Information Security Officer (m/f/d)

Our Team: How We Enrich Everyday Life

 

At Bauer Media Group, we create content and services that matter to millions of people across Europe. Our Gaming & Competitions business delivers engaging, trusted and innovative experiences for consumers across multiple markets.

As Information Security Officer – Gaming & Competitions, you will play a critical role in protecting these services, ensuring that security, compliance and customer trust are embedded into everything we do. Working within our Group Information & Cyber Security function, you will partner closely with business, product and technology teams to enable secure growth while supporting regulatory and certification requirements.

 

The Difference You Will Make

 

This role is the trusted information security partner for Bauer Media's Gaming & Competitions business. You will establish, operate and continuously improve the Information Security Management System (ISMS), ensuring alignment with Bauer Media Group's security framework and international standards such as ISO/IEC 27001.

By combining strategic governance with hands-on security expertise, you will help ensure that our gaming and competition platforms remain secure, compliant and resilient, while enabling innovation and business growth.

 

Your Role

 

Key Responsibilities

Responsibilities include, but are not limited to:

  • Own and lead the Information Security programme for the Gaming & Competitions area.
  • Establish, maintain and continuously improve the Gaming & Competitions ISMS in accordance with Group policies, standards and ISO/IEC 27001.
  • Lead ISO 27001 certification, surveillance and recertification activities.
  • Monitor and interpret applicable legal, regulatory, contractual and certification requirements across multiple European markets.
  • Contribute to the ongoing development of Bauer Media Group's Information and Cyber Security Management Framework.
  • Assess information security risks, identify control gaps and support the implementation of effective mitigation measures.
  • Drive remediation activities for audit findings, vulnerabilities, control weaknesses and security exposures.
  • Coordinate assurance activities, including evidence collection, control testing and responses to internal, external and regulatory reviews.
  • Provide practical security guidance to product, business and technology teams throughout the development lifecycle.
  • Promote secure development practices including threat modelling, secure coding, cloud security, application security testing and software supply chain security.
  • Collaborate with Security Architecture, Engineering and Operations teams to reduce vulnerabilities, misconfigurations and overall attack surface.
  • Support the management of security incidents affecting Gaming & Competitions services and ensure lessons learned are embedded into future controls and processes.
  • Build trusted relationships with senior stakeholders and act as a subject matter expert on information security matters.

 

What We Are Looking For

 

We know that everyone brings different experiences and perspectives. If you meet most of the criteria below, we encourage you to apply.

  • Significant experience in information security, cyber security, technology risk or a related discipline.
  • Proven experience implementing, operating and improving Information Security Management Systems.
  • Demonstrable experience supporting and maintaining ISO/IEC 27001 certification programmes.
  • Strong knowledge of ISO/IEC 27001 and ISO/IEC 27002, including risk management, controls implementation, audit preparation and continuous improvement.
  • Experience assessing security risks and driving remediation activities across complex business and technology environments.
  • Good understanding of security and compliance requirements within regulated industries; experience within gaming, competitions or similar sectors is advantageous.
  • Strong knowledge of application and development security, including secure software development lifecycles, cloud technologies, APIs, CI/CD pipelines and application security testing.
  • Ability to communicate complex security concepts clearly to both technical and non-technical audiences.
  • Experience working with auditors, regulators, suppliers and senior management stakeholders.
  • Strong analytical, problem-solving and stakeholder management skills.
  • Relevant degree or equivalent practical experience.
  • Professional certifications such as CISSP, CISM, CRISC, CCSP, ISO 27001 Lead Implementer, ISO 27001 Lead Auditor or equivalent are advantageous.
  • Fluent English is essential. German or Polish language skills would be beneficial.

 

What Success Looks Like

 

Within your first six months, you will have:

  • Established the Gaming & Competitions ISMS with clearly defined scope, governance, assets, risks, controls and ownership.
  • Built strong and trusted partnerships with Gaming & Competitions stakeholders across business and technology functions.
  • Implemented a prioritised remediation programme addressing key risks, vulnerabilities and control gaps.
  • Become a recognised and trusted advisor on information security matters for both leadership and operational teams.

#LI-Hybrid  #LI-RS1 

  •  

We are a media business focused on creating content that matters to millions of people across Europe. Our offering extends from print and online publishing to audio broadcasting and entertainment, alongside investments in other media related sectors. With more than 500 million copies sold each year, we are one of Europe’s largest Publishers. From women’s and celebrities’ magazines to TV listings to food and special interest, we own some of the most popular publishing brands in Germany, UK, Poland and France – both digital and print. But not only that. Reaching over 61 million listeners weekly, we operate over 150 radio and podcast brands in nine countries, spanning the UK, Ireland, Poland, Slovakia, Denmark, Sweden, Finland, Norway and Portugal. Family-owned in the 5th generation, Bauer Media focuses on the long-term, with a consumer-first mindset that guides us across our diverse portfolio. Our workforce of 12,000 shares a common purpose: to deliver content and services that enrich people‘s everyday lives.

We want to inspire not only our customers, we also want to inspire our colleagues. How? By giving you the opportunity to take on responsibility and by offering you a long-term perspective.

You can also benefit from our attractive offers:

  • Individual solutions for the flexible organisation of working hours and location
  • Targeted and individual training for your professional and personal development
  • A central location in Hamburg's city centre with good transport options (bus & train)
  • Subsidy for Deutschlandticket & bike leasing
  • Effective health management (e.g. health week, free sports programmes & Wellhub)
  • 30 days of holiday & frequent events for employees
  • Company restaurant, free magazines & various discounts via corporate benefits
  • A culture in which personal responsibility, teamwork and creativity are valued and you have room for creativity and for exciting and challenging tasks

If you are looking for an independent position and would like to enrich our existing team with fresh impulses, we look forward to receiving your complete application documents.

Your contact for this position is XYZ

Reference Number:

We are an international employer and equal opportunities are important to us. That's why we welcome everyone in their uniqueness, regardless of e.g. religion, gender, skin color, disability in our house.

Veröffentlicht am:  07.09.2026
Standort: 

Hamburg, DE, 20095

Req ID:  3904