Cyber Security Specialist

NDT Global

Blankenloch

Remote

EUR 80.000 - 120.000

Vollzeit

14 Tage+
Bewerbungsgenerator

Eine vollständige Bewerbung in einer Minute — Lebenslauf und Anschreiben, maßgeschneidert und versandbereit.

Schaffe es an den ATS-Filtern vorbei

Zusammenfassung

NDT Global is seeking a Cyber Security Specialist focusing on Governance, Risk & Compliance to shape and advance its cybersecurity governance, risk management, and compliance programs. You will collaborate across IT and business units to strengthen controls and ensure audit readiness.

The role requires senior expertise in CIS, NIST CSF, and ISO 27001, with a track record of risk assessments, threat mitigation, and security operations support across cloud and hybrid environments.

Qualifikationen

  • Bachelor's degree in cyber security, computer science, information systems, or related discipline.
  • 5+ years in cybersecurity governance, risk, and compliance functions.
  • Advanced certifications such as CISSP, CISM, or CRISC preferred; ISO27001 Lead Implementer / CISA assets encouraging.
  • English proficiency; German language skills advantageous.
  • Experience implementing or managing controls within CIS, NIST, ISO27001 frameworks.
  • Experience with cloud/hybrid environments (Microsoft 365, Azure, AWS).
  • Familiarity with GRC and risk-tracking platforms.
  • Strong knowledge of SIEM, EDR, and vulnerability management tools.

Aufgaben

  • Establish and maintain cybersecurity governance aligned with CIS Controls, NIST CSF, and ISO 27001.
  • Define policies, standards, and procedures supporting secure IT and business operations.
  • Lead maturity assessments and drive continuous improvement of cybersecurity posture.
  • Lead enterprise cybersecurity risk management, including risk identification, evaluation, mitigation, and reporting.
  • Maintain risk registers and ensure alignment with risk appetite and compliance obligations.
  • Partner with IT and functional leads to remediate vulnerabilities and prioritize controls.
  • Collaborate with IT infrastructure teams to ensure monitoring, incident detection, and response.
  • Provide guidance during incident handling and root-cause analysis.
  • Participate in threat-hunting, penetration testing, and vulnerability management cycles.
  • Ensure adherence to regulatory and client security requirements (GDPR, SOC 2).
  • Prepare and support internal and external IT security audits.
  • Maintain evidence repositories for audit and compliance tracking.
  • Lead employee cybersecurity awareness programs with HR and IT.

Kenntnisse

Governance mindset
Risk leadership
Analytical thinking
Communication
Accountability
Collaboration
Continuous improvement

Ausbildung

Bachelor's degree in cyber security / related field

Tools

SIEM
EDR
Vulnerability management
GRC platforms

Jobbeschreibung

Purpose

The Cyber Security Specialist - Governance, Risk & Compliance (GRC) is responsible for defining, implementing, and continuously improving NDT Global's cybersecurity governance, risk management, and compliance programs in alignment with global standards (CIS, NIST, ISO 27001). Operating within the IT team and collaborating across business units, this role ensures a consistent and proactive approach to cybersecurity governance, risk identification, and mitigation. The incumbent develops policies, leads risk assessments, and supports both technical and strategic initiatives to strengthen the organization's cyber resilience.

Responsibilities
  • Governance & Framework Implementation (30%)
    • Establish and maintain cybersecurity governance aligned with CIS Controls, NIST CSF, and ISO 27001.
    • Define policies, standards, and procedures supporting secure IT and business operations.
    • Lead maturity assessments and drive continuous improvement of cybersecurity posture
  • Risk Management Program Leadership (25%)
    • Lead the enterprise cybersecurity risk management program, including identification, evaluation, mitigation, and reporting of risks.
    • Maintain risk registers and ensure alignment with corporate risk appetite and compliance obligations.
    • Partner with IT and functional leads to remediate vulnerabilities and prioritize controls.
  • Security Operations Support (20%)
    • Collaborate with IT infrastructure teams to ensure consistent monitoring, incident detection, and response.
    • Provide guidance during incident handling and root-cause analysis.
    • Participate in threat-hunting, penetration testing, and vulnerability management cycles.
  • Compliance & Audit Readiness (15%)
    • Ensure adherence to regulatory and client security requirements across regions (e.g., GDPR, SOC 2).
    • Prepare and support internal and external IT security audits.
    • Maintain evidence repositories for audit and compliance tracking
  • Awareness & Continuous Improvement (10%)
    • Lead employee cybersecurity awareness programs.
    • Collaborate with HR and IT to roll out phishing campaigns and training.
    • Measure program effectiveness and adjust initiatives accordingly
Qualifications and experience
  • Bachelor's degree in cyber security, Computer Science, Information Systems, or related discipline.
  • Minimum 5 years in cybersecurity governance, risk, and compliance functions
  • Advanced certifications such as CISSP, CISM, or CRISC preferred.
  • Additional certifications in GRC frameworks or auditing (ISO 27001 Lead Implementer, CISA) are assets.
  • Proficiency in English (spoken and written); German language skills an advantage.
  • Experience implementing or managing controls within CIS, NIST, or ISO 27001 frameworks.
  • Proven ability to conduct enterprise-wide risk assessments and develop mitigation strategies.
  • Experience supporting security operations, vulnerability management, and incident response.
  • Familiarity with cloud and hybrid environments (Microsoft 365, Azure, AWS).
  • Understanding of European data protection regulations (GDPR).
  • Experience with GRC and risk-tracking platforms.
  • Strong knowledge of SIEM, endpoint detection, and vulnerability management tools.
  • Proficiencyin Power BI or equivalent analytics platforms.
  • Skilled in policy lifecycle management tools and automated compliance workflows.
Skillset
  • Governance Mindset: Designs and enforces scalable cybersecurity policies.
  • Risk Leadership: Identifies and communicates risks effectively to senior management.
  • Analytical Thinking: Translates complex threats into actionable controls.
  • Communication: Bridges technical and business perspectives with clarity.
  • Accountability: Drives ownership for risk reduction and audit readiness.
  • Collaboration: Works across departments to embed cybersecurity in operations.
  • Continuous Improvement: Evaluates emerging standards and integrates them proactively
Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.

oder ziehe deine Datei hierhin.

Similar jobs

Ähnliche Jobs, die dir auch gefallen könnten

Cyber Security Specialist
Cyber Security Specialist

NDT Global • Stutensee

Vor Ort
EUR 70.000 - 100.000
Full benefits package
Pension matching
Flexible time options
+3
Cyber security consulting services expert (all gernders)
Cyber security consulting services expert (all gernders)

Merck Gruppe • Darmstadt

Vor Ort
USD 70.069 - 116.782
Cybersecurity Specialist / Cybersecurity Engineer / Cloud Security Architect
Cybersecurity Specialist / Cybersecurity Engineer / Cloud Security Architect

Open Source United • Deutschland

Vor Ort
EUR 60.000 - 90.000
Cyber Hygiene Process & Governance Lead
Cyber Hygiene Process & Governance Lead

MAM Gruppe • Frankfurt

Vor Ort
EUR 90.000 - 130.000
Principal GRC and Cloud Architect
Principal GRC and Cloud Architect

LTM • München

Vor Ort
EUR 130.000 - 180.000
Cybersecurity Engineer - Cloud, Ops (human)
Cybersecurity Engineer - Cloud, Ops (human)

NEURA Robotics • Deutschland

Vor Ort
USD 120.000 - 160.000
ICT GRC – Risk & Compliance Manager
ICT GRC – Risk & Compliance Manager

N26 • Berlin

Vor Ort
EUR 90.000 - 140.000
Senior Field Sales Executive, Audit & Assurance - Risk & Compliance (Germany)
Senior Field Sales Executive, Audit & Assurance - Risk & Compliance (Germany)

Wolters Kluwer • München

Vor Ort
EUR 90.000 - 130.000
Cybersecurity System Engineer / Technical Expert
Cybersecurity System Engineer / Technical Expert

NeuVerge-Tron GmbH • München

Vor Ort
EUR 90.000 - 130.000
Senior Information Security Consultant - GRC & Compliance
Senior Information Security Consultant - GRC & Compliance

HCLTech Germany • Düsseldorf

Vor Ort
EUR 90.000 - 130.000