Information Security Officer
Core
Own the group-wide information security strategy, program, and posture, ensuring ISO 27001 certification and NIS-2 compliance for AI platforms serving defense and government clients.
Role type
Senior Information Security Officer (ISB)
Builds
Group-wide ISMS, security policy framework, incident response plans, and regulatory compliance programs.
Domain
Cybersecurity, Defense, Government
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
ISO 27001 program leadership, BSI IT-Grundschutz implementation, risk management, incident response planning, third-party risk assessment, security awareness program management, regulatory compliance tracking (NIS-2, EU AI Act, Cyber Resilience Act), stakeholder management with executive leadership and auditors.
Preferred skills
Experience in regulated environments (defense, government, critical infrastructure), security governance across multiple jurisdictions, pre-sales security processes.
Technologies
BSI standards 200-1/200-2/200-3, ISO 27001, NIS-2, EU AI Act, Cyber Resilience Act
Responsibilities
Build and operate the group-wide ISMS following BSI standards; create and maintain the security policy framework; prepare and accompany ISO 27001 certification; implement NIS-2 obligations; manage risk across technical and organizational domains; steer external consultants; build and run the security awareness programme; own incident response planning; assess third-party and vendor risk; support sales and customer trust processes; track further regulatory requirements.
Seniority
Senior, hands-on IC
