Logo Medizinische Hochschule Hannover

information security officer

Job

  • Level
    Experienced
  • Job Field
    IT, Security
  • Employment Type
    Full Time
  • Contract Type
    Permanent employment
  • Location
    Hanover
  • Working Model
    Hybrid, Onsite
  • Job Summary

    In this role, you will develop a centralized Information Security Management System, design IT security policies, coordinate a team while continuously improving security measures, and conduct training sessions.

    Job Technologies

    Your role in the team

    • Advising and supporting management
    • Preparation of security status reports for executive management
    • Development and continuous enhancement of a central ISMS
    • Drafting and implementing central IT policies and guidelines
    • Coordination and technical leadership of the Information Security Management Team
    • Design, monitoring, and continuous improvement of information security measures
    • Handling and Investigation of Information Security Incidents
    • Internal and external contact point for an IS reporting system
    • Planning and implementation of awareness and training measures for information security

    This text has been machine translated. Show original

    Our expectations of you

    Education

    • Successfully completed studies in the fields of Computer Science, Medical Informatics, or a comparable qualification

    Qualifications

    • Knowledge related to guidelines, standards, and legal regulations such as BSI Basic Protection, ISO/IEC 27000 series, IT Security Act, as well as in the field of risk management and risk analyses
    • Knowledge of implementing NIS-2 or successor regulations, as well as § 75 c SGB V
    • Knowledge of security requirements for cloud services, as well as medical device and supplier security
    • Good technical knowledge of operating systems, network technologies, databases, and (web) applications.
    • Good knowledge of common IT project management methods and tools
    • Very good German and good English skills in spoken and written form
    • Assertiveness to clearly demonstrate the necessary measures to decision-makers and at all levels of hierarchy
    • Team orientation, organizational talent, sense of responsibility
    • Structured, goal- and result-oriented working style

    Experience

    • Relevant professional experience in information security within the KRITIS sector B3S hospitals; preferably with CISSP® or T.I.S.P certification or similar proof.
    • Experience in dealing with public institutions and regulatory authorities

    This text has been machine translated. Show original

    What we offer

    • A permanent full-time position with 38.5 hours per week at one of the largest employers in the state of Lower Saxony.
    • Depending on personal qualifications, a salary up to pay grade E14 according to TV-L is possible, with the benefits of public service (e.g., company pension scheme and supplementary insurance through VBL).
    • A responsible key position in a socially relevant, future-proof, and highly complex environment
    • A function that is technically independent with immediate reporting and escalation rights to the Executive Board.
    • Direct access to the executive board or the responsible department and integration into relevant decision-making and steering committees
    • Comprehensive scope for the strategic development of information security and the certified ISMS at MHH
    • An established and ISO/IEC 27001:2022 certified ISMS framework as a professional working basis
    • Support from qualified staff of the Information Security Organization as well as designated contacts in IT, Medical Technology, Data Protection, BCM, Risk Management, and the specialist departments
    • Close collaboration with experienced colleagues from healthcare, research, education, IT, medical technology, data protection, compliance, and emergency management
    • Regular professional training and development as well as support in acquiring and maintaining relevant certifications
    • Flexible working hours and the possibility of remote work within the framework of company policies
    • A structured onboarding process and a regulated coverage of the role
    • Personal and professional development opportunities - supported by our diverse internal and external training and development programs
    • An excellent selection of sports, consulting, and pension programs - because your health is close to our hearts

    This text has been machine translated. Show original

    Benefits

    Higher Take-Home Pay

    Health, Fitness & Fun

    Work-Life-Integration

    Topics You Will Work On

    Job Locations

    • Location Hanover

      Niedersachsen

      Germany

    About Your Employer

    Medizinische Hochschule Hannover

    Medizinische Hochschule Hannover

    The Medical University of Hannover's Hospital is the academic teaching facility for the university.

    Description

  • Company Size
    250+ Employees
  • Company Type
    Established Company
  • Working Model
    Hybrid, Onsite
  • Industry
    Education System
  • Logo Medizinische Hochschule Hannover

    information security officer

    Location
    Hanover
    Working Model
    Hybrid, Onsite
    Diversity
    Open for all genders

    More Jobs