We are looking for a robust IT Security Generalist who will build a 27001 certified IT Security Management System in a still volatile IT environment. While performing certain IT monitoring analysis and incident management tasks yourself you will also define security requirements for our evolving on-prem and cloud based IT landscape implemented by related teams. You will work collaboratively with IT Business applications and R&D teams to protect our organization from cyber threats and be our Information Security Officer.
Your main tasks are:
- Develop and document a 27001 compliant IT Security Management System including the corresponding risk analysis file as well as all related policies and procedures
- Identify and integrate related IT Security frameworks such as e.g. BSI Grundschutz and C5)
- Act as ISMS Officer internally and represent the company and guide the teams though externals ISMS audits
- Implement related employee education and training
- Design and implement security strategies protocols and policies to ensure the confidentiality
- integrity and availability of our companys information systems and data
- Monitor and analyse security risks and threats and provide recommendations for remediation and mitigation
- Manage incident response and investigation activities and provide technical expertise to support the resolution of security incidents
- Conduct security audits and vulnerability assessments to identify potential security issues and develop action plans to address them
- Work closely with IT and R&D teams to ensure that security requirements are met during the design implementation and operation of information systems and applications
- Stay up-to-date with emerging security technologies and trends to ensure that our organizations security practices are current and effective
Qualifications :
- A degree in the field of computer science or related field and at least 3 years of professional experience in the areas of IT security and cloud security (AWS/MS Azure)
- Strong knowledge of security best practices and industry standards
- Experience with security compliance frameworks such as SOC 2/3 HIPAA and ISO27001
- Strong analytical and problem-solving skills
- Excellent verbal and written communication skills persuasive power
- Optional certified training such as IT Security Expert CISM or CISSP is a plus
- Advanced English skills German is a plus
Additional Information :
- A mutually-supportive international team
- Opportunity to build career experience in an exciting international company with a lasting impact on medical technology based in Munich
- Flexible working hours
- Secure bicycle storage room
- Subsidized catering service
- Subsidized Gold Gym membership
- Centrally located modern work spaces with a great 212m roof terrace
Ready to apply We look forward to receiving your online application including your first available start date.
Contact person: Elisabeth Karro
Remote Work :
No
Employment Type :
Full-time