Impress employers and recruiters.
Choose from hundreds of resume examples.

Impress employers and recruiters.
Choose from hundreds of resume examples.
Tailor your resume to this IT Security & Compliance Lead | HealthTech (w/m/d) role.
Rezi rewrites your resume against Right Search's job description. Free.

Tailor your resume to this IT Security & Compliance Lead | HealthTech (w/m/d) role.
Rezi rewrites your resume against Right Search's job description. Free.
Don't guess if your resume is good enough.
See how it scores against the IT Security & Compliance Lead | HealthTech (w/m/d) posting at Right Search — free, in seconds.

Don't guess if your resume is good enough.
See how it scores against the IT Security & Compliance Lead | HealthTech (w/m/d) posting at Right Search — free, in seconds.
About the Role
You will build and own the complete security architecture in the cloud, not just write policies. This role involves hands-on work with Terraform, AWS, and GCP, leading to ISO 27001 and BSI-C5 audits. It offers a 32-hour work week option, equity, and direct influence on the founders.
Responsibilities
- Own security & compliance end-to-end: Cloud, product, and internal IT.
- Harden and operate AWS/GCP environments: IAM, network, encryption, logging, monitoring, detection.
- Embed DevSecOps in the SDLC: Threat Modeling, Vulnerability Management, Secure Code Reviews.
- Lead ISO 27001 and BSI-C5 certifications including audits, evidence, and risk management.
- Coordinate pen tests, security reviews, and vendor assessments.
- Define and maintain internal IT baselines: Identity, MDM, device policies, on/off-boarding.
- Provide pragmatic security guidance and push back on architectural decisions.
Requirements
- Minimum 5 years of hands-on experience in Cloud Security (AWS or GCP) including Terraform.
- Full audit ownership of ISO 27001 / BSI-C5 including successful certification.
- Experience with DevSecOps, Secure SDLC, Threat Modeling, and Vulnerability Management.
- Fluent German and English skills (C1).
- Bachelor's degree or equivalent qualification.
- Demonstrable collaboration with engineering teams in small, async-first environments.
- Must be willing to work on-site in Berlin.
Skills
- Cloud Security
- AWS
- GCP
- Terraform
- DevSecOps
- SDLC
- Threat Modeling
- Vulnerability Management
- ISO 27001
- BSI-C5
- IAM
- Network Security
- Encryption
- Logging
- Monitoring
- Detection
- Identity Management
- MDM
- Device Policies
Location
- Berlin Mitte
Work Type
- Hybrid
- Full-time
- 32-hour option
Experience Level
- Minimum 5 years
Education Level
- Bachelor's degree or equivalent qualification
Salary/Compensations
- €70,000 – €100,000
Benefits
- 28 days of vacation
- Company car for private use
- JobRad leasing
- EGYM Wellpass
- Company pension plan
- Team events
- Inclusive work environment
- Virtual participation (VESOP)
About the Company
- A Berlin-based HealthTech startup with around ten employees.
- Develops AI-powered software for automating psychotherapeutic documentation.
- The platform relieves therapists of administrative tasks and improves patient care.
- Positions itself as an innovative provider at the intersection of Artificial Intelligence, Health, and Software Technology.