Job
- Level
- Erfahren
- Job Feld
- IT, Security
- Anstellung
- Vollzeit
- Vertragsart
- Unbefristetes Dienstverhältnis
- Ort
- Hamburg, Lübeck
- Arbeitsmodell
- Onsite
Job Zusammenfassung
In dieser Rolle entwickelst und betreibst du das Informationssicherheitsmanagementsystem, implementierst regulatorische Anforderungen und förderst eine starke Sicherheitskultur im gesamten Unternehmen.
Deine Rolle im Team
- Build, develop, and operate the Information Security Management System and support the Safety Management System, taking ownership of its continuous improvement.
- Implement and manage regulatory requirements (e.g., KRITIS, NIS2, IMO), ensuring they are reflected in the organization's security governance.
- Develop, maintain, and continuously improve the full set of information security policies, standards, and procedures, translating complex requirements into clear, actionable documents.
- Own the information security risk management process across the organization and its third-party suppliers and service providers: identify and assess risks, and define, track, and monitor mitigation measures.
- Act as information security partner for internal departments, advising on governance, risk, and compliance topics and actively promoting a strong security culture across the organization.
- Support audits and internal revisions, ensuring continuous compliance and driving improvements based on findings and evolving requirements.
Unsere Erwartungen an dich
Ausbildung
- Degree in Computer Science, Information Security, or a comparable qualification.
Qualifikationen
- Technical understanding of IT systems, security architectures, and security solutions, enabling you to assess risks, set requirements for and evaluate the effectiveness of security measures.
- A structured, analytical, and risk-based working approach with a high level of ownership and motivation to drive improvements.
- Confident communicator able to explain governance requirements clearly to IT teams, business stakeholders, management, and external parties, and comfortable collaborating across cultures, time zones, functions, and levels of seniority.
- A proactive team player able to work independently, drive topics forward, and follow up on actions with persistence and professionalism.
- Willingness to travel occasionally or visit vessels as part of global information security activities.
- Fluency in written and spoken English.
- Certifications such as CISM, ISO/IEC 27001 Implementer/Auditor, or ISA/IEC 62443.
- Exposure to audit, compliance, or IT governance activities.
- Basic understanding of maritime or Operational Technology (OT) regulated environments and familiarity with related frameworks (e.g., IEC 62443, KRITIS).
Erfahrung
- In-depth experience in information security management, with good knowledge of relevant standards and frameworks (e.g., ISO/IEC 27001, NIST CSF).
Unser Angebot
- A collaborative, international working environment with flat hierarchies.
- Fast decision-making and a strong culture of ownership.
- Plenty of room for initiative, new ideas, and personal growth.
Themen mit denen du dich im Job beschäftigst
Job Standorte
Das ist dein Arbeitgeber
EGON OLDENDORFF Management GmbH
Die Egon Oldendorff Management GmbH, ansässig in Lübeck, gehört zur renommierten Schifffahrtsgruppe OLDENDORFF CARRIERS. Das Unternehmen hat sich auf die Verwaltung und Beteiligung an Schifffahrtsgesellschaften spezialisiert und übernimmt die damit verbundenen Rechte und Pflichten. Seit der Gründung im Jahr 1996 ist die Firma im maritimen Bereich tätig.
Description
- Unternehmenstyp
- Etablierte Firma
- Arbeitsmodell
- Onsite
- Branche
- Industrie, Produktion