InterviewHack.ai
Start free
Jobs / Orbem

Principal of Information Security (f/m/d)

Orbem·Munichsenior

In short

  • →Líder técnico y estratégico de seguridad de la información en etapa clave de estabilización post-certificación ISO 27001.
  • →Responsable de todo el ciclo de seguridad: estrategia, operaciones, auditorías, gestión de riesgos y respuesta a incidentes.
  • →Oportunidad única para construir y moldear una función de seguridad desde cero con autonomía y alto impacto.

Fluent English required for external communication and documentation.

Apply on company site ↗Share on WhatsApp

In ~1 minute you get: who interviews you, the likely questions answered from your CV, and your CV tailored to this job. Free, no card.

🎧Land the interview? Bring the copilot. Our free extension listens to the live interview and flashes 3-4-word anchors from your resume and prep — glance, connect, talk. Get the extension →

What they ask for

  • ✓Experiencia sólida en gestión de seguridad de la información y cumplimiento (ISO 27001)
  • ✓Capacidad para liderar auditorías y re-auditorías de seguridad
  • ✓Habilidades avanzadas en gestión de riesgos y documentación de controles
  • ✓Experiencia en liderazgo de incidentes como comandante de respuesta
  • ✓Capacidad para escribir políticas, comunicaciones y decisiones claras
  • ✓Habilidades de colaboración con equipos técnicos y de negocio para integrar seguridad en procesos

Don't tick every box? That's normal — your free dossier shows your gaps and how to cover them in the interview.

ISO 27001ISMSRisk RegisterVendor Risk ManagementIncident ResponseSecurity PoliciesCompliance Management PlatformPenetration TestingManaged Security Service ProviAudit Preparation Support

Who should you write to at Orbem?

Your free dossier identifies the people who'd interview you — their background, what they value, and how to reach out so you stand out before applying.

We see the potential inside everything and everyone. Starting with you. Orbem uses AI to industrialize MRI, delivering non-invasive insight into everything from fruits to eggs to the human body. We are transforming what is becoming the world's largest biological dataset into actionable intelligence to reduce waste, increase quality, and accelerate the shift toward a more sustainable and healthier future. Headquartered and founded in Munich, Germany, with an office now in Houston, Texas, our world-class team is scaling inside-out technology to transform how humanity sees and understands biological matter. Help us see what's possible. Join us. Your Role You will own Orbem’s Information Security function end-to-end at a pivotal moment. Orbem achieved ISO 27001 certification in December 2025. We are now entering an active stabilization phase: controls are established, our external provider stack is being restructured, and a re-audit sits on the horizon. You will inherit this reality — and the authority to shape it. This is a role for a hands-on, senior security practitioner who wants to shape a security function, not just run one — someone who thrives in ambiguity, makes high-stakes strategic calls with incomplete information, and can do the operational work themselves while orchestrating a deliberate external provider stack. Although we are looking for a strategist, you will also be required to support day-to-day security operations. Your Day-to-Day Strategy & Program Ownership (≈ 40%) Lead our approach to the upcoming ISO 27001 re-audit. Assess the situation, make the strategic recommendation, and own the execution. Set and maintain Orbem’s information security strategy aligned with our stage, our customers (enterprise food today, healthcare in our strategic line of sight), and our risk appetite. Own the information security risk register end-to-end: build it where needed, maintain it, and run the risk review with key leadership peers. Represent Orbem externally with auditors, enterprise customer security teams, and regulators in the CISO capacity. Advise the leadership team on information security risk in product, go-to-market, and expansion decisions, including healthcare readiness planning. Hands-On Execution (≈ 40%) Own and continuously improve key operational security processes — including how we assess and manage risk across our vendor and supplier base, how security is embedded in key business workflows, and how we ensure controls translate from policy into practice. Bring policies and controls to life. Identify which controls are most material, which to operationalize further, and which to consolidate — in partnership with the teams who will execute them. Own the ISMS governance structure — ensuring that control reviews, evidence collection, management reviews, and internal audits happen to a high standard, whether through direct execution, external support, or a combination. Lead incident response as incident commander for security-relevant events, with the Security Engineering team as technical co-lead. Write clear policies, clear communications, clear decisions. You will author or co-author most of the security-related writing that leaves this function. Orchestrating the External Stack & Lateral Leadership (≈ 20%) Manage a deliberate external provider stack. You will not build everything in-house. You will orchestrate a set of external partners — examples include audit preparation support, data protection advisory services, a managed security service provider, penetration testing, and an ISMS and compliance management platform. For each, you contribute to the build-vs-buy decision and own the ongoing relationship. Collaborate closely with the Security Engineering team through a close working relationship that connects governance and technical security. Co-build a Security Ambassadors network with the Security Engineering team — empowered technical leads across business teams who champion security in their own context.

Looking for something similar?

Leave your email and we'll alert you when matching jobs appear.

Don't apply unprepared

We research who's interviewing you, tailor your CV and rehearse you live — first one free.

InterviewHack.ai

Prepare for the exact interview: who's interviewing you, a tailored CV, and a real coach.

Product

JobsCompanies hiringFree ATS checkerInterview-English checkSalary checkLATAM salary reportFree coursesBlogTailored CVSpoken practiceIt's free

Remote jobs

ReactPythonFull-StackLATAMArgentinaMexicoSee all →

Prepare

Spoken practiceFrontendBackendAI EngineerBy companySell with your CV

Company

For employersAboutContactPrivacyTerms

© 2026 InterviewHack.ai · Your CV is yours. Never used to train anything. · A product of IA-PTY

Similar open roles

Expert Hardware Test Engineer (f/m/d)

Orbem · Munich

→