Job
- Level
- Experienced
- Job Field
- IT, Security
- Employment Type
- Full Time
- Contract Type
- Permanent employment
- Location
- Hamburg, Dortmund
- Working Model
- Hybrid, Onsite
Job Summary
In this role, you serve as the central contact for information security management, developing security policies, conducting risk analyses, and implementing measures to ensure information security.
Job Technologies
Your role in the team
- Central contact person for executives, employees, and other stakeholders on all issues related to the Information Security Management System (ISMS).
- Implementation of internal information security requirements within the responsible management area as well as planning and controlling appropriate measures.
- Review of the effectiveness of existing security measures and continuous development of the ISMS.
- Creation, maintenance, and further development of policies, guidelines, and regulations for information security.
- Consulting and support in information security incidents as well as accompanying root cause analyses and resulting measures.
- Analysis, evaluation, and optimization of security-relevant processes and procedures.
- Design and implementation of target group-specific awareness initiatives to sustainably raise employees' awareness of information security.
- Preparation, communication, and reporting of relevant developments, results, and requirements in the field of information security.
- Preparation and support of external certification and compliance audits, particularly according to ISO/IEC 27001 and the BNetzA IT Security Catalog.
- Active participation in ISMS committees, projects, and cross-departmental coordination formats.
This text has been machine translated. Show original
Our expectations of you
Education
- Completed degree in Computer Science, Electrical Engineering, Industrial Engineering, or a comparable field of study.
Qualifications
- Excellent knowledge in IT and OT security as well as experience with ICS and SCADA systems.
- In-depth understanding of network architectures and relevant network protocols.
- Excellent knowledge of relevant norms and standards, especially ISO/IEC 27001 and IEC 62443.
- Relevant certifications such as ISO/IEC 27001 Lead Implementer, Lead Auditor, or CEH are advantageous.
- Strong communication and moderation skills as well as assertiveness in interactions with internal teams, service providers, and suppliers.
- Excellent spoken and written German and English skills.
Experience
- Extensive professional experience in the field of information security and OT security.
- Experience in the critical infrastructure (KRITIS) environment, ideally within the energy sector.
- Practical experience in conducting risk analyses and threat modeling.
- Experience in deriving, implementing, and testing the effectiveness of technical and organizational security measures.
This text has been machine translated. Show original
What we offer
- Permanent employment with long-term prospects.
- Attractive salary including additional benefits such as Christmas bonus and asset-building payments.
- Flexible working hours with a time account and home office.
- Training opportunities for your professional and personal development.
- Modern work equipment (e.g., laptop or company mobile phone depending on the assignment).
- Employee events & referral bonuses as well as switching bonuses when changing service providers.
This text has been machine translated. Show original
Benefits
Work-Life-Integration
Topics You Will Work On
Job Locations
About Your Employer
STAR Specialists
iks Engineering GmbH is a leading engineering company specializing in innovative solutions in mechanical engineering and electrical engineering. Their dedicated team provides tailored services that meet the highest quality standards.
Description
- Company Type
- Established Company
- Working Model
- Hybrid, Onsite
- Industry
- Industry, Production