Staff Information Security Professional (f/m/d)
Ionos — Germany · Posted ~10 hours ago
🔓 Log in to save this job, tailor your resume & track your apply process — 7 days free, no card needed.
Log in to add to target listDescription
About IONOS
At IONOS, we don't just manage servers – we shape the digital future for more than 6.2 million customers worldwide with our solutions.
As Europe's leading hosting provider and a pioneer in independent cloud solutions, we are building next-generation infrastructure – from sovereign cloud architectures and high-performance GPU clusters to integrated AI automation tools.
What drives us is digital sovereignty for Europe and real impact for small and medium-sized businesses (SMBs) as well as large enterprises.
We work in agile teams, rely on transparent structures, and believe that excellence and innovation only emerge through true team spirit.
Ready for your next step? Become part of IONOS and grow with us.As a member of the multinational security management team at IONOS SE, you will be working for one of Europe's largest hosters in the rapidly growing cloud sector, contributing your knowledge and experience to better protect our products and system landscape.
You will be responsible for the design and operation of an integrated management system that includes certified areas from ISO 27001, BSI IT-Grundschutz and BSI C5, among others, and is constantly being expanded.
The aim is to encourage and control the implementation and operation of security mechanisms, not only to demonstrate that our products meet the security requirements of the standards, but also to increase the benefits for our customers and the company.You will bridge ISO 27001, BSI C5, and IT-Grundschutz with emerging regulatory standards like NIS2 and KRITIS, ensuring our products maintain rock-solid compliance while enabling rapid innovation.
Tasks
Functional Leadership & Steering: Functionally guide project teams, engineers, and junior security peers across certification and audit initiatives.
Act as the primary technical lead for new and re-certification cycles.
Integrated Management System (IMS) Competence: Architect and maintain our unified management system covering ISO 27001, BSI IT-Grundschutz, and BSI C5, ensuring lean, synergy-driven processes across international cloud infrastructures.
Continuous Compliance & Audit Execution: Lead the operational planning, execution, and follow-up of internal and external security audits.
Move the organization toward continuous compliance using real-time security dashboards and modern GRC tooling.
Regulatory & Certification Alignment: Align our certification frameworks with evolving regulatory requirements, including NIS2 and KRITIS standards.
Reporting & Executive Interface: Design, compile, and present security metrics and certification status reports to senior management.
Cross-Disciplinary Risk & Vendor Support: Support risk management, third-party risk assessments (TPRM), security awareness, and incident management disciplines across product lines.
Qualifications
Background: Degree in Computer Science, Information Security, or equivalent practical experience in cloud/SaaS hosting environments.
Certification & Framework Expertise: Proven track record in successfully leading ISO 27001, BSI C5, or BSI IT-Grundschutz audits.
Hands-on familiarity with GDPR, CSA CCM, and emerging standards (NIS2/KRITIS).
Functional Leadership Capability: Demonstrated ability to lead cross-functional projects, mentor colleagues, and manage diverse stakeholders without direct authority.
Tooling & Automation Mindset: Experience with modern GRC tools and automated evidence collection, reducing manual reporting overhead.
Communication Skills: Fluent in German and English with strong analytical and executive reporting capabilities.
Benefits
Hybrid working model.
Flexible working hours through trust-based working hours.
At some locations a subsidized canteen and various free drinks.
Modern office space with very good transport connections.
Various employee discounts for activities and products.
Employee events such as summer and winter parties, as well as workshops.
Numerous training and development opportunities.
Various health offers, such as sports and health courses.
Application Note
We value diversity and welcome all applications – regardless of, for example, gender, nationality, ethnic or social origin, religion, disability, age as well as sexual orientation and identity, physical characteristics, marital status or any other irrelevant factor subject to applicable law.
We have 153,284 jobs that might be an even better fit for you
DontApply's real value goes far beyond a single job link or company name. Just upload your resume — in under a minute we'll analyze all 153,284 jobs and tell you exactly which ones you should apply to right now.
Upload My Resume