Information Security Officer (m/f/d) at Abcfinance Gmbh
berlin, Berlin, Germany -
Full Time


Start Date

Immediate

Expiry Date

27 Dec, 26

Salary

55000.0

Posted On

28 Sep, 26

Experience

3 year(s) or above

Remote Job

Yes

Telecommute

Yes

Sponsor Visa

No

Skills

Industry

Information Technology & Services

Description

Future-oriented tasks as an Information Security Officer (m/f/d) at abcfinance

  • Manage our ISMS. Develop it further according to ISO/IEC 27001 and ensure that DORA is practiced in everyday life.
  • Assess ICT risks and derive decisions. Conduct assessments of protection requirements and risk analyses, manage the risk register, and verify the effectiveness of the measures.
  • Set the rules. Write safety guidelines and standards in a way that is understandable and applicable.
  • Accompany audits from start to finish. This applies to both internal and external audits: plan them, evaluate the findings, and ensure, together with relevant departments and IT, that the necessary measures are implemented.
  • In the event of security incidents, assess the situation professionally, manage the root cause analysis, and ensure that we learn from them.
  • Further develop meaningful ISMS and KRI reporting. Together with our AI Engineer, you will consider how AI agents can take over tasks within the ISMS, such as controls, evidence, and reporting.
  • Work closely with IT, SOC, BCM/ICS, data protection and compliance, and bring the topic of security into the organization, for example through awareness formats.

Great benefits at abcfinance

  • Flexible working hours and hybrid working: Whether in the office or working remotely for a few days - with flexible scheduling of working hours and our workation concept, you can use your time resources in the way that best suits you.
  • Continuous learning : Expand your personal and professional skills with regular development opportunities. Your professional development is part of our company strategy.
  • Rewarding additional benefits : In addition to an attractive salary, company pension scheme and capital-forming benefits, you can expect further useful advantages such as a Germany ticket, a job bike offer and a fitness and wellness offer with EGYM Wellpass.

Your compelling profile

  • You have a degree in IT, information security, business informatics or a comparable subject, or you have acquired sound expertise in another way, such as through professional experience and certifications.
  • You have several years of experience in information security, IT security, IT risk management or IT auditing.
  • You have a solid understanding of ISO 27001. Knowledge of DORA and the supervisory requirements is a definite plus.
  • You have experience in realistically assessing risks and deriving measures that are both effective and feasible.
  • You are able to explain complex technical topics in a way that allows management and specialist departments to understand and act accordingly.
  • You impress with your willingness to take responsibility and address even uncomfortable topics.
  • You bring experience in working with supervisory authorities, especially BaFin and Bundesbank, and ideally possess certifications such as CISSP, CISM, CISA or ISO 27001 Lead Auditor.

abcfinance – the financial services provider for SMEs . For over 45 years , the abcfinance Group has been a partner to German SMEs, providing innovative financing solutions that ensure sustainable growth and reliable stability. Part of this group is abcbank, a refinancing provider specializing in leasing


  • and factoring transactions. To offer our customers the best possible service, we rely on a team of over 730 employees at 14 locations across Germany, who contribute their expertise to companies from a wide range of industries.
Responsibilities

Future-oriented tasks as an Information Security Officer (m/f/d) at abcfinance

  • Manage our ISMS. Develop it further according to ISO/IEC 27001 and ensure that DORA is practiced in everyday life.
  • Assess ICT risks and derive decisions. Conduct assessments of protection requirements and risk analyses, manage the risk register, and verify the effectiveness of the measures.
  • Set the rules. Write safety guidelines and standards in a way that is understandable and applicable.
  • Accompany audits from start to finish. This applies to both internal and external audits: plan them, evaluate the findings, and ensure, together with relevant departments and IT, that the necessary measures are implemented.
  • In the event of security incidents, assess the situation professionally, manage the root cause analysis, and ensure that we learn from them.
  • Further develop meaningful ISMS and KRI reporting. Together with our AI Engineer, you will consider how AI agents can take over tasks within the ISMS, such as controls, evidence, and reporting.
  • Work closely with IT, SOC, BCM/ICS, data protection and compliance, and bring the topic of security into the organization, for example through awareness formats.

Great benefits at abcfinance

  • Flexible working hours and hybrid working: Whether in the office or working remotely for a few days - with flexible scheduling of working hours and our workation concept, you can use your time resources in the way that best suits you.
  • Continuous learning : Expand your personal and professional skills with regular development opportunities. Your professional development is part of our company strategy.
  • Rewarding additional benefits : In addition to an attractive salary, company pension scheme and capital-forming benefits, you can expect further useful advantages such as a Germany ticket, a job bike offer and a fitness and wellness offer with EGYM Wellpass.

Your compelling profile

  • You have a degree in IT, information security, business informatics or a comparable subject, or you have acquired sound expertise in another way, such as through professional experience and certifications.
  • You have several years of experience in information security, IT security, IT risk management or IT auditing.
  • You have a solid understanding of ISO 27001. Knowledge of DORA and the supervisory requirements is a definite plus.
  • You have experience in realistically assessing risks and deriving measures that are both effective and feasible.
  • You are able to explain complex technical topics in a way that allows management and specialist departments to understand and act accordingly.
  • You impress with your willingness to take responsibility and address even uncomfortable topics.
  • You bring experience in working with supervisory authorities, especially BaFin and Bundesbank, and ideally possess certifications such as CISSP, CISM, CISA or ISO 27001 Lead Auditor.

abcfinance – the financial services provider for SMEs . For over 45 years , the abcfinance Group has been a partner to German SMEs, providing innovative financing solutions that ensure sustainable growth and reliable stability. Part of this group is abcbank, a refinancing provider specializing in leasing


  • and factoring transactions. To offer our customers the best possible service, we rely on a team of over 730 employees at 14 locations across Germany, who contribute their expertise to companies from a wide range of industries.
Loading...