Senior Manager Information Security
Job type:Permanent
Town/City:Frankfurt
Region:Hessen
Sector:Cyber Security
Client Company Type:In-House
Job ref:9493
Post Date:May 21, 2026
Meet Our Recruiter
Josh Mooney
Managing Consultant - Cyber Security
About the Role
Senior Manager Information Security - Second Line of Defence
Location: Frankfurt / Hybrid
Our client is seeking a Senior Manager Information Security to support security governance, risk oversight and regulatory compliance activities within a highly regulated environment. This role sits within the Second Line of Defence and focuses on strengthening information security frameworks, controls and oversight processes across the organisation.
Key Responsibilities:
- Support and oversee information security governance and risk management activities.
- Provide independent oversight and challenge of security controls and risk practices.
- Maintain and enhance security policies, standards and governance frameworks.
- Support risk assessments, control reviews and remediation activities.
- Collaborate with technology, risk, audit and compliance stakeholders.
- Monitor regulatory developments, emerging threats and security-related risks.
- Prepare reporting and presentations for senior stakeholders and governance committees.
- Contribute to operational resilience and third-party security oversight initiatives.
Your Profile:
- Extensive experience within information security, cyber risk or technology risk environments.
- Strong background in security governance, risk oversight or Second Line of Defence functions.
- Understanding of regulatory frameworks and security standards within regulated environments.
- Knowledge of information security controls, operational resilience and cloud security governance.
- Strong stakeholder management and communication skills.
- Relevant certifications such as CISSP, CISM or CRISC would be advantageous.
- Fluent German and English language skills.
What’s on Offer?
- Senior-level role within a complex and regulated environment.
- Exposure to security governance and risk management initiatives.
- Flexible hybrid working model.
- Long-term development and progression opportunities.