Job
- Level
- Experienced
- Job Field
- IT, Security
- Employment Type
- Full Time
- Contract Type
- Permanent employment
- Location
- Herne
- Working Model
- Hybrid, Onsite
Job Summary
In this role, you will develop the ISMS, integrate security and data protection requirements into processes, conduct risk analyses, and manage projects to ensure compliance with data protection regulations.
Job Technologies
Your role in the team
- Further development and monitoring of the ISMS and data protection organization
- Integration of security and data protection requirements into processes, projects, and systems
- Coordination of risk analyses as well as planning and support of audits and penetration tests.
- Analysis of audit results and active follow-up of measures
- Management of information security and data protection projects
- Assessment and handling of security and data protection incidents, including reporting obligations.
- Ensuring regulatory compliance (GDPR, BDSG, KRITIS, IT-SiG, industry standards)
- Update of the ISMS and Data Protection Documentation
- Monitoring regulatory developments and deriving measures and decision templates
- Consulting with the executive board and specialist departments as well as conducting audits and effectiveness reviews.
- Preparation of executive board reports
- Assessment and oversight of external service providers regarding information security and data protection requirements, particularly in the context of data processing agreements and critical service providers.
- Development and implementation of awareness and training measures
- Achieving a high level of awareness for information security and data protection within the company
This text has been machine translated. Show original
Our expectations of you
Education
- Successfully completed studies in (Business) Informatics, Information Security, Economics, Business Law, or a comparable qualification.
Qualifications
- Very good understanding of IT processes as well as information security and data protection requirements.
- Knowledge in risk management
- Certificates related to standards such as ISO 27001, ISO 27701, or IT-Grundschutz, or recognized qualifications as an Information Security or Data Protection Officer (m/f/d) (desirable)
- High commitment and structured working approach
- Analytical understanding of complex relationships
- Integrity, discretion, and assertiveness
- Confident demeanor and problem-solving skills
- Precise oral and written communication
Experience
- Professional experience in information security and data protection, ideally in a role as (deputy) information security or data protection officer (m/f/d).
- Experience in project work and regulatory requirements as a clear advantage.
This text has been machine translated. Show original
What we offer
- Varied scope of tasks characterized by responsible and independent work
- Comprehensive training opportunities including e-learning.
- Remuneration according to TV-V including 13th salary
- Flexible working time models and opportunities for mobile working / home office
- Provision of appropriate mobile devices
- Corporate benefits and regular employee events
- In-house company restaurant on the factory premises
- Occupational Health Management
- Good working atmosphere and collegial team
This text has been machine translated. Show original
Benefits
Work-Life-Integration
Topics that you deal with on the job
Job Locations
This is your employer
Stadtwerke Herne AG
Seit über 100 Jahren versorgen die Stadtwerke Herne ihre Bürger zuverlässig mit Energie. Aus dem traditionsreichen Unternehmen ist mittlerweile ein moderner Energiedienstleister geworden, der stets nach neuen Wegen in der Energieversorgung- und Gewinnung sucht. Für unsere Kunden und für unsere Umwelt.
Description
- Company Size
- 250+ Employees
- Company Type
- Established Company
- Working Model
- Hybrid, Onsite
- Industry
- Power Sector, Economy