Job
- Level
- Senior
- Job Field
- IT, Security
- Employment Type
- Full Time
- Contract Type
- Permanent employment
- Salary
- 85.000 to 110.000€ gross/year
- Location
- Stuttgart, Coburg
- Working Model
- Hybrid, Onsite
Job Summary
In this role, you will be responsible for the development of the ISMS, advise departments, conduct audits according to ISO/IEC 27001:2022, while assessing security risks and performing security assessments.
Your role in the team
- You take responsibility for:
- the further development of our ISMS as well as the associated policies, processes, and controls.
- the preparation, support, and follow-up of internal and external audits, especially according to ISO/IEC 27001:2022.
- the assessment of information security risks as well as the conduct of supplier and third-party security assessments.
- the clear and solution-oriented consulting for departments, IT, DevSecOps, and management.
- support with security incidents, vulnerabilities, as well as business continuity and disaster recovery topics.
- the strengthening of security awareness as well as the preparation of reports, KPIs, and decision-making bases.
This text has been machine translated. Show original
Our expectations of you
Education
- Completed degree or training in information security, computer science, business informatics, or a comparable qualification; relevant professional experience can substitute for formal qualification.
Qualifications
- Solid practical knowledge of ISO/IEC 27001:2022, information security risk management, control assessment, and support of internal and external audits.
- A structured, independent, and pragmatic working style as well as strong communication and consulting skills.
- Very good German skills at C1 level and good English skills.
- Certifications such as ISO 27001 Lead Implementer/Lead Auditor, CISM, CISSP, or CRISC are advantageous.
Experience
- Several years of relevant professional experience in information security management, ideally in a regulated or customer-regulated environment.
- Knowledge of relevant regulatory requirements, such as DORA and NIS2, as well as experience with contractual security requirements from clients.
- Experience with Supplier Security, Security Awareness, and Business Continuity; Cloud Security or DevSecOps are desirable.
This text has been machine translated. Show original
What we offer
- 30 days of vacation entitlement, possibility of unpaid leave, plus guaranteed special leave on New Year's Eve.
- Training and development opportunities.
- TicketPlusCard with monthly credit.
- Company pension scheme (20% employer contribution to direct insurance).
- Employer-funded support fund.
- JobRad leasing.
- Location-based team events.
- Corporate Benefits (employee discounts).
This text has been machine translated. Show original
Benefits
Work-Life-Integration
Health, Fitness & Fun
Food & Drink
Topics You Will Work On
Job Locations
About Your Employer
CREALOGIX AG
The CREALOGIX Group is a globally active, independent Swiss software provider and, as a Fintech Top 100 company, is one of the market leaders in the field of digital banking. CREALOGIX develops and implements innovative fintech solutions for the digital bank of tomorrow. The group, founded in 1996, employs around 700 people worldwide.
Description
- Company Type
- Established Company
- Working Model
- Full Remote, Hybrid, Onsite
- Industry
- Banking, Finance, Insurance, Internet, IT, Telecommunication