Lead, IT Operations, Cyber Security and Compliance - All Genders

Doodle
Berlin
Workplace: HybridFull timeFunction: IT Operations (Systems/Network Admin)Skills: ["Governance","Risk management","Stakeholder communication","Cross-functional collaboration","Leadership"]

Own Doodle’s security, compliance, privacy, and day-to-day IT operations. Lead IT for 100+ employees across Berlin, remote EU, and contractors—handling onboarding/offboarding, access provisioning, device management, and service desk—while evolving a security toolset and platform migrations. Drive SOC 2 Type II, ISO 27001, HIPAA, and ISO 42001 programmes, maintain a live risk register, and serve as Privacy Officer. Design Doodle’s AI governance framework and communicate security posture using NIST CSF 2.0.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Doodle
Doodle
1 month ago

Lead, IT Operations, Cyber Security and Compliance - All Genders

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 13 hours agoStatus: Live

Job Summary

Own Doodle’s security, compliance, privacy, and day-to-day IT operations. Lead IT for 100+ employees across Berlin, remote EU, and contractors—handling onboarding/offboarding, access provisioning, device management, and service desk—while evolving a security toolset and platform migrations. Drive SOC 2 Type II, ISO 27001, HIPAA, and ISO 42001 programmes, maintain a live risk register, and serve as Privacy Officer. Design Doodle’s AI governance framework and communicate security posture using NIST CSF 2.0.
Location: Berlin
Workplace: Hybrid
Employment Type: Full time
Job Function: IT Operations (Systems/Network Admin)
Seniority: Manager level

Key Responsibilities

  • •Lead security, compliance, privacy, and IT operations across Doodle.
  • •Run day-to-day IT for 100+ employees across Berlin, remote EU, and contractors, including onboarding/offboarding, access provisioning, device management, and service desk.
  • •Operate and evolve the security stack and lead platform migrations and evaluation of new security technologies.
  • •Own and drive SOC 2 Type II, ISO 27001, HIPAA, and ISO 42001 programmes; maintain a live risk register and remediation for concurrent risk items.
  • •Design and own Doodle’s AI governance framework and author board-level cybersecurity posture presentations using NIST CSF 2.0.

Key Requirements

  • •Own security, compliance, privacy, and IT operations across a growing organization, including day-to-day IT support.
  • •Operate and evolve a security toolset (e.g., EDR, MDM, IAM/SSO, email security, and security awareness).
  • •Drive compliance programmes including SOC 2 Type II, ISO 27001, HIPAA, and ISO 42001, and serve as Privacy Officer for the DPA portfolio.
  • •Maintain a prioritized risk register and lead remediation for multiple concurrent risk items.
  • •Lead governance for AI, including EU AI Act assessments, agentic AI security controls, and risk management for AI tools and contributors.
Experience:B2B SaaSEnterpriseRegulated industries
Skills:GovernanceRisk managementStakeholder communicationCross-functional collaborationLeadership
Tech Stack:SentinelOneCrowStrikeJamf ProJumpCloudOktaEDRMDMIAMSSONIST CSF 2.0SOC 2ISO 27001HIPAAISO 42001SSE platformEU AI ActMCPCursorKnowBe4CLM

Eligibility

Work Authorization:Authorization required. Sponsorship not provided.

Company Brief

Doodle
Provides an online scheduling platform that simplifies meeting coordination by allowing users to propose times, vote on availability, and automate calendar bookings across teams and external participants, aimed at improving scheduling efficiency for businesses and individuals.
Industry: Enterprise Software
Company Size: Medium (51 to 250 employees)
Growth: Established Company
Headquarters: Zurich, Switzerland
Founded: 2007
WebsiteLinkedIn