Information Security / Resilience Manager (m/w/d)
It all starts with the mission: NVISO is here to protect European society from potentially devastating cyber attacks! This means we offer cyber security services to private and governmental organizations to help them better prepare for, prevent, detect and respond to cyber security incidents.
All of this is built on four fundamental values that define who we are: We are Proud, We Break Barriers, We Care and No BS!
Tasks
You have a strong interest in cyber security and believe the following to be applicable to you?
As an Information Security Manager (m/w/d), located in Germany , you will lead our team of GRC or Incident Readiness consultants while actively contributing to client projects as well as contributing in pre-sales activities for strategic clients. Your role will be key in enhancing our clients’ cybersecurity posture by creating and driving security and resilience strategies and their programs throughout the company. Key responsibilities include, but are not limited to:
- Perform technical account management duties for specific top-tier, strategic clients;
- Leading and managing a team of GRC or Resilience consultants to deliver high-quality services to clients;
- Collaborating closely with clients to understand their business objectives, their risks and their unique security requirements;
- Assessing the security maturity or resilience maturity of clients (using of ISO, BSI or NIST standards) to identify gaps and areas for improvement;
- Developing and implementing a fit-for-purpose security program (that aligns with industry standards) or help the customers to develop and implement resilience programs (BCM and DRP programs);
- Driving the security program at clients, where you also act as the security champion, spreading the “gospel” on security;
- Conducting risk assessments, identifying potential vulnerabilities, and recommending risk mitigation strategies;
- Overseeing and supporting with the implementation of the security program, including policies, procedures, and controls;
- Or overseeing and supporting with the implementation of Business Continuity Management Systems and Disaster Recovery Programs.
- Providing updates to management on the ‘state of security’ at their company;
- Holding steering committees at the customer with relevant stakeholders to guide & adapt the security program, where needed;
- Involve yourself actively in the sales process by creating and presenting Statements of Work, project plans, requirements definitions,… for projects running in your team.
Requirements
- You hold citizenship in one of the 32 NATO member states or the Austrian citizenship;
- Bachelor’s or Master's degree in Business Administration, Information Security, or a related field;
- Professional certifications such as Certified Information Systems Auditor (CISA), Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), ISO27001 Implementer/Auditor or equivalent are strongly preferred;
- Proven experience in being a CISO and/or having successfully implemented ISO27k or BSI Grundschutz at clients. This covers, but not limited to: risk assessment, security roadmap creation, CISOaaS and policy development;
- Or proven experience in being a resilience officer having successfully implemented a BCM or DRP program.
- In-depth knowledge of relevant industry standards and frameworks, such as ISO 27001, DORA, NIST, NIS-2, GDPR, etc.;
- Familiarity with risk management and assessment methodologies and their application to cybersecurity;
- Quickly grasping the complexity and the business reasons for a company to perform security and adapting your communication style and the security program to make it fit for the client;
- Excellent English and German written and verbal communication skills to effectively convey complex concepts to technical and non-technical stakeholders;
- Leadership skills to manage a team and collaborate with clients and cross-functional teams.
Benefits
At NVISO, we care. We are committed to offering you a highly competitive remuneration package including financial and non-financial components:
- Working and learning from the best people in the European cyber security industry. We have multiple SANS Instructors working at NVISO, our staff has presented at popular hacking conferences (BlackHat, BruCON, OWASP, etc) and all of our technical staff can acquire deep technical security certifications (GSE, GXPN, GREM, GCFA, OSCP, etc);
- Generous training budget of 10.000 EUR + 10 man days for attending lectures rolling over 2 years;
- Base salary range (depending on experience and skillset): 90.000 EUR p.a. - 120.000 EUR p.a.;
- Support for technical growth with Cloud trainings + certifications (AWS, GCP, Azure);
- Regular team-building and fun events;
- Our commitment to coach and counsel you and help you grow; each employee receives a personal coach within the team, whose role is to ensure your well-being and helps you grow in your career!
- Flexible working hours and home office possibilities (incl. working abroad weeks within the EU);
- Business Bike Leasing;
- BahnCard 50 1st class + public transfer ticket;
- 30 holidays;
- Company Pension Scheme;
- Cool offices in the center of Frankfurt, Munich and Vienna (with BBQ, kicker table, table tennis, playstations, etc.).
Disclaimer on the Use of AI Tools in the Application Process
Please be aware that the creation and submission of application documents (e.g. CV, cover letter, case studies, etc.) using AI-powered tools is only permitted to a limited extent .
Our expectations:
- Application documents must authentically reflect your own qualifications, personality, and motivation.
- The use of AI for supportive purposes (e.g. spell-checking, improving wording) is acceptable.
- Fully generated application documents created by AI without personal adaptation or review are not permitted.
- Under no circumstances may NVISO information, data, or documents be uploaded to or processed by external AI tools.
We reserve the right to exclude applications from the selection and interview process that are clearly created primarily or exclusively by AI and show no recognizable personal input.
The purpose of this policy is to ensure a fair and transparent recruitment process and to obtain an authentic impression of our applicants.
Empfohlene Jobs
Technischer Systemplaner/ Technischer Zeichner Sprinkler (m/w/d)
Das Unternehmen Unser Mandant ist ein etabliertes und wirtschaftlich äußerst solides Unternehmen im Bereich Technische Gebäudeausrüstung (TGA), Brandschutztechnik, Sprinkleranlagenbau und Gebäudet…
Data Catalog Manager (w/m/d) (München)
Innovationen bringen tiefgreifende Veränderungen mit sich und beeinflussen unser Leben in vielfältiger Weise. Bei der TÜV SÜD Gruppe sind wir in hohem Maße bestrebt, ein wichtiger Teil dieser Entwick…
AI Tester - German Speaker
About the Role We are looking for a German-speaking AI Tester to join a pilot project in the automotive industry. This is an entry-level opportunity — previous experience in testing, AI, or…
Personalreferent Ärztliche Direktion (m/w/d)
Das LMU Klinikum ist eines der größten und leistungsfähigsten Universitätsklinika in Deutschland und Europa. 48 Fachkliniken, Abteilungen und Institute mit einer exzellenten Forschung und Lehre ermög…
SSBI IT Transformation PMO & IT Material Change Control Teams Lead, Vice President
Who We Are Looking ForWe are looking for an experienced, hands-on Vice President to lead the SSBI IT Transformation PMO and IT Material Change Control teams.Reporting to the Head of IT Transformation …
Senior Projektingenieur:in Entsorgung / Betriebsmanagement
Zum nächstmöglichen Zeitpunkt suchen wir dich als Senior Projektingenieur:in Entsorgung / Betriebsmanagement (w/m/d) für die Abteilung Umwelt, Logistik und Fachexpert:innen im Großprojekt 2. S-Bahn-S…
Praktikant Strategie- und Transaktionsprojekte im Treasury - FAAS (w/m/d)
Requisition ID: 1629767 Are you ready to shape your future with confidence? Gemeinsam die Welt jeden Tag ein bisschen besser machen. Für diesen Anspruch setzen wir bei EY alles in Bewegung und ge…
Praktikum oder Abschlussbereich im Bereich F&E Anti-Friction Coatings mit Dienstsitz München (w/m/d)
„We will wow your world!” Das ist unser Versprechen, wenn es um Arbeiten bei Freudenberg geht. Als globaler Technologiekonzern machen wir die Welt nicht nur sauberer, gesünder und komfortabler, sonder…
Head of Engineering
HEY DU! Für unser Team suchen wir an unserem Standort im Herzen von München ab sofort einen Head of Engineering (m/w/d) in Voll- oder Teilzeit . Du liebst es, komplexe Systeme wie unseren Shop,…
Junior Finance ERP Consultant (m/w/d)
Wir sind ein ambitioniertes Team von 100 Consultants und Engineers in Deutschland, Portugal und Großbritannien. Unser Antrieb: Die Prozesse und IT-Systeme unserer Kunden nicht nur zu verbessern, sond…