Head of Cyber Security (f/m/d)
Solaris is a tech company with a full German banking license. Our Banking-as-a-Service platform enables businesses to offer their own financial products. With our straightforward APIs, our partners can access and integrate a wide range of solutions such as digital banking, payments, cards, identification and lending services. As a market leader we are driven by bringing transformational change to the financial services industry.
We love what we do and we love our team. We are 500+ people from over 70 nationalities - a unique blend of techies, fintech enthusiasts, bankers and entrepreneurs from various industries. Our routines are built around genuinely valuing and exchanging different perspectives as well as actively sharing knowledge as we drive our business as a team. We believe and invest in personal growth.
The Head of Cyber Security plays a critical role in strengthening Solaris’ cybersecurity posture. Reporting to the Director of Technology, you will lead and manage the full first line of cyber defence across the organisation and serve as the trusted face of Cyber Security - bringing clear expertise and credibility to every cyber security conversation with internal and external stakeholders.
Your Role
- Strategic Leadership:
- Develop and execute a comprehensive cybersecurity strategy aligned with the overall business objectives and regulatory requirements.
- Drive a culture of security awareness and accountability throughout the organization.
- Team Management:
- Lead, mentor, and develop a high-performing and semi-autonomous cybersecurity team consisting of 10 team members covering areas like: Offensive Security, Product Security, Cyber Defense Center, Platform & Operations Security, Identity & Access Management
- Provide guidance, support, and training to enhance the skills and capabilities of security professionals within the organization.
- Risk Management:
- Identify, assess, and prioritize cybersecurity risks, vulnerabilities, and threats.
- Implement robust risk mitigation measures to safeguard all digital assets, products, services, customer data, and infrastructure.
- Governance and Compliance:
- Ensure compliance with relevant cybersecurity laws, regulations, and industry standards, namely DORA, PCI DSS, SWIFT CSP and ISO 27001.
- Establish and maintain effective governance frameworks, guidelines, and procedures to support continuous improvement in cybersecurity practices, supported in the Information Security policies and business
requirements.
- Security Operations:
- Oversee the operation and optimization of security technologies, tools, and processes on Preventive Security, Offensive Security, Product Security, Cyber Defense Center, Projects & Architecture and Support and Operations in an effective way.
- Monitor the security posture of networks, systems and applications through proactive threat intelligence and security monitoring.
- Security Incident Response:
- Lead the security incident response team in managing cybersecurity incidents and breaches promptly and efficiently.
- Develop and maintain incident response plans, playbooks, and communication protocols to minimize the impact of security incidents.
- Collaboration and Communication:
- Foster strong partnerships and collaboration with internal stakeholders, including engineering, IT, risk management, product, compliance, legal, and other relevant business units.
- Communicate cybersecurity risks, initiatives, and outcomes effectively to executive leadership and board members where needed.
We'd love to see
Depending on your level of experience, your responsibilities and scope of role will range. We don’t care much about fancy titles, but rather about real personal and professional development, as laid out in our learning framework. Let’s figure together out how you can contribute to our team.
- Bachelor’s degree in Computer Science, Information Security, Information Technology, Engineering, or a related field.
- Extensive, hands-on cyber security leadership experience, including a proven track record leading first-line cyber security teams, and implementing technical controls in regulated environments.
- Demonstrated success designing and executing cyber security strategies and programmes in complex, regulated environments.
- Strong knowledge of recognised frameworks and regulatory standards (e.g., NIST, ISO 27001, DORA, PCI DSS, SWIFT CSP, MaRisk).
- Business-fluent English (written and spoken); German is a plus.
- Strong analytical and problem-solving skills, with sound judgement under pressure.
- Proactive, ownership-driven, and a collaborative partner to Technology and the wider business.
- Structured and hands-on working style; comfortable operating both strategically and operationally.
Working Model:
- If you’re working from Berlin, we’d be happy to have you in the office two days per week.
- If you’re based elsewhere in Germany, we ask that you travel to Berlin for a few days each month for stakeholder collaboration, and other important onsite touchpoints. Monthly trips are reimbursed in line with our travel policy.
Benefits
- Home office budget.
- Learning & development budget of €1000 per year and a transparent growth framework to support your career goals.
- Competitive salary and a variable remuneration program.
- Monthly meal allowance.
- Deutschland ticket subsidy.
- 28 vacation days, increasing by 2 days after 2 years and 3 days after 3 years with Solaris.
- Opportunity to work abroad for up to 12 weeks per year.
While job ads usually paint an ideal picture of a candidate, studies show that most applicants meet an average of 60% of the criteria. Unfortunately, many promising candidates tend to apply only if they meet all the criteria. So if you think you have what it takes, but don't necessarily meet every single item in the job description, please contact us anyway. We'd love to talk with you and find out if you might be a good fit for us.
At Solaris, we are committed to nurturing an inclusive environment, where all Solarians feel valued, respected and supported. We are dedicated to building a diverse workforce that reflects the diversity of our communities. We are committed to equal employment opportunity regardless of color, ethnicity, religion, sex, origin, disability, marital status, citizenship, or gender identity. We are proud to be an equal opportunity workplace. If you have a disability or special need that requires accommodation, please let us know.
Information on data processing:
DE: https://www.solarisgroup.com/gdpr_notice_de
EN: https://www.solarisgroup.com/gdpr_notice_en
To all recruitment agencies: Solaris does not accept unsolicited agency resumes. Please do not forward resumes to our jobs alias, Solaris employees or any other venture in our ecosystem. Solaris is not responsible for any fees related to unsolicited resumes.
Create a Job Alert
Interested in building your career at Solaris? Get future opportunities sent straight to your email.
Apply for this job
*
indicates a required field
