Stott and May
Cyber Security Manager
Stott and MayGermany23 hours ago
Full-timeRemote FriendlyInformation Technology

Senior Information Security Manager

Location: Berlin, Germany (3 Days Office / 2 Days Remote)

Salary: €70,000 – €110,000


We are representing a software engineering company that build sophisticated solutions that optimise the flow of energy and materials, enabling global businesses to transition to a renewable and green future.


Currently going through an exciting technology transformation and scaling their operations, They need a Senior Information Security Manager who doesn't just know security theory but thrives in the execution.


Reporting directly to the CISO in a security team of 15, you will lead the charge in building security foundations from the ground up during a period of rapid greenfield development.


This isn't a maintenance role. You are being brought in to design and implement the ISMS from scratch. You will be the bridge between organisational policy and technical implementation, ensuring their security posture scales as fast as our investment.


Key Responsibilities:

  • Greenfield ISMS Implementation: Own the end-to-end design and practical rollout of Information Security Management System (ISMS), ensuring it is embedded into both business processes and technical stack.
  • Compliance Leadership: Act as the subject matter expert for ISO 27001, with a secondary focus on achieving SOC 2 compliance to support their international scale.
  • Business Continuity: Design and implement hands-on Business Continuity Management (BCM) plans that ensure their solutions remain resilient under any circumstances.
  • Technical Governance: Review and approve security tool requests and conduct deep-dive customer audits to demonstrate a world-class security posture.
  • Hands-on Security: Move beyond the conceptual. You will be responsible for the actual implementation of security controls, working closely with engineering teams to ensure they are technically sound and operationally effective.


Your Profile

  • The Implementer: You have a proven track record of actually building an ISMS, not just managing one. You understand how to turn an ISO 27001 requirement into a working technical control.
  • Expert Knowledge: Deep familiarity with ISO 27001 is essential. SOC 2 experience is a major bonus that will set you apart.
  • Greenfield Mindset: You are energised by the opportunity to set the standard for a profitable, high-growth startup.
  • Auditor & Analyst: You are comfortable facing customers in audits and analysing new tools for security risks.


Why Join Us?

  • Impact: Your work directly supports the global shift to renewable energy.
  • Profitable Growth: We are a stable, profitable business receiving significant investment, meaning we have the resources to do things right.
  • Elite Mentorship: You will report directly to a highly experienced CISO who is committed to your development.
  • Massive Training Budget: We don't just say we value growth; we fund it. You will have a dedicated budget for any certifications (CISSP, CISM, etc.) or technical training you require.
  • Greenfield Freedom: No legacy red tape. You lead the aspects of the transformation that you design.

Key Skills

Ranked by relevance