Overview

Information Security Manager Jobs in Berlin, Germany at Digital Waffle

Title: Information Security Manager

Company: Digital Waffle

Location: Berlin, Germany

Information Security Manager📍 Berlin, Germany (Hybrid – 2/3 days onsite)

💰 €85,000 base salary with flexibility up to €100,000 for the right candidate

My client, an innovative and fast-growing digital technology business based in Berlin, is looking for an experienced Information Security Manager to take ownership of security, compliance, and governance across both the organisation and its software platforms.

This is a highly visible role sitting between engineering, operations, and leadership teams, focused on building scalable security and compliance processes within a modern software development environment. The position would suit someone who enjoys working hands-on with technical teams while also driving policy, governance, and regulatory initiatives at an organisational level.

Key Responsibilities

  • Own and evolve the company’s information security and compliance framework
  • Lead and maintain ISO 27001 aligned ISMS activities, including documentation, controls, policies, risk management, and audit readiness
  • Work closely with software engineering and DevOps teams to embed security and compliance requirements into development processes
  • Translate regulatory and security requirements into practical technical and operational controls
  • Drive continuous improvement across security, privacy, and governance processes
  • Coordinate audits, evidence gathering, remediation activities, and stakeholder management
  • Develop and maintain technical and procedural documentation across the business
  • Partner with cross-functional teams to ensure security supports product delivery rather than slowing it down

Requirements

  • Strong hands-on experience operating within an ISO 27001 environment, including ownership of documentation, controls, and compliance activities
  • Experience working directly with software engineering, product, or DevOps teams in a technology-led business
  • Proven background writing policies, procedures, technical documentation, and governance artefacts
  • Strong understanding of information security principles, risk management, and operational compliance
  • Ability to manage multiple projects and stakeholders in a fast-paced environment
  • Excellent communication skills with the ability to engage both technical and non-technical audiences
  • Fluent German and English language skills

Nice to Have

  • Exposure to GDPR, medical device regulations, or regulated technology environments
  • Experience within SaaS, digital health, fintech, or other highly regulated software businesses
  • Background in security operations, DevSecOps, or cloud security environments
Upload your CV/resume or any other relevant file. Max. file size: 800 MB.