Job
- Level
- Experienced
- Job Field
- IT, Security
- Employment Type
- Full Time
- Contract Type
- Permanent employment
- Location
- Dusseldorf, Aachen
- Working Model
- Onsite
Job Summary
In this role, you will develop security policies, conduct risk assessments, and support internal and external audits. You will coordinate security incidents and promote a secure work environment through training and advisory.
Your role in the team
- Manage/Contribute to the continuous improvement of the information security management framework, policies, standards, and procedures.
- Koordinieren Sie Informationssicherheitsrisikobewertungen, Risikobehandlungspläne und Prozesse zur Risikobewilligung.
- Maintain the security risk register and report key risks, trends, and remediation progress to management.
- Support the operation and continual improvement of the Information Security Management System (ISMS).
- Prepare for and support internal and external security audits, certifications, customer assessments, and regulatory reviews.
- Überwachen Sie die Einhaltung der geltenden gesetzlichen, regulatorischen, vertraglichen und internen Sicherheitsanforderungen.
- Coordinate incident preparedness, including security incident procedures, exercises, lessons learned, and follow-up actions.
- Support vulnerability, threat, access, asset, and third-party security management activities.
- Promote secure working practices through security awareness training, communications, and targeted guidance.
- Advise project and product teams on security requirements, secure design, data protection, and risk-based controls.
- Beitragen zur Geschäftskontinuität, Katastrophenwiederherstellung und Planung der organisatorischen Resilienz.
- Define and track meaningful security metrics and management reports.
- Work with stakeholders to ensure security findings and audit actions are prioritized and closed effectively.
- Bleiben Sie auf dem Laufenden bezüglich relevanter Bedrohungen, Standards, regulatorischer Entwicklungen und Branchenpraktiken
This text has been machine translated. Show original
Our expectations of you
Education
- Bachelor's degree in information security, cybersecurity, computer science, information technology, engineering, risk management, or a related discipline; equivalent professional experience may be considered.
Qualifications
- Relevant professional certifications are desirable, such as CISSP, CISM, CRISC, ISO/IEC 27001 Lead Implementer or Lead Auditor, CompTIA Security+, GIAC certifications, or equivalent qualifications.
- Fluency in English is required. Professional working proficiency in German is highly desirable.
Experience
- Typically 5-8 years of relevant experience in information security, cybersecurity, IT risk, security governance, security operations, audit, compliance, or a related field.
- Experience working in an international, matrixed, regulated, technology-driven, or multi-site organization.
- Practical experience with information security risk assessments, control implementation, security policies, audit support, and remediation tracking.
- Experience supporting security incident response, vulnerability management, access governance, business continuity, or cyber resilience activities.
- Experience working with European privacy and security requirements; practical knowledge of GDPR and German data protection expectations is desirable.
- Experience coordinating stakeholders across multiple countries and functions.
- Experience with third-party risk assessments, supplier due diligence, or customer security questionnaires is advantageous.
- Experience in security awareness, training, communications, or security culture programs is advantageous.
This text has been machine translated. Show original
What we offer
- An open and friendly corporate culture characterized by constructive and collaborative interaction.
- Early risers and night owls - thanks to a flexible working model, you can organize your working day yourself.
- We also support you privately - benefit from special payments or additional vacation days on anniversaries or other special occasions.
- Utimaco is growing and embracing diversity! Our global team includes colleagues from 42 nationalities and 45 different languages spoken.
This text has been machine translated. Show original
Benefits
Work-Life-Integration
Health, Fitness & Fun
Food & Drink
Higher Take-Home Pay
Topics You Will Work On
Job Locations
About Your Employer
Utimaco GmbH
UTIMACO is a leading global provider of high-security technologies for cybersecurity and compliance solutions and services, headquartered in Aachen, Germany and Campbell (CA), USA.
Description
- Company Size
- 50-249 Employees
- Language
- English
- Company Type
- Established Company
- Working Model
- Hybrid, Onsite
- Industry
- Internet, IT, Telecommunication