Verified current Job

Information Security / Resilience Manager (m/w/d)

It all starts with the mission: NVISO is here to protect European society from potentially devastating cyber attacks! This means we offer cyber security services to private and governmental organizations to help them better prepar...

Job Full source details
NVISO Europe, Germany Source published Sep 21, 2026 Verified 18 hours ago
✓ 100% verification score · Source: Arbeitnow · Always confirm final requirements on the original source.
Complete source information imported The available role or programme description, requirements, benefits and source facts were imported from the public official endpoint and formatted for reading.
Employmentmanager
CountryGermany

Overview

It all starts with the mission: NVISO is here to protect European society from potentially devastating cyber attacks! This means we offer cyber security services to private and governmental organizations to help them better prepare for, prevent, detect and respond to cyber security incidents. All of this is built on four fundamental values that define who we are: We are Proud, We Break Barriers, W

Full job description

It all starts with the mission: NVISO is here to protect European society from potentially devastating cyber attacks! This means we offer cyber security services to private and governmental organizations to help them better prepare for, prevent, detect and respond to cyber security incidents. All of this is built on four fundamental values that define who we are: We are Proud, We Break Barriers, We Care and No BS! Tasks You have a strong interest in cyber security and believe the following to be applicable to you? As an Information Security Manager (m/w/d), located in Germany , you will lead our team of GRC or Incident Readiness consultants while actively contributing to client projects as well as contributing in pre-sales activities for strategic clients. Your role will be key in enhancing our clients’ cybersecurity posture by creating and driving security and resilience strategies and their programs throughout the company. Key responsibilities include, but are not limited to: Perform technical account management duties for specific top-tier, strategic clients; Leading and managing a team of GRC or Resilience consultants to deliver high-quality services to clients; Collaborating closely with clients to understand their business objectives, their risks and their unique security requirements; Assessing the security maturity or resilience maturity of clients (using of ISO, BSI or NIST standards) to identify gaps and areas for improvement; Developing and implementing a fit-for-purpose security program (that aligns with industry standards) or help the customers to develop and implement resilience programs (BCM and DRP programs); Driving the security program at clients, where you also act as the security champion, spreading the “gospel” on security; Conducting risk assessments, identifying potential vulnerabilities, and recommending risk mitigation strategies; Overseeing and supporting with the implementation of the security program, including policies, procedures, and controls; Or overseeing and supporting with the implementation of Business Continuity Management Systems and Disaster Recovery Programs. Providing updates to management on the ‘state of security’ at their company; Holding steering committees at the customer with relevant stakeholders to guide & adapt the security program, where needed; Involve yourself actively in the sales process by creating and presenting Statements of Work, project plans, requirements definitions,… for projects running in your team. Requirements You hold citizenship in one of the 32 NATO member states or the Austrian citizenship; Bachelor’s or Master's degree in Business Administration, Information Security, or a related field; Professional certifications such as Certified Information Systems Auditor (CISA), Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), ISO27001 Implementer/Auditor or equivalent are strongly preferred; Proven experience in being a CISO and/or having successfully implemented ISO27k or BSI Grundschutz at clients. This covers, but not limited to: risk assessment, security roadmap creation, CISOaaS and policy development; Or proven experience in being a resilience officer having successfully implemented a BCM or DRP program. In-depth knowledge of relevant industry standards and frameworks, such as ISO 27001, DORA, NIST, NIS-2, GDPR, etc.; Familiarity with risk management and assessment methodologies and their application to cybersecurity; Quickly grasping the complexity and the business reasons for a company to perform security and adapting your communication style and the security program to make it fit for the client; Excellent English and German written and verbal communication skills to effectively convey complex concepts to technical and non-technical stakeholders; Leadership skills to manage a team and collaborate with clients and cross-functional teams. Benefits At NVISO, we care. We are committed to offering you a highly competitive remuneration package including financial and non-financial components: Working and learning from the best people in the European cyber security industry. We have multiple SANS Instructors working at NVISO, our staff has presented at popular hacking conferences (BlackHat, BruCON, OWASP, etc) and all of our technical staff can acquire deep technical security certifications (GSE, GXPN, GREM, GCFA, OSCP, etc); Generous training budget of 10.000 EUR + 10 man days for attending lectures rolling over 2 years; Base salary range (depending on experience and skillset): 90.000 EUR p.a. - 120.000 EUR p.a.; Support for technical growth with Cloud trainings + certifications (AWS, GCP, Azure); Regular team-building and fun events; Our commitment to coach and counsel you and help you grow; each employee receives a personal coach within the team, whose role is to ensure your well-being and helps you grow in your career! Flexible working hours and home office possibilities (incl. working abroad weeks within the EU); Business Bike Leasing; BahnCard 50 1st class + public transfer ticket; 30 holidays; Company Pension Scheme; Cool offices in the center of Frankfurt, Munich and Vienna (with BBQ, kicker table, table tennis, playstations, etc.). Disclaimer on the Use of AI Tools in the Application Process Please be aware that the creation and submission of application documents (e.g. CV, cover letter, case studies, etc.) using AI-powered tools is only permitted to a limited extent . Our expectations: Application documents must authentically reflect your own qualifications, personality, and motivation. The use of AI for supportive purposes (e.g. spell-checking, improving wording) is acceptable. Fully generated application documents created by AI without personal adaptation or review are not permitted. Under no circumstances may NVISO information, data, or documents be uploaded to or processed by external AI tools. We reserve the right to exclude applications from the selec

Requirements: requirements; Assessing the security maturity or resilience maturity of clients (using of ISO, BSI or NIST standards) to identify gaps and areas for improvement; Developing and implementing a fit-for-purpose security program (that aligns with industry standards) or help the customers to develop and implement resilience programs (BCM and DRP programs); Driving the security program at clients, where you also act as the security champion, spreading the “gospel” on security; Conducting risk assessments, identifying potential vulnerabilities, and recommending risk mitigation strategies; Overseeing and supporting with the implementation of the security program, including policies, procedures, and controls; Or overseeing and supporting with the implementation of Business Continuity Management Systems and Disaster Recovery Programs. Providing updates to management on the ‘state of security’ at their company; Holding steering committees at the customer with relevant stakeholders to guide & adapt the security program, where needed; Involve yourself actively in the sales process by creating and presenting Statements of Work, project plans, requirements definitions,… for projects running in your team. Requirements You hold citizenship in one of the 32 NATO member states or the Austrian citizenship; Bachelor’s or Master's degree in Business Administration, Information Security, or a related field; Professional certifications such as Certified Information Systems Auditor (CISA), Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), ISO27001 Implementer/Auditor or equivalent are strongly preferred; Proven experience in being a CISO and/or having successfully implemented ISO27k or BSI Grundschutz at clients. This covers, but not limited to: risk assessment, security roadmap creation, CISOaaS and policy development; Or proven experience in being a resilience officer having successfully implemented a BCM or DRP program. In-depth knowledge of relevant industry standards and frameworks, such as ISO 27001, DORA, NIST, NIS-2, GDPR, etc.; Familiarity with risk management and assessment methodologies and their application to cybersecurity; Quickly grasping the complexity and the business reasons for a company to perform security and adapting your communication style and the security program to make it fit for the client; Excellent English and German written and verbal communication skills to effectively convey complex concepts to technical and non-technical stakeholders; Leadership skills to manage a team and collaborate with clients and cross-functional teams. Benefits At NVISO, we care. We are committed to offering you a highly competitive remuneration package including financial and non-financial components: Working and learning from the best people in the European cyber security industry. We have multiple SANS Instructors working at NVISO, our staff has presented at popular hacking conferences (BlackHat, BruCON,

Requirements & qualifications

requirements; Assessing the security maturity or resilience maturity of clients (using of ISO, BSI or NIST standards) to identify gaps and areas for improvement; Developing and implementing a fit-for-purpose security program (that aligns with industry standards) or help the customers to develop and implement resilience programs (BCM and DRP programs); Driving the security program at clients, where you also act as the security champion, spreading the “gospel” on security; Conducting risk assessments, identifying potential vulnerabilities, and recommending risk mitigation strategies; Overseeing and supporting with the implementation of the security program, including policies, procedures, and controls; Or overseeing and supporting with the implementation of Business Continuity Management Systems and Disaster Recovery Programs. Providing updates to management on the ‘state of security’ at their company; Holding steering committees at the customer with relevant stakeholders to guide & adapt the security program, where needed; Involve yourself actively in the sales process by creating and presenting Statements of Work, project plans, requirements definitions,… for projects running in your team. Requirements You hold citizenship in one of the 32 NATO member states or the Austrian citizenship; Bachelor’s or Master's degree in Business Administration, Information Security, or a related field; Professional certifications such as Certified Information Systems Auditor (CISA), Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), ISO27001 Implementer/Auditor or equivalent are strongly preferred; Proven experience in being a CISO and/or having successfully implemented ISO27k or BSI Grundschutz at clients. This covers, but not limited to: risk assessment, security roadmap creation, CISOaaS and policy development; Or proven experience in being a resilience officer having successfully implemented a BCM or DRP program. In-depth k

Tips for this job

Practical JobOpportunity guidance. These tips do not replace official rules or create new eligibility requirements.

  1. Tailor the CV and application to the responsibilities and required skills stated on the official employer page.
  2. Use concrete evidence of relevant work, projects and measurable results rather than generic claims.
  3. Confirm location, work authorization, remote restrictions and sponsorship terms before applying.
  4. Apply through the original employer or official recruitment destination shown on this page.
Original authoritative source

JobOpportunity is the discovery and verification layer. Confirm eligibility, dates, salary/funding and application instructions on the original source before submitting anything.

Apply through JobOpportunity →

Browse current JobOpportunity listings from Arbeitnow →

More ways to save

Discover deals, coupons and free courses on our sister site.

Explore DealVorio
Save more with DealVorio: deals, coupons, free courses, apps and books