Logo for Chrono24

Head of Information Security (m/f/d)

Role overview

Qualifications

  • Technical background in software engineering, DevOps, or a comparable discipline
  • Deep understanding of ISMS frameworks, particularly ISO 27001
  • Strong communication skills with the ability to translate security topics
  • Collaborative, pragmatic approach to working with cross-functional teams

Responsibilities

  • Define and drive the information security strategy and roadmap
  • Manage information security governance, risk management, and compliance
  • Lead and coordinate incident response, overseeing SIRT processes
  • Assess and manage third-party and vendor security risks

About the company

Chrono24 logo

Chrono24

E-commerce & Online Marketplaces

Chrono24 is the number one address for luxury watches. More than 25 million people search our website for the watch of their desire every month. From a classic automatic watch to a rare collector’s piece, you can find more than 500,000 ticking masterpieces on Chrono24. The Global Home of Luxury Watch Enthusiasts Our goal is to offer luxury watch fans a safe and secure platform for buying and selling watches. It should feel like a second home where they can explore their passion. We are committed to our customers and hold ourselves to the highest standards when it comes to security, trust, and comfort. We aspire to be not only the largest but also the most appealing online marketplace for luxury timepieces. We want to be your go-to location for all things high-end watches or, as we like to say, "the global home of luxury watch enthusiasts." The Global Marketplace “Made in Germany” For almost 20 years now, we have been completely reshaping the international market for luxury watches. On Chrono24, more than 35,000 professional dealers and private sellers from all over the world offer more than 500,000 watches. With contents in 22 languages, our website attracts more than 500,000 visitors every day. Of course, you can also access Chrono24 on your smartphone or tablet – about 8 million users have already downloaded our iOS and Android apps. But not only can our platform be reached from all corners of the globe, but our team also entails a diverse blend of international flair and German ingenuity. From our headquarters in Karlsruhe, Germany, and regional offices in Berlin, Freiburg, Hong Kong, Tokyo, New York City and Miami, more than 500 account managers, developers, project managers, and other creative minds enable you to not only find the watch you’re looking for quickly but also to purchase it safely.

Company details

IndustryE-commerce & Online Marketplaces
Company size201 - 500

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

About

As Head of Information Security (m/f/d) you will own and drive Chrono24’s information security program. You’ll combine strategic leadership with hands-on execution to protect a platform trusted by millions of watch enthusiasts worldwide. You’ll shape our security strategy, manage risk across the organization, and ensure we stay ahead of evolving threats and regulatory requirements.

What you can expect

  • You define and drive the information security strategy and roadmap for Chrono24, aligning with business objectives and regulatory requirements including ISO 27001,NIS2, and CRA.
  • You own information security governance, risk management, and compliance across the organization, ensuring risk owners understand and act on their responsibilities.
  • You lead and coordinate incident response, overseeing our Security Incident Response Team (SIRT) processes and ensuring readiness when it matters.
  • You steer our vulnerability management program,coordinating internal scans, external assessments,and take responsibility for our bug bounty program.
  • You build and run the security awareness program, including phishing campaigns, training, and fostering a security-conscious culture company-wide.
  • You assess and manage third-party and vendor security risks, ensuring our partners and service providers meet our security standards.
  • You drive audit readiness and compliance, coordinating ISO 27001 audits, NIS2 preparation, and collaboration with external auditors and your Information Security Officer.
  • You contribute to business continuity management, ensuring security considerations are embedded in our continuity processes.

Your team
Your direct team consists of a Principal Security Engineer and an Information Security Officer. The Principal Security Engineer owns application security and our Secure Software Development Lifecycle (SSDLC), including secure coding standards, vulnerability management, penetration testing, and cryptography controls. The Information Security Officer manages ISMS operations, compliance documentation, and audit coordination. Beyond your direct team, you will work closely with Product & Technology, especially Platform Engineering, DevOps, and IT, to embed security into engineering practices.

What sets you apart

  • A technical background in software engineering, DevOps, or a comparable discipline, combined with several years of professional experience in information security.
  • Deep understanding of ISMS frameworks, particularly ISO 27001, with hands-on experience in risk management, incident response, and vulnerability management.
  • Strong communication skills with the ability to translate security topics for both technical teams and executive leadership.
  • A collaborative, pragmatic approach to working with cross-functional teams, external partners, and senior stakeholders.
  • Very good English skills; German proficiency is a big plus.
  • Bonus points for relevant certifications(CISSP, CISM, ISO 27001 Lead Auditor/Implementer), experience with NIS2 compliance, or familiarity with cloud security(AWS, GCP).
  • Don’t worry:watch expertise isn’ta must – we’ll teach you everything you need to know!

What we offer

  • Salary: 90,000 to 120,000 EUR annually, depending on experience.
  • No back doors: We only offer permanent employment contracts.
  • 30 days of vacation per year.
  • Working from HQ in Karlsruhe? Our kitchen conjures up a truly excellent, free meal for you every day.
  • On December 24th and 31st, we’ll give you an additional day off.
  • Work abroad for up to 20 days per year: Working with a sea view? Yes, please!

Diversity@Chrono24: We believe in the power of diversity.

Diversity is our strength.
At Chrono24, we embrace diversity because we believe it enriches not only our corporate culture but also our success. Be yourself – and let’s achieve great things together!

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
·

Head of Information Systems Related jobs

Other jobs at Chrono24

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.