Your mission
This role is about owning and driving compliance and information security across the company and product. You’ll define, document, and continuously improve policies, processes, and software requirements to meet standards like ISO 27001, GDPR, and medical device regulations (e.g., ISO 13485, IEC 62304, DiGAV). Working closely with developers, you’ll translate regulatory needs into clear technical requirements, guide implementation, and lead cross-functional projects that strengthen security, privacy, and quality while enabling the business to move fast.
The ideal candidate has hands-on ISO 27001 experience with personal compliance responsibility, strong documentation and project management skills, and is fluent in German and English—plus a passion for impact, self-improvement, and teamwork in a Berlin-based health/tech environment.
Key Responsibilities
The ideal candidate has hands-on ISO 27001 experience with personal compliance responsibility, strong documentation and project management skills, and is fluent in German and English—plus a passion for impact, self-improvement, and teamwork in a Berlin-based health/tech environment.
Key Responsibilities
- Define, document, and improve policies / processes / software requirements to fulfill compliance standards, especially on information security / data security / data privacy / medical requirements (ISO 27001, GDPR, ISO 13485, IEC 62304, DiGAV etc.)
- Ensure compliance and continuously improve in the team and business / development processes
- Drive technical projects involving new features for our product and business processes to ensure the success of our organisation
- Work closely with developers to translate software requirements into actionable technical requirements during implementation, and guide them during the full development process
- Stay up-to-date with industry trends and best practices related to compliance, data security, data privacy, and medical device regulations.