Job
- Level
- Senior
- Job Feld
- IT, Security
- Anstellung
- Vollzeit
- Vertragsart
- Unbefristetes Dienstverhältnis
- Ort
- Hamburg, Berlin
- Arbeitsmodell
- Hybrid, Onsite
Job Zusammenfassung
In dieser Position entwickelst du ein umfassendes Cybersecurity-Rahmenwerk für komplexe SoS-Umgebungen, überwachst Sicherheitsaktivitäten, koordinierst teamspezifische Maßnahmen und dokumentierst die Sicherheitsstatusberichte zur Risikobewertung.
Deine Rolle im Team
- In this role, you establish, maintain, and continuously evolve the SoS-level cybersecurity framework.
- You ensure effective process governance, enable risk-based decision-making, coordinate security verification activities, and provide transparency to stakeholders across vehicle, cloud, and system teams.
- This position combines elements of Information Systems Security Management, Cybersecurity Management, and System Security Management to reflect the complexity of SoS environments.
- Define and document the security relevance, scope, and expectations of the SoS and all affected subsystems.
- Establish, govern, and continuously improve the SoS cybersecurity process landscape, including deliverables, checkpoints, acceptance criteria, and release readiness.
- Coordinate and oversee the planning, execution, and completion of all SoS security activities without executing them yourself.
- Create, maintain, and communicate the SoS Security Status Report, providing transparency to leadership and stakeholders.
- Compile and structure complete SoS security documentation and evidence into a coherent SoS Security Case.
- Document security risk acceptance decisions and ensure lifecycle-wide traceability, including transfer of residual risks.
- Align security-relevant activities across teams and domains to ensure consistency and eliminate gaps.
- Advise project teams on security-related matters and represent the SoS security position in governance forums.
Unsere Erwartungen an dich
Ausbildung
- A degree in computer science, cybersecurity, engineering, or a comparable technical field.
Qualifikationen
- Strong understanding of structured assurance approaches, including Security Case creation.
- Solid knowledge of ISO/SAE 21434, NIST-based cybersecurity processes, and UN ECE R155.
- Confidence in documentation, process governance, reporting, and compliance management.
- Familiarity with security testing, vulnerability management, or verification results.
- Excellent stakeholder management and communication skills in cross-functional environments.
- Business-level fluency in English, both written and spoken.
Erfahrung
- Experience in cybersecurity governance, assurance, risk management, or compliance-focused roles.
- Experience introducing or maturing security processes in complex organizations.
Unser Angebot
- Competitive salary (including bonus).
- Hybrid work setup: Work from home or one of our offices - you and your team decide how often to meet, blending flexibility with collaboration!
- Flexible working hours and the possibility of flexible work arrangements depending on your needs (parenting, care work, volunteering, etc.).
- Budget and monthly expense allowance for home office setup.
- Possibility of remote work from outside Germany for up to 6 weeks per year from over 35 countries.
- Public transport ticket (fully subsidized "Deutschlandticket") for commuting and travelling throughout Germany and discount on MOIA rides.
- Subsidized fitness club membership or bike leasing.
- Learning environment with continuous learning days, job rotation, trainings and workshops, coaching, conferences, books, and language classes.
- Mental health support, 1:1 sessions with external professionals and mental unload workshops.
- 30 vacation days, sabbatical and unpaid leave option.
- Relocation support with service provider (visa, administration, etc.).
- Dog-friendly offices.
Benefits
Work-Life-Integration
Themen mit denen du dich im Job beschäftigst
Job Standorte
Das ist dein Arbeitgeber
MOIA GmbH
Die MOIA GmbH gehört zum Volkswagen-Konzern und hat Büros in Berlin und Hamburg. Sie bietet umweltfreundliche Ridepooling-Dienste an und arbeitet an innovativen Lösungen für autonome Mobilität. Das internationale Team beschäftigt sich mit KI, Software, Hardware und Embedded Systems für städtische Verkehrssysteme.
Description
- Unternehmenstyp
- Etablierte Firma
- Arbeitsmodell
- Hybrid, Onsite
- Branche
- Fahrzeugbau, Zulieferer