Information Security, Compliance & Internal Controls Manager – ISO 27001

Posted Sep 15

This is a fully remote position, open to applicants in United States.

📋 Description

• Develop, enhance, and systematically prepare the organization for an Information Security Management System (ISMS) in accordance with ISO/IEC 27001, and for ISO 9001 certification.

• Analyze, evaluate, and implement regulatory obligations, particularly those stemming from the NIS2 Directive.

• Utilize the BSI IT-Grundschutz framework as a reference and apply relevant measures as needed.

• Establish, further develop, and oversee the annual audit of the Internal Control System (ICS) by the statutory auditor in compliance with PS 951 Type 2 / ISAE 3402.

• Organize and maintain compliance and security documentation in Confluence and Jira, ensuring audit-ready structures and workflows.

• Collaborate continuously with all teams to systematically collect and update security- and compliance-related information.

• Design, standardize, and enhance processes in information security, compliance, and internal controls.

• Prepare, coordinate, and assist in internal and external audits, including risk assessments and monitoring of remediation actions.


⛳️ Requirements

• 3–6 years of professional experience in information security, IT compliance, or ISMS.

• Practical experience with ISO/IEC 27001, encompassing implementation, operation, or auditing.

• Strong knowledge of regulatory requirements, such as the NIS2 Directive, GDPR, and IT security standards.

• Experience in establishing and maintaining organized documentation and processes.

• Familiarity with BSI IT-Grundschutz and/or quality management according to ISO 9001 is a plus.

• Experience with internal audits or supporting certification processes is an advantage.

• Basic technical knowledge of cloud and IT architectures.

• Proficiency in Confluence and Jira or similar tools is advantageous.

• Ability to clearly communicate complex requirements and implement them in a pragmatic manner.

• Fluent in German with good English language skills.


🏝️ Benefits

• 100% remote position with a high degree of flexibility in working hours.

• Competitive salary.

• Automatic salary increases based on KPIs.

• Attractive annual bonuses.

• 30+ days of paid annual leave.

• Fully equipped premium home office setup.

• Company (e-)bike.

• Employer-sponsored supplementary health insurance.

• Additional corporate benefits.

• Opportunity to work in an international environment with one of the world’s leading cloud providers in the SAP ecosystem.

People also viewed

Sony Interactive Entertainment18 hours ago

Senior Security AI Risk Analyst

US flagCalifornia OnlyFull-timeCybersecurity / Security Engineer$167.5k – $251.3k/year
ApplyView job
Squads18 hours ago

Security Engineer

North AmericaFull-timeCybersecurity / Security Engineer$175k – $220k/year
ApplyView job
Neo4j18 hours ago

Senior Director, Product, Security and Privacy

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer$260k – $300k/year
ApplyView job
PingWind Inc. (SDVOSB)19 hours ago

Cloud Security Architect – Engineer

US flagAlabama, +1 more stateFull-timeCybersecurity / Security Engineer
ApplyView job
CSCI Consulting19 hours ago

SAP S/4HANA Defense & Security Functional Lead

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer
ApplyView job
Strategic Systems International20 hours ago

AI Security Engineer – AI, Agentic Security

MX flagMexico, +4 more countriesFreelanceCybersecurity / Security Engineer
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers