Job
- Level
- Senior
- Job Field
- IT, Security
- Employment Type
- Full Time
- Contract Type
- Permanent employment
- Location
- Berlin
- Working Model
- Hybrid, Onsite
Job Summary
In this role, you will develop a comprehensive information security strategy and implement a robust ISMS. You will define security requirements for cloud architecture and communicate risks clearly and effectively.
Job Technologies
Your role in the team
- At Shiftmove, we are developing the next generation of connected mobility products, enabling companies to make informed, data-driven decisions. Our goal is to make complex processes intuitive and efficient, creating real added value from data for thousands of B2B customers across Europe and beyond.
- As the (Senior) Information Security Officer, you will be the primary architect of our security governance and risk management structure. You will operate as an independent voice, transitioning our security posture from a supporting function to a strategic pillar. This is a "ground-up" build where you will define the security DNA of a scaling SaaS group, ensuring we remain a trusted partner for global enterprise customers in an increasingly regulated landscape (NIS2, ISO 27001).
- Develop and implement a group-wide information security and compliance strategy aligned with ISO 27001 and upcoming regulatory requirements like NIS2.
- Build and operate a robust Information Security Management System (ISMS), starting with a structured gap analysis and a prioritized delivery roadmap.
- Define clear security requirements across Product, Engineering, and IT, ensuring implementation through accountable ownership and clear documentation.
- Identify, assess, and clearly communicate security risks, enabling leadership to make pragmatic, risk-based decisions aligned with business priorities.
- Act as the primary expert and main point of contact for security topics during enterprise customer discussions, external audits, and due diligence processes.
- Collaborate closely with IT Ops and Engineering to embed "Security by Design" into modern cloud (AWS and Azure) and product architectures.
- Serve as a solution-oriented advisor to the board and senior management, translating complex technical risks into clear business impact.
This text has been machine translated. Show original
Our expectations of you
Qualifications
- Deep understanding of frameworks such as NIS2, DORA, or similar compliance regimes, with the ability to translate legal text into operational reality.
- Ability to combine domain expertise with big-picture thinking to anticipate trends and identify strategic opportunities for the group.
- Exceptional communication skills with the ability to influence senior leadership and cross-functional teams without formal authority.
- A proven track record of driving high-quality results by setting clear priorities, removing obstacles, and following through on complex roadmaps.
- A risk-based approach to security that balances high-standard regulatory requirements with business agility and resource constraints.
- English C1. German is a plus given our DACH footprint.
Experience
- Several years of experience in a security or compliance role, specifically building or significantly improving an ISMS (ISO 27001) in a SaaS or tech-driven environment.
- Experience in cloud security, infrastructure, or DevSecOps, allowing you to define requirements that are both secure and technically feasible.
This text has been machine translated. Show original
What we offer
- We solve complex, everyday problems for thousands of businesses across Europe, replacing manual, fragmented fleet operations with data-driven, intelligent solutions people truly rely on.
- We're a profitable, PE-backed scale-up with strong fundamentals and a clear ambition (1M vehicles by 2027), offering a rare mix of stability, ownership, and pace.
- With 40+ nationalities, English as our working language, and teams across Europe, collaboration and shared ownership are part of how we work every day.
- We invest heavily in product, data, and people - giving you the space to take responsibility, contribute ideas, challenge others, and do your best work while helping shape how we scale.
This text has been machine translated. Show original
Benefits
Health, Fitness & Fun
Topics that you deal with on the job
Job Locations
This is your employer
Shiftmove
Shiftmove GmbH, founded in 2023 in Berlin, provides a comprehensive SaaS platform for fleet management and employee mobility. The company emerged from the merger of providers Avrios and Vimcar and serves numerous B2B clients across Europe. With innovative technologies and connected data, Shiftmove aims to enhance efficiency in the mobility sector.
Description
- Company Type
- Startup
- Working Model
- Hybrid, Onsite
- Industry
- Internet, IT, Telecommunication