
11 - 50 employees
đź Consulting
đď¸ Defense
đŚ Logistics
Consulting ⢠Defense ⢠Logistics
Orcrist Technologies GmbH is a company that builds intelligence-fusion and decision-support solutions for complex environments, combining advanced analytics and AI to help organizations turn uncertainty into strategic advantage. The firm emphasizes enterprise and government-focused offerings, positioning itself as a provider of AI-driven operational intelligence and precision decision tools for public sector and large-organization use cases.
đĽ 18 minutes ago
đŠđŞ Germany â Remote
â° Full Time
đĄ Mid-level
đ Senior
đŽââď¸ Cybersecurity / Security Engineer
đť Ghost score 12%
đŁď¸đŠđŞ German Required
Improve your chances of getting an interview by checking your resume score before you apply.

11 - 50 employees
đź Consulting
đď¸ Defense
đŚ Logistics
Consulting ⢠Defense ⢠Logistics
Orcrist Technologies GmbH is a company that builds intelligence-fusion and decision-support solutions for complex environments, combining advanced analytics and AI to help organizations turn uncertainty into strategic advantage. The firm emphasizes enterprise and government-focused offerings, positioning itself as a provider of AI-driven operational intelligence and precision decision tools for public sector and large-organization use cases.
⢠Own the Vektor Group's information security strategy, programme, and posture from strategy through hands-on execution ⢠Build and operate the group-wide ISMS following BSI standards 200-1/200-2/200-3, including structure analysis, protection needs assessment, modelling, and risk analysis ⢠Create and maintain the group-level security policy framework and processes, coordinating company-specific additions ⢠Prepare and accompany ISO 27001 certification, conduct internal audits, and work with external auditors ⢠Implement NIS-2 obligations, including reporting processes, evidence management, and corrective action tracking ⢠Manage technical and organizational risk and report to executive management ⢠Steer external consultants and service providers within the security programme ⢠Build and run security awareness training and sensitization programmes ⢠Own incident response planning and coordinate incidents with IT, Legal, and leadership ⢠Assess third-party and vendor risk and conduct security assessments for new tools and partners ⢠Collaborate with the Director of Internal IT on access governance, endpoint security, and identity, and with platform engineering on product security ⢠Support sales and customer trust processes, including security questionnaires, due diligence, and customer audits ⢠Track regulatory requirements such as the EU AI Act and Cyber Resilience Act and derive required actions
⢠Several years of experience as an ISB or in comparable responsibility for information security ⢠Proven practice with BSI IT-Grundschutz: BSI standards 200-x and the Grundschutz-Kompendium, ideally including a completed certification procedure ⢠Experience building or leading ISO 27001 programmes, from gap analysis to audit readiness ⢠Solid risk management: assess, prioritize, and communicate risk clearly to technical and non-technical audiences ⢠Willingness to work hands-on during the build-up phase ⢠Confident interaction with executive management, auditors, and customers ⢠German at C1 or above ⢠English at B2 or above ⢠Nice to have: IT-Grundschutz-Praktiker/-Berater, ISO 27001 Lead Implementer or Lead Auditor, CISSP, or CISM certifications ⢠Nice to have: experience with security governance across multiple legal entities or jurisdictions ⢠Nice to have: experience in regulated environments such as defence, government, or critical infrastructure; familiarity with VS-NfD, Geheimschutz, or AQAP ⢠Nice to have: practical NIS-2 implementation experience ⢠Nice to have: experience with sales-adjacent security processes, pre-sales, and customer audits
⢠International team with colleagues across Germany and other locations ⢠Startup environment with real ownership, flat hierarchies, and fast decisions ⢠Competitive compensation aligned with experience and responsibility ⢠Individual learning and growth opportunities beyond your role
Apply NowđĽ 2 hours ago
IT Security Architect defining IAM, Active Directory, Entra ID, and on-prem security standards. Advising technical teams at sports nutrition company The Quality Group.
đŠđŞ Germany â Remote
â° Full Time
đĄ Mid-level
đ Senior
đŽââď¸ Cybersecurity / Security Engineer
đŁď¸đŠđŞ German Required
đĽ 3 hours ago
IT-Security-Architekt fßr IAM, Active Directory und On-Prem-Infrastruktur bei Sporternährungsanbieter The Quality Group. Entwicklung von Sicherheitsstandards und Beratung technischer Teams.
đŠđŞ Germany â Remote
â° Full Time
đĄ Mid-level
đ Senior
đŽââď¸ Cybersecurity / Security Engineer
đŁď¸đŠđŞ German Required
đ 3 days ago
IT-Security Engineer fĂźr PKI- und HSM-Betrieb bei noris network, einem deutschen Cloud- und Datacenter-Anbieter. Planung hochverfĂźgbarer Infrastrukturen, Kundenberatung und ITIL-Changes.
đŠđŞ Germany â Remote
â° Full Time
đĄ Mid-level
đ Senior
đŽââď¸ Cybersecurity / Security Engineer
đŁď¸đŠđŞ German Required
Linux
đ 3 days ago
Senior AppSec Engineer building vivenuâs security program for global event-ticketing technology. Securing web, APIs, cloud infrastructure, Kubernetes, and CI/CD pipelines.
AWS
Azure
Cloud
Cyber Security
Google Cloud Platform
Kubernetes
Terraform
TypeScript
Go
đ 3 days ago
Security GRC Specialist strengthening controls, risk management, and SOC 2/ISO 27001 compliance for SAP Fioneer's financial-services software. Supporting audits, remediation, and customer security reviews.
đŠđŞ Germany â Remote
â° Full Time
đĄ Mid-level
đ Senior
đŽââď¸ Cybersecurity / Security Engineer
đŁď¸đŠđŞ German Required
Cloud