Stellendetails zu: Information Security Officer - GRC / Information Risk (m/f/d)
Information Security Officer - GRC / Information Risk (m/f/d)
Kopfbereich
Besondere Merkmale
Arbeitsort
Frankfurt am MainAnstellungsart
VollzeitBefristung
unbefristetBeginn
ab sofortBerufsbezeichnung
- Informationssicherheitsbeauftragte/r
Stellenbeschreibung
At Infront, we are committed to fostering an inclusive workplace, recognizing our diverse team as one of our most valuable assets.
For 25 years, Infront has been empowering financial market experts to make faster, smarter, compliant decisions. Over time, we have expanded our foundation by bringing together companies with more than 75 years of combined market experience and trust.
Our strength lies in market data, delivering reliable, accurate information through a powerful suite of tools, spanning Data Intelligence, Wealth Management solutions, and Trading & Investor solutions, that our users depend on every day. Today, we are one of Europe’s leading providers of market data and financial software, helping professionals navigate markets with confidence and speed.
About the Role
Role overview
As a key member of our team, you will support the Chief Information Security Officer by executing day-to-day activities across governance, risk and compliance, and technical security domains. The role helps ensure consistent security controls, reliable evidence for audits and customer questionnaires, and coordination with IT Operations, DevOps, and product teams.
Key responsibilities
- Maintain and curate security evidence in SharePoint (policies, procedures, standards, control evidence, audit artefacts).
- Support customer due diligence questionnaires.
- Assist with information security risk identification and assessment activities, including capturing risks, controls, and actions in the relevant register.
- Support policy lifecycle tasks (drafting updates, collecting feedback, publishing, tracking acknowledgements).
- Coordinate with technical teams to collect artefacts needed as evidence, and support vulnerability management, penetration testing logistics, and incident management documentation as needed.
Working arrangements
Standard office-hours schedule (no shift work). Hybrid working model. The role is not an on-call position. Occasional flexibility may be required for time-sensitive assurance requests or major incidents.
Who you are
Experience and qualifications
- 5+ years in information security, IT risk, compliance, or a related assurance role.
- Working knowledge of security frameworks (ISO/IEC 27001/27002, BSI Grundschutz, NIST CSF or similar).
- Familiarity with regulated environments and operational resilience expectations (DORA awareness).
- Comfortable working with Microsoft 365 (Teams, SharePoint) and issue tracking (Jira).
- Basic understanding of cloud and on-prem security controls (identity, network, endpoint, logging).
- Bachelor’s degree or equivalent experience.
- Certifications such as ISACA CRISC and ISO 27001 Lead Implementer are desirable.
- English business fluent. German language skills are an advantage.
Soft skills and ways of working
- Strong communication skills, with the ability to engage confidently with senior stakeholders.
- A pragmatic and resilient mindset, able to stay effective in a lean, evolving environment with tight timelines, competing demands, and changing priorities.
- Sound judgment and common sense, including the confidence to challenge assumptions, spot gaps, and focus on what is genuinely important.
- Comfort working with incomplete inputs or imperfect processes, combined with the motivation to improve them.
- Openness to modern tools and ways of working, including a practical attitude toward AI‑enabled productivity, while applying appropriate critical thinking and oversight.
- Experience in environments such as fintech, software, technology, or broader financial services is helpful.
Our offer
**Health & wellness: **Benefit from wellbeing initiatives tailored to local needs, including access to an employee assistance programme that provides confidential support to employees and their families.
**Holiday:** Enjoy competitive holiday entitlement aligned with local markets, so you can rest and recharge.
**Pension:** Plan for your long-term financial wellbeing through our pension scheme, supported by employer contributions.
**Remote work:** Enjoy the opportunity to work two days a week from home, with flexible working hours where possible. You may also request to work up to four weeks per year from a different location.
**Learning & development:** Support your career progression with access to learning resources, ongoing conversations with your manager, and opportunities to share the knowledge you gain with your team.
**Culture & impact: **Be part of an international team with a startup mindset and play a key role in making a meaningful impact.
**Our offices: **Work from Europe’s leading financial centres and be at the heart of where finance happens.
Additional notes
All candidates selected for employment are subject to Pre-Employment Screening. This process includes professional reference and background checks conducted by our third-party partner, ZINC. These screenings are part of our commitment to ensuring a secure, compliant, and trustworthy workplace.
We kindly ask that you submit your CV in English.
Arbeitsorte
Unternehmensdarstellung: Infront Financial Technology GmbH
Infront Financial Technology GmbH
Infront and vwd merged in July 2019 to form a leading European full-service provider for financial market solutions.
Infront offers a powerful combination of global market data, news, analysis and trading tools.
vwd provides financial information and IT solutions for the investment industry.
Together, the two companies are a strong partner for their customers, with a comprehensive and holistic range of solutions that is unique in Europe.
In diesem Dokument befinden sich aus Sicherheitsgründen keine Kontaktdaten des Arbeitgebers. Wenn Sie diese sehen möchten, lösen Sie bitte die Sicherheitsfrage und laden Sie das PDF erneut.