Job
- Level
- Senior
- Job Field
- IT, Security
- Employment Type
- Full Time
- Contract Type
- Permanent employment
- Location
- Dusseldorf
- Working Model
- Hybrid, Onsite
Job Summary
In this role, you will establish an ISO 27001-compliant information security management system, manage security measures, develop policies, support audits, and act as a key contact for security-related issues.
Job Technologies
Your role in the team
- Professional responsibility for the development and operation, as well as the continuous further development, of an ISO 27001-compliant Information Security Management System (ISMS), including the management and implementation of the preparation for an intended ISO 27001 certification.
- Identification, assessment, and management of information security risks, including the definition and tracking of appropriate measures.
- Development, maintenance, and enforcement of information security policies, processes, and standards.
- Ensuring compliance with legal, regulatory, and internal requirements in the field of information security.
- Preparation, support, and follow-up of audits, assessments, and certifications, as well as ensuring audit and evidence readiness.
- Acts as the central point of contact for information security with management, business units, IT, and external partners.
- Consulting and supporting projects and business units regarding Security-by-Design and risk-oriented security requirements.
- Management and coordination of collaboration with IT Operations, Data Protection, Compliance, and other relevant stakeholders.
- Development and enhancement of reporting and KPI systems to transparently represent the level of information security.
- Support in handling security incidents (governance perspective) as well as deriving improvement measures.
- Professional responsibility for promoting, implementing, and enforcing security awareness within the company, including the management of awareness initiatives, monitoring their effectiveness, and management reporting.
- Execution and professional responsibility for IT security audits within the framework of the IT Sourcing Board process.
This text has been machine translated. Show original
Our expectations of you
Education
- Completed degree in Computer Science, Business Informatics, IT Security, or a comparable qualification.
Qualifications
- In-depth knowledge in the development, operation, and further development of information security structures (including ISMS).
- Good understanding of threat scenarios, security risks, and protection needs of information, systems, and business processes.
- Ability to define security requirements pragmatically, risk-based, and implementation-oriented.
- Structured, analytical, and independent working style with a high sense of quality and responsibility.
- Strong communication skills and the ability to present complex topics in an understandable and audience-appropriate manner.
- Excellent spoken and written proficiency in German and English.
Experience
- At least five years of professional experience in the field of Information Security, IT Security Governance, or ISMS.
- Experience in collaborating with IT, business units, and management to implement appropriate security measures.
This text has been machine translated. Show original
What we offer
- Benefit from our attractive employer benefits such as flexible working hours.
- Flat hierarchies and high collegiality.
- Option for remote work.
This text has been machine translated. Show original
Benefits
Health, Fitness & Fun
More net
Food & Drink
Topics that you deal with on the job
Job Locations
This is your employer
Gerresheimer AG
Gerresheimer is a world-renowned partner of the pharmaceutical and healthcare industry, specializing in the production of specialty products made of glass and plastic. These make a significant contribution to promoting health and well-being. With around 10,000 employees, the company is represented in many countries and produces locally where customers and markets are. This allowed for sales of 1.4 billion euros last year. The wide range of products extends from pharmaceutical packaging to products for easy and safe administration of medication to cosmetic packaging.
Description
- Founding year
- 1864
- Company Type
- Established Company
- Working Model
- Hybrid, Onsite
- Industry
- Print, Paper, Packaging