HHiring Reality
← Orcrist Technologies

Information Security Manager

Orcrist Technologies
Location
Remote / Berlin
Posted
12 days ago
Department
Leadership
What they actually want (must-haves)
  • Several years of experience as an ISB or in comparable responsibility for information security
  • Proven practice with BSI IT-Grundschutz: BSI standards 200-x and the Grundschutz-Kompendium, ideally including a completed certification procedure
  • Experience building or leading ISO 27001 programmes, from gap analysis to audit readiness
  • Solid risk management: you assess, prioritize, and communicate risk clearly to technical and non-technical audiences
  • Willingness to work hands-on during the build-up phase
  • Confident interaction with executive management, auditors, and customers
Nice to have
  • Certifications: IT-Grundschutz-Praktiker/-Berater, ISO 27001 Lead Implementer or Lead Auditor, CISSP, CISM
  • Experience with security governance across multiple legal entities or jurisdictions
  • Experience in regulated environments: defence, government, critical infrastructure; familiarity with VS-NfD, Geheimschutz, or AQAP
  • Practical NIS-2 implementation experience
  • Experience with sales-adjacent security processes (pre-sales, customer audits)
What the job really is

The Information Security Manager will oversee the information security strategy and program for the Vektor Group, focusing on achieving ISO 27001 certification and NIS-2 compliance. This role involves hands-on execution of security measures, managing risk, and collaborating closely with the IT team and external consultants. Responsibilities include building an Information Security Management System (ISMS), conducting audits, and ensuring ongoing compliance with regulatory obligations while also supporting sales processes related to security.

Benefits
  • International team with colleagues across Germany and other locations.
  • Startup environment with real ownership, flat hierarchies, and fast decisions.
  • Competitive compensation aligned with experience and responsibility.
  • Individual learning and growth opportunities beyond your role.
Things to weigh
  • The role requires hands-on work during the initial build-up phase, which may not suit everyone.
  • The focus on compliance and governance may limit exposure to broader security innovations.
  • No specific salary range is provided in the posting.
Job score2.8/5
Benefits2/5
Freshness4/5
Career value4/5
Role clarity4/5
Pay transparency0/5

Applying to Orcrist Technologies?

See how your résumé matches this role — and tailor it from what actually gets interviews.