Information Security, Compliance & Internal Controls Manager – ISO 27001

Posted 4 hours ago

This is a fully remote position, open to applicants anywhere in the world.

📋 Description

• Develop, enhance, and systematically prepare the organization for compliance with ISO/IEC 27001 standards for an Information Security Management System (ISMS) and ISO 9001 certification.

• Analyze, evaluate, and implement regulatory obligations, particularly those stemming from the NIS2 Directive.

• Align with and, where appropriate, execute measures according to the BSI IT-Grundschutz standard.

• Establish, refine, and ensure the annual audit of the Internal Control System (IKS) by an external auditor in line with PS 951 Type 2 / ISAE 3402.

• Organize and maintain compliance and security documentation in Confluence and Jira, ensuring audit-ready structures and workflows.

• Collaborate continuously with and provide guidance to all teams regarding the systematic gathering and updating of security and compliance-related information.

• Develop, standardize, and enhance processes related to information security, compliance, and internal controls.

• Prepare for, coordinate, and assist with internal and external audits, including conducting risk analyses and tracking action items.


⛳️ Requirements

• 3–6 years of professional experience in information security, IT compliance, or ISMS.

• Hands-on experience with ISO/IEC 27001, including implementation, operation, or auditing.

• Strong understanding of regulatory requirements, including the NIS2 Directive, GDPR, and IT security standards.

• Experience in establishing and maintaining organized documentation and processes.

• Familiarity with BSI IT-Grundschutz and/or quality management in accordance with ISO 9001 is considered a plus.

• Experience in conducting internal audits or assisting with certification processes is beneficial.

• Basic technical knowledge of cloud and IT architectures.

• Proficiency in Confluence and Jira or similar tools is an advantage.

• Ability to convey complex requirements clearly and implement them in a practical manner.

• Fluency in German and a good command of English.


🏝️ Benefits

• 100% remote position with a high level of scheduling flexibility.

• Competitive salary.

• Automatic salary increases based on KPIs.

• Attractive annual bonuses.

• Over 30 days of paid annual leave.

• Fully equipped premium home office setup.

• Company (e-)bike.

• Supplementary company health insurance.

• Additional corporate benefits.

• Opportunity to work in an international environment at one of the world’s leading cloud providers within the SAP ecosystem.

• Permanent employment contract.

People also viewed

BLUVIT GmbH13 hours ago

Information Security Consultant – M/F/D

DE flagGermany OnlyFull-timeCybersecurity / Security Engineer€40k – €70k/year
ApplyView job
Eli Lilly and Company14 hours ago

Enterprise AI Security Advisor

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer$129k – $253k/year
ApplyView job
S + S Regeltechnik GmbH17 hours ago

Senior IT Security Expert (m/f/d)

DE flagGermany OnlyFull-timeCybersecurity / Security Engineer
ApplyView job
IntellectEU17 hours ago

Senior Security Engineer

LU flagLuxembourg OnlyFreelanceCybersecurity / Security Engineer
ApplyView job
BCD Travel17 hours ago

Senior Information Security Auditor

CO flagColombia, +2 more countriesFull-timeCybersecurity / Security Engineer
ApplyView job
Nielsen1 day ago

Senior Manager, Application and Pipeline Security

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer$103k – $191.4k/year
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers