Job
- Level
- Lead
- Job Field
- IT, Security
- Employment Type
- Full Time
- Contract Type
- Permanent employment
- Location
- Bremen
- Working Model
- Hybrid, Onsite
Job Summary
In this key role, you will develop information and cyber security strategies, establish security processes, and lead a security team to safeguard products and systems throughout their entire lifecycle.
Job Technologies
Your role in the team
- We are looking for an experienced leader to build and manage the Information Security & Cyber Security department.
- In this key role, you will develop a modern security organization that safeguards our products, systems, development environments, and corporate processes throughout their entire lifecycle.
- The focus is on technological information security and cyber security, as well as the integration of security requirements into development, production, and operations.
- Establishment and management of the Information Security and Cyber Security organization.
- Development and implementation of the information security strategy in accordance with corporate, customer, and regulatory requirements.
- Establishment, operation, and continuous development of an Information Security Management System (ISMS).
- Ensuring compliance with relevant standards and regulatory requirements, particularly ISO 27001, NIS2, BSI IT-Grundschutz, BSI VS-ITR, ECSS security requirements, as well as customer-specific specifications.
- Introduction and embedding of Security-by-Design, Secure-by-Default, and a company-wide Secure Development Lifecycle (SDL) into development, integration, and production processes.
- Responsibility for product security, cyber resilience, and the safeguarding of hardware, software, and system solutions throughout the entire product lifecycle.
- Responsibility for cyber risk management, security assessments, threat analyses, vulnerability management, penetration testing, and security audits.
- Development and further advancement of a Zero-Trust security approach for enterprise, development, and production environments.
- Establishment of measures for supply chain security, including assessment, management, and monitoring of security requirements with suppliers and partners.
- Support for development, software, system, and product teams on security-critical issues as well as the implementation of security requirements in customer projects.
- Responsibility for the accreditation and approval of safety-critical systems and infrastructures in collaboration with clients, authorities, and certification bodies.
- Development and management of processes for Incident Response, Security Monitoring, Threat Detection, Business Continuity, and Cyber Resilience.
- Management of external service providers as well as collaboration with clients, partners, and authorities on all matters of information and cyber security.
- Conducting and supporting customer, authority, and certification audits, as well as ensuring the organization's audit readiness.
- Regular reporting to executive management and leadership on security risks, compliance status, and necessary measures.
- Building and developing a high-performing security team.
This text has been machine translated. Show original
Our expectations of you
Education
- Completed degree in Computer Science, IT Security, Communications Engineering, or a comparable field of study.
Qualifications
- In-depth knowledge of Security Engineering, Secure Software Development, Network and Cloud Security, as well as Risk Management.
- Good knowledge of common standards and frameworks such as ISO 27001, NIS2, IEC 62443, NIST, or BSI Basic Protection.
- Ideally certifications such as CISSP, CISM, CCSP, or ISO 27001 Lead Implementer/Auditor.
- Strong communication skills and the ability to successfully integrate technical and organizational requirements.
Experience
- Several years of professional and leadership experience in the field of information security, cyber security, or product security.
- Experience in regulated industries such as aerospace, aviation, defense, or critical infrastructure.
This text has been machine translated. Show original
What we offer
- Work Life Balance: flexible working hours, sabbatical, 30 vacation days & special leave days.
- Mobile working: hybrid work model & mobile working abroad.
- Structured onboarding process (including support from a buddy).
- Development: Extensive training programs, personalized further development & annual employee dialogue.
- Additional benefits: 13th gross monthly salary, accident insurance & company pension scheme.
- Catering: High-quality company restaurant & generous meal allowance.
- Active health promotion: health management, E-GYM Wellpass & sports groups.
- Family: Kindergarten subsidy / kindergarten places, children's holiday care & paid sick days for children.
- Mobility: Subsidized Germany Ticket, Jobrad & Parking spaces.
- Company celebrations & events: Christmas party, satellite launch events, NextGen Speakers Night.
- Innovation: Employee Suggestion Scheme & Independent Research and Development.
This text has been machine translated. Show original
Benefits
Health, Fitness & Fun
Work-Life-Integration
Food & Drink
Topics that you deal with on the job
Job Locations
This is your employer
OHB SE
OHB SE is a leading company in the aerospace industry. With over 40 years of experience, we develop high-tech solutions for space exploration and other fields. Our portfolio includes satellite systems for Earth observation, navigation, telecommunications, science, and reconnaissance. We realize missions to explore the universe and develop systems for human spaceflight. With over 3,000 employees at 15 locations, we create infinite possibilities in space. We.Create.Space.
Description
- Company Type
- Established Company
- Working Model
- Hybrid, Onsite
- Industry
- Science, Research