Job
- Level
- Experienced
- Job Field
- IT, Security
- Employment Type
- Full Time
- Contract Type
- Permanent employment
- Location
- Bessenbach
- Working Model
- Hybrid, Onsite
Job Summary
In this role, you will be responsible for developing, standardizing, and implementing global IT risk management, conducting risk assessments, and closely communicating with stakeholders to ensure compliance and governance.
Job Technologies
Your role in the team
- Responsibility for the further development and standardization of global IT risk management as well as the establishment and implementation of the risk management process.
- Company-wide aggregation and analysis of IT risks through the development and maintenance of a central risk register, ensuring that risks are comprehensively identified, assessed, and documented in the risk register.
- Consistent advancement of the topic within the organization.
- Development, coordination, and tracking of Risk Treatment Plans in close collaboration with local Risk Owners, continuous communication with all relevant stakeholders, and ensuring that measures are implemented, risks are appropriately managed, and decisions are made transparently.
- Creation of IT risk reports and management insights (including KPIs/KRIs, heatmaps, and decision-making bases for top risks).
- Ensuring compliance and governance by integrating regulatory requirements as well as supporting audits and global stakeholder management.
- Integration of IT risk management into ISO 27001 / TISAX-compliant processes (Risk Assessment, Treatment, SoA) and consolidation into Corporate Risk Management.
- Support in the development and operation of the ISMS.
This text has been machine translated. Show original
Our expectations of you
Education
- Completed degree in Computer Science, Business Informatics, IT Security, or a comparable qualification.
Qualifications
- In-depth understanding of IT risk management frameworks (e.g., ISO 31000, ISO 27005, NIST).
- Very good analytical and conceptual skills.
- Strong communication and presentation skills in German and English.
- High level of initiative and structured working style.
- Assertiveness and strong stakeholder management skills.
- Strategic thinking and entrepreneurial mindset.
- Ability to present complex issues in an understandable and audience-appropriate manner.
Experience
- Several years of experience in IT Risk Management, IT Security, or IT Governance.
- Experience in international corporate structures.
- Experience with regulatory and normative requirements (e.g., NIS2, ISO 27001, TISAX).
- Experience with GRC tools and reporting solutions.
This text has been machine translated. Show original
What we offer
- Future-proof work.
- Flexible working hours, possibility of remote work.
- Flat hierarchies with room for ideas and co-creation.
- Attractive conditions according to IG Metall, e.g., 30 days of vacation entitlement.
- Training and further education opportunities.
- Corporate benefits and additional perks for our employees.
This text has been machine translated. Show original
Benefits
Higher Take-Home Pay
Topics You Will Work On
Job Locations
About Your Employer
SAF-HOLLAND GmbH
SAF-HOLLAND GmbH is an established manufacturer of chassis components, known worldwide for its quality and innovation. The company supplies both OEMs and fleet operators.
Description
- Company Type
- Established Company
- Working Model
- Hybrid, Onsite
- Industry
- Vehicle Manufacturing, Supplier