Principal Information Security Manager
New
S
StaffbaseSaaS / B2B Tech
Remote working within GermanyFull-TimePrincipal
SalaryCompetitive salary packages including LTIP (unit-based Long Term Incentive Plan).
Apply NowOpens the employer's application page
Job Details
- Languages
- English
- Experience
- 5+ years
- Required Skills
- Risk Management
Requirements
- 5+ years of hands-on InfoSec experience in a SaaS or B2B tech company.
- Proven ownership of ISO 27001 and/or SOC 2 compliance programs.
- Experience representing InfoSec to enterprise customers in security reviews and escalations.
- Fluent in English.
- Active use of AI-driven tooling to automate compliance and operations.
- Experience supporting or preparing for M&A or investor due diligence is highly desirable.
- Collaborative experience working alongside Legal, Procurement, and Engineering departments.
- Practical understanding of cloud security architecture.
- Relevant certification such as CISM, CISSP, or ISO 27001 Lead Auditor is highly desirable.
Responsibilities
- Lead ISO 27001 and SOC 2 audit cycles end-to-end.
- Manage enterprise customer security questionnaires, RFPs, and security reviews.
- Maintain the risk register and drive vendor security assessments.
- Manage the internal security policy framework and design security awareness programs.
- Lead incident response planning and execution with Engineering and Legal partners.
- Drive automation and AI-assisted workflows across compliance and operations.
View Full Description & ApplyYou'll be redirected to the employer's site