effectively communicate risks and solutions to non-technical audiences.
✨Stay Updated on Industry Trends
Demonstrate your commitment to continuous learning by discussing recent trends or developments in information security. Mention any relevant certifications or courses you are pursuing, which will reflect your proactive approach to professional growth.