Job
- Level
- Erfahren
- Job Feld
- IT, Security
- Anstellung
- Vollzeit
- Vertragsart
- Unbefristetes Dienstverhältnis
- Ort
- Düsseldorf, Aachen
- Arbeitsmodell
- Onsite
Job Zusammenfassung
In dieser Position entwickelst du Sicherheitsrichtlinien, führst Risikoanalysen durch und unterstützt interne sowie externe Audits. Du koordinierst Sicherheitsvorfälle und förderst ein sicheres Arbeitsumfeld durch Schulungen und Beratung.
Deine Rolle im Team
- Manage/Contribute to the continuous improvement of the information security management framework, policies, standards, and procedures.
- Coordinate information security risk assessments, risk treatment plans, and risk acceptance processes.
- Maintain the security risk register and report key risks, trends, and remediation progress to management.
- Support the operation and continual improvement of the Information Security Management System (ISMS).
- Prepare for and support internal and external security audits, certifications, customer assessments, and regulatory reviews.
- Monitor compliance with applicable legal, regulatory, contractual, and internal security requirements.
- Coordinate incident preparedness, including security incident procedures, exercises, lessons learned, and follow-up actions.
- Support vulnerability, threat, access, asset, and third-party security management activities.
- Promote secure working practices through security awareness training, communications, and targeted guidance.
- Advise project and product teams on security requirements, secure design, data protection, and risk-based controls.
- Contribute to business continuity, disaster recovery, and organizational resilience planning.
- Define and track meaningful security metrics and management reports.
- Work with stakeholders to ensure security findings and audit actions are prioritized and closed effectively.
- Keep current with relevant threats, standards, regulatory developments, and industry practices
Unsere Erwartungen an dich
Ausbildung
- Bachelor's degree in information security, cybersecurity, computer science, information technology, engineering, risk management, or a related discipline; equivalent professional experience may be considered.
Qualifikationen
- Relevant professional certifications are desirable, such as CISSP, CISM, CRISC, ISO/IEC 27001 Lead Implementer or Lead Auditor, CompTIA Security+, GIAC certifications, or equivalent qualifications.
- Fluency in English is required. Professional working proficiency in German is highly desirable.
Erfahrung
- Typically 5-8 years of relevant experience in information security, cybersecurity, IT risk, security governance, security operations, audit, compliance, or a related field.
- Experience working in an international, matrixed, regulated, technology-driven, or multi-site organization.
- Practical experience with information security risk assessments, control implementation, security policies, audit support, and remediation tracking.
- Experience supporting security incident response, vulnerability management, access governance, business continuity, or cyber resilience activities.
- Experience working with European privacy and security requirements; practical knowledge of GDPR and German data protection expectations is desirable.
- Experience coordinating stakeholders across multiple countries and functions.
- Experience with third-party risk assessments, supplier due diligence, or customer security questionnaires is advantageous.
- Experience in security awareness, training, communications, or security culture programs is advantageous.
Unser Angebot
- An open and friendly corporate culture characterized by constructive and collaborative interaction.
- Early risers and night owls - thanks to a flexible working model you can organise your working day yourself.
- We also support you privately - benefit from special payments or additional vacation days on anniversaries or other special occasions.
- Utimaco is growing and living diversity! Our global team includes colleagues from 42 nationalities and 45 different languages spoken.
Benefits
Work-Life-Integration
Gesundheit, Fitness & Fun
Essen & Trinken
Mehr Netto
Themen mit denen du dich im Job beschäftigst
Job Standorte
Das ist dein Arbeitgeber
Utimaco GmbH
UTIMACO ist ein global führender Anbieter von Hochsicherheitstechnologien für Cybersecurity und Compliance-Lösungen und Services mit Hauptsitz in Aachen, Deutschland und Campbell (CA), USA.
Description
- Unternehmensgröße
- 50-249 Employees
- Sprachen
- Englisch
- Unternehmenstyp
- Etablierte Firma
- Arbeitsmodell
- Hybrid, Onsite
- Branche
- Internet, IT, Telekom