Apply Edge Start your job search

Chief Information Security Officer (CISO) (m/f/div.)

Keenfinity Group · Ovar, Aveiro, Portugal

Apply & track with Apply Edge

Company DescriptionThe Keenfinity Group delivers professional communication and security solutions that connect and protect people and assets. Following its carve-out from the Bosch Group in mid-2025, it operates as independent company within the portfolio of European investment firm Triton. The Group’s four Businesses include Audio delivering professional communication products of the globally renowned brands Bosch, Electro-Voice, Dynacord, RTS and Telex, IQSIGHT Video Systems, Radionix Intrusion & Access, and KEENFINITY Electronics Manufacturing Services (EMS). In fiscal year 2025, the group generated revenues of over €1 billion and employed approximately 4,000 people across more than 40 countries.Job DescriptionSecurity at Keenfinity is not a compliance exercise. It is a business-critical function that directly affects the valuation and saleability of four Business Units. Every BU exit involves a buyer who will scrutinise Keenfinity's security posture in due diligence. Any significant finding — unpatched vulnerabilities, weak IAM controls, an ISMS that doesn't survive audit — will either reduce the sale price or delay the transaction.As CISO, the role owns that risk. The role is the security authority across the entire Keenfinity IT organisation, reporting directly to the Director IT STG (Director IT STG). The role sets the security strategy, oversee the SIEM/SOC (the SOC Lead), IAM (the IAM Lead) and ISMS (the ISMS Manager) functions, and hold sign-off authority at every divestiture phase gate for security readiness. The role is also the person who sits across the table from buyer security teams in due diligence and can defend Keenfinity's security programme with credibility.This is a senior, high-visibility role in a PE-backed environment with a defined exit horizon. The right person thrives under that constraint — they see the exits as the forcing function to prioritise ruthlessly and deliver what matters.Key ResponsibilitiesSecurity strategy & governanceDefine and own Keenfinity's IT security strategy for the divestiture period: threat landscape assessment, security architecture principles, risk appetite definitionEstablish and maintain the IT security governance framework: policies, standards, exception management, risk register at the enterprise levelReport security risk status monthly to Director IT STG; produce quarterly security dashboards for Triton / CFO as requiredAdvise the Director IT STG on security implications of cost reduction initiatives — particularly vendor consolidations, license exits and cloud rightsizing decisions (FinOps Analyst interface)Divestiture security — phase gate authorityHold formal security sign-off authority at every BU divestiture phase gate: no gate advances without CISO confirmation that security separation is complete and defensibleDefine the security requirements checklist for each exit: network separation, IAM tenant split, data classification and handling, encryption standards, security tooling carve-outCoordinate with the Enterprise Architect to ensure security architecture is embedded in every separation blueprint from the start — not retrofitted at the endLead security due diligence preparation for each BU sale: produce security posture documentation, penetration test summaries, ISMS certification evidence, incident history and remediation recordsAct as the primary security contact for buyer due diligence teams; represent Keenfinity's security programme credibly in technical and executive-level conversationsSecurity operations oversightProvide strategic direction to the SOC Lead: SIEM platform strategy, detection coverage priorities, incident response protocols, escalation thresholdsProvide strategic direction to the IAM Lead: identity governance framework, privileged access management, directory architecture — especially relevant for AD/Azure AD separation per exitProvide strategic direction to the ISMS Manager: ISO 27001 programme priorities, ISMS scope management per BU exit, certification renewal strategyReview and approve major security architectural decisions; maintain the security architecture principles document as a living standardISMS & complianceEnsure Keenfinity's ISO 27001 ISMS remains certified and audit-ready throughout the divestiture period — including scope adjustments as each BU separatesOwn the security risk register at the enterprise level; chair the security risk review with the ISMS Manager and the Director IT STG quarterlyEnsure regulatory compliance across all active jurisdictions (GDPR, NIS2, relevant sector requirements); flag material compliance gaps to Director IT STGQualifications8+ years in IT security leadership roles; 3+ years at CISO or Head of Security levelDemonstrable experience with M&A security — either as the security lead on a carve-out, divestiture or acquisition, or as a senior security advisor in a transaction contextDeep expertise in at least two of: ISO 27001 / ISMS programme management, IAM architecture (Active Directory / Entra ID), SOC / SIEM operations, cloud security (Azure preferred)Proven ability to prepare and present security due diligence packages for corporate transactions; experience sitting in buyer due diligence conversations is a strong differentiatorExecutive-level communication: able to translate complex security risk into language that resonates with a CFO and PE investor — without dumbing it downFluent German and English — both languages will be used dailyBased in Ovar; regular travel to Straubing (security team), Munich HQ and BU locationsAdvantageousCISSP, CISM or equivalent senior security certificationExperience in industrial technology, manufacturing or multi-site operational environmentsFamiliarity with NIS2 requirements and their practical implications for an international mid-market companyBackground in PE-backed companies or experience working to PE investor reportingAdditional InformationKeenfinity benefits includes:⚖️ Flexible work conditions🔀 Hybrid work system🧑‍⚕️ Health insurance and medical office on site (nutrition, psychology, physiotherapy and general clinic)🍽️ Canteen🅿️ Free parking lot🏋️ Sports and health related activities (gym)📚 Training opportunities (i.e., technical training, foreign languages training) & certifications📈 Opportunities for career progression and continuous professional development🌐 Exchange with colleagues around the world💲 Access to great discounts in partnerships and products🌍All our positions are open to people with disabilityAt Keenfinity we don’t just build innovative solutions — we shape a smarter, more connected world through technology.We value different backgrounds, ideas, and experiences and we’re committed to growing, learning, and celebrating success as one team. Everyone is welcome here — we foster an environment where everyone is respected, valued, and encouraged to be their authentic self.Keenfinity is an equal opportunity employer, offering equal opportunities for all. We welcome applications from people with disabilities and can offer support, if needed. When everyone has a chance to contribute, we all do better.