CareerPlanSign in

Senior Information Security Manager (GRC)

Munich💼 Full-time🗓 2026-08-05 → 2026-09-25

Core

Own and continuously improve the Information Security Management System (ISMS) and risk program for a global AI translation platform, ensuring alignment with ISO 27001, SOC 2 Type II, and other frameworks while enabling fast-moving product teams.

Role type

Senior Information Security Manager (GRC)

Builds

Secure, compliant AI translation products for global business customers

Domain

AI/ML, Cybersecurity, Compliance

Deliverable

production ML models | dashboards & analysis

Required skills

ISO 27001, SOC 2 Type II, HIPAA, BSI C5, GRC automation tooling (Vanta), risk assessment, stakeholder management, regulatory tracking

Preferred skills

SaaS scale-up experience, evidence ownership model design, calculated risk-taking

Technologies

Vanta, GRC tooling

Responsibilities

Own and mature the ISMS and risk register; act as a hands-on participant in audits; assess risk pragmatically to unblock product teams; partner with engineering and product to embed security requirements; report on program state to leadership

Seniority

Senior, hands-on IC

Sourced via ashby · Listed on CareerPlan, which tracks 70,000+ jobs from 20+ sources.