Principal of Information Security (f/m/d)
Core
Own Orbem's Information Security function end-to-end, including strategy, ISO 27001 re-audit, risk management, and incident response for a deep-tech AI/ML company industrializing MRI.
Role type
Principal Information Security Leader (hands-on IC)
Builds
Information security strategy, ISMS governance, risk registers, and operational security processes for enterprise food and healthcare customers.
Domain
Deep-tech / AI / Industrial IoT / Medical Imaging
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
ISO 27001 audit leadership, information security risk management, incident response command, vendor/external provider management, security policy authoring, strategic advisory to executives, hands-on process implementation, security ambassador network building, AI/automation governance
Preferred skills
GDPR/NIS2/EU AI Act regulatory knowledge, US SOC 2 familiarity, deep-tech/AI/ML product context, experience evaluating external security service providers, AI-first working methodology
Technologies
ISO 27001, GDPR, NIS2, EU AI Act, SOC 2, ISMS platforms, managed security services, penetration testing tools
Responsibilities
Lead ISO 27001 re-audit strategy and execution; set and maintain information security strategy aligned with risk appetite; own the information security risk register; represent the company with auditors, customers, and regulators; advise leadership on security risk in product and go-to-market decisions; improve operational security processes and vendor risk management; lead incident response as incident commander; author security policies and communications; orchestrate external security provider stack; build a Security Ambassadors network.
Seniority
Principal, hands-on IC with lateral influence
