Chrono24

Head of Information Security (m/f/d)

Stellenbeschreibung:

Overview

As Head of Information Security, you own Chrono24’s security program, shaping strategy and ensuring risk-aware operations across the organization. You balance strategic leadership with hands-on execution to protect a platform used by millions of watch enthusiasts. You drive regulatory compliance, incident response, and risk management, while embedding security into engineering and vendor relationships. This role offers the chance to lead a security-driven transformation at scale and partner with cross-functional teams to secure a global marketplace.

Leistungen / Benefits
  • salary 90,000 to 120,000 EUR annually
  • permanent employment
  • 30 days vacation
  • free daily meals at HQ
  • extra day off on Dec 24 and 31
  • ability to work abroad up to 20 days per year
Verantwortungsbereiche
  • Define and drive the information security strategy and roadmap aligned with business goals and regulatory requirements
  • Own IS governance, risk management, and compliance across the organization
  • Lead and coordinate incident response via the Security Incident Response Team (SIRT) processes
  • Steer vulnerability management including internal/external assessments and bug bounty program
  • Build and run the security awareness program (phishing, training, culture)
  • Assess and manage third-party/vendor security risks to meet security standards
  • Drive audit readiness and ISO 27001/NIS2 preparation with external auditors
  • Contribute to business continuity management by embedding security into continuity processes
Zentrale Anforderungen
  • Technical background in software engineering, DevOps or similar discipline
  • Several years of professional information security experience
  • Deep understanding of ISMS and ISO 27001, with hands-on risk, incident, and vulnerability management
  • Strong communication skills for technical teams and executive leadership
  • Collaborative, pragmatic, cross-functional approach
  • Very good English; German proficiency is a plus
  • Certifications such as CISSP, CISM, ISO 27001 Lead Auditor/Implementer are a bonus
  • Experience with NIS2, cloud security (AWS, GCP) is advantageous
  • strong communication
  • collaborative mindset
  • pragmatic problem-solving
  • ISO 27001 ISMS
  • risk management
  • incident response
NOTE / HINWEIS:
EnglishEN: Please refer to Fuchsjobs for the source of your application
DeutschDE: Bitte erwähne Fuchsjobs, als Quelle Deiner Bewerbung

Stelleninformationen

  • Veröffentlichungsdatum:

    14 Sep 2026
  • Standort:

    Karlsruhe
  • Typ:

    Vollzeit
  • Arbeitsmodell:

    Vor Ort
  • Kategorie:

  • Erfahrung:

    2+ years
  • Arbeitsverhältnis:

    Angestellt

KI Suchagent

AI job search

Möchtest über ähnliche Jobs informiert werden? Dann beauftrage jetzt den Fuchsjobs KI Suchagenten!