ISO - Information Security Officer (w/m/x)

Österreichische Akademie der Wissenschaften - ÖAW

Wien

Hybrid

EUR 63.000 - 77.000

Vollzeit

Vor 3 Tagen
Sei unter den ersten Bewerbenden
Bewerbungsgenerator

Mach aus dieser Rolle ein Vorstellungsgespräch — ein Lebenslauf und ein Anschreiben, die darauf ausgerichtet sind, was dieser Arbeitgeber sucht.

Schaffe es an den ATS-Filtern vorbei

Benefits dieser Stelle

Flexible working hours
Work from home option
Increased annual leave

Zusammenfassung

The Austrian Academy of Sciences (ÖAW) is seeking an ISO - Information Security Officer (w/m/x) to lead the organisation’s information security program. You will oversee the ISMS, coordinate risk management, audits and reporting to top management, and advance security culture across institutes and central units.

A degree in CS or business informatics with a security focus is required, with at least five years of relevant experience and strong ISO 27001/27002 knowledge.

Qualifikationen

  • The degree should be in CS or business informatics with a focus on information security.
  • At least five years of professional experience in information security roles.
  • Strong ISO/IEC 27001/27002 knowledge and ISMS experience.
  • Experience in identifying, assessing and treating information security risks.
  • Knowledge of cloud security, IAM, system hardening, and zero trust.
  • Proficiency in German (C1) and English (B2); effective communication.

Aufgaben

  • Establish, operate and develop the ISMS in line with ISO/IEC 27001.
  • Act as central contact for information security across the organisation.
  • Prepare decision papers on information security measures for leadership.
  • Maintain ISMS documentation and governance of policies & standards.
  • Coordinate information security risk management and monitor treatment actions.
  • Define logging, monitoring and incident management requirements.
  • Plan and coordinate internal/external security audits and tests.
  • Produce regular risk and security reports for leadership teams.
  • Design training and awareness programs to advance security culture.
  • Ensure compliance with legal/regulatory requirements including NIS2.
  • Collaborate with Legal, Compliance and external partners.

Kenntnisse

ISO/IEC 27001 knowledge
Information security management
Risk management
Communication & presentation
Project & stakeholder management
German & English proficiency

Ausbildung

University or FH degree in computer science or business informatics (information security focus)

Tools

ISO/IEC 27001 Lead Implementer
Certifications: CISM/CISA/CISSP
COBIT or ITIL qualifications
IPMA or PRINCE2

Jobbeschreibung

The Austrian Academy of Sciences (ÖAW) is Austria's leading non-university institution for science and research, with a statutory mandate to “promote science in every respect”. Founded in 1847 as a learned society, it today comprises more than 760 members and around 1,800 staff. It is dedicated to innovative basic research, to interdisciplinary exchange and to communicating new findings to a wider public. The ÖAW builds and maintains partnerships worldwide, represents Austria in international scientific organisations and works with numerous partners in the research community to help shape Austria's research landscape.

ISO - Information Security Officer (w/m/x)

ISO - Information Security Officer (w/m/x) is available.

(Office & remote)

The role

The position is located within the remit of the Chief Information Officer (CIO) of the ÖAW and reports directly to the CIO, who in turn reports to the Directorate for Institutes and Infrastructure (DII). Its remit extends across the entire organisation, working closely with the institutes, the central units and the Legal and Compliance Department.

Your responsibilities

Your responsibilities

  • You establish, operate and continuously develop the information security management system (ISMS) of the Austrian Academy of Sciences (ÖAW) in line with ISO/IEC 27001.
  • You act as the central point of contact and coordination for all organisation-wide matters relating to information security management.
  • You prepare decision papers and recommendations on appropriate information security measures for the Presidential Board and the Directorate for Institutes and Infrastructure (DII).
  • You maintain the ISMS documentation framework and steer the drafting, consultation, approval and periodic review of strategies, policies, standards and procedures.
  • You coordinate information security risk management, support the identification and assessment of risks, and monitor the implementation of approved risk treatment measures.
  • Together with the relevant technical units, you define requirements for logging, security monitoring and incident management, and verify that these are implemented appropriately and remain effective.
  • You plan and coordinate internal and external information security audits, security reviews and penetration tests, and follow up on the resulting actions.
  • You produce regular reports on the risk landscape, security incidents, control effectiveness, the status of measures and the maturity of the ISMS for the Presidential Board and the DII, and you prepare the ISMS management review.
  • You design and coordinate target-group-specific training and awareness programmes and help advance the ÖAW's information security culture.
  • You monitor the implementation and effectiveness of the security measures in place and track deviations and improvement measures in a documented and auditable way.
  • You work closely with the Legal and Compliance Department as well as with other internal teams and external partners to ensure compliance with legal requirements and sector-specific standards.
Your profile

Your profile

A completed degree from a university or university of applied sciences, ideally in computer science or business informatics with a focus on information security, or equivalent knowledge acquired in previous roles.

At least five years of relevant professional experience in comparable positions (information security manager, IT security, IT operations, IT audit).

Sound knowledge of ISO/IEC 27001 and ISO/IEC 27002, combined with hands-on experience in establishing, operating or further developing an information security management system (ISMS).

Experience in identifying, assessing and treating information security risks.
Experience with policies, control assessments, audits, management reporting and the tracking of corrective actions.

A solid understanding of modern IT and security architectures, in particular cloud security, identity and access management (IAM), system hardening, network security, security monitoring and zero trust.

Knowledge of the relevant legal and regulatory requirements, in particular data protection and, where applicable, the NIS2 Directive and its Austrian implementation (Network and Information System Security Act, NISG).

The ability to present technical and organisational matters in a way that suits the audience, from specialist units to governing bodies.

Strong advisory, facilitation, communication and presentation skills.
A structured, self-directed and solution-oriented way of working.

  • Experience in complex or decentralised organisations and in project and stakeholder management, ideally supported by a certification such as IPMA or PRINCE2.
  • Certifications such as ISO/IEC 27001 Lead Implementer or Lead Auditor, CISM (Certified Information Security Manager), CISA (Certified Information Systems Auditor), CISSP (Certified Information Systems Security Professional), or qualifications in COBIT or ITIL.
  • German: fluent, spoken and written (at least level C1 of the Common European Framework of Reference for Languages, CEFR ).
    English: good command (at least level B2 of the CEFR ).
What we offer
  • A key role in an innovative, internationally oriented environment.
  • A workplace in central Vienna, with flexible working hours and the option to work from home.
  • Attractive benefits, including additional days of annual leave, paid lunch breaks and staff discounts for employees of the Austrian Academy of Sciences (ÖAW).

The minimum gross annual salary for this position is EUR 70,000 on a full-time basis. For part-time employment, the salary is adjusted in proportion to the agreed working hours. Depending on your qualifications and professional experience, we are prepared to offer a higher, market-based salary.

The Austrian Academy of Sciences (ÖAW) pursues a non-discriminatory employment policy and is committed to equal opportunity and diversity. Applications from members of underrepresented groups are particularly welcome.

Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.
oder ziehe deine Datei hierhin.
Similar jobs

Ähnliche Jobs, die dir auch gefallen könnten

ISMS Lead — ISO 27001 Security Officer (Remote)
ISMS Lead — ISO 27001 Security Officer (Remote)

Österreichische Akademie der Wissenschaften - ÖAW • Wien

Hybrid
EUR 63.000 - 77.000
Flexible working hours
Work from home option
Increased annual leave
Information Security Officer (m/w/d)
Information Security Officer (m/w/d)

ÖBB Stadler Service GmbH • Österreich

Vor Ort
EUR 60.000 - 80.000
Internationale Entwicklungs- und Weiterbildungsmöglichkeiten
Moderne Arbeitsplätze mit gutem Zugang zu öffentlichen Verkehrsmitteln
Kantine mit täglich wechselnden Menüs
+1
Information Security Manager
Information Security Manager

whatchado GmbH • Linz

Vor Ort
EUR 38.340 - 45.923
Flexible Arbeitszeitmodelle
Zuschuss zum Mittagessen
Erfolgsbeteiligungen
+4
Information Security Officer (m/w/x)
Information Security Officer (m/w/x)

ÖBB • Österreich

Hybrid
EUR 55.000 - 65.000
Gleitzeitmodell
Telearbeit
Betriebsnahe Kindergärten
+1
Cybersecurity Engineer
Cybersecurity Engineer

Institute of Science and Technology Austria • Wien

Hybrid
EUR 50.000 - 70.000
Overpayment based on experience
IT Security Operations Analyst, 80-100% (f/m/x)
IT Security Operations Analyst, 80-100% (f/m/x)

OMICRON electronics GmbH • Gemeinde Klaus

Vor Ort
EUR 55.000 - 85.000
Flexible working models
Learning & development opportunities
International environment with English
+3
IT Security Operations Analyst, 80-100% (f/m/x)
IT Security Operations Analyst, 80-100% (f/m/x)

OMICRON Lab • Gemeinde Klaus

Vor Ort
EUR 65.000 - 95.000
Flexible work
Learning & development
International environment
+3
Information Security Officer (m/w/d)
Information Security Officer (m/w/d)

Bundesimmobiliengesellschaft m.b.H. • Wien

Hybrid
EUR 66.000 - 80.000
Home-Office
Weiterbildungsprogramm
BIG-Benefits Paket
Information Security & Compliance Analyst (m/w/x)
Information Security & Compliance Analyst (m/w/x)

BearingPoint Austria • Graz

Vor Ort
Flexible working hours
Meal vouchers
Information Security Officer (MTIT) (P3), Vienna, Austria
Information Security Officer (MTIT) (P3), Vienna, Austria

International Atomic Energy Agency • Wien

Vor Ort
EUR 70.000 - 100.000