Information Security Officer

Utimaco

Aachen

Vor Ort

EUR 90.000 - 130.000

Vollzeit

14 Tage+
Bewerbungsgenerator

Verschicke keinen 08/15-Lebenslauf — erstelle einen Lebenslauf und ein Anschreiben, die genau auf diese Rolle zugeschnitten sind.

Schaffe es an den ATS-Filtern vorbei

Benefits dieser Stelle

Flexible working model
Diversity and inclusion
Global team with 42 nationalities

Zusammenfassung

Utimaco in Aachen is seeking an experienced Information Security Lead to advance the ISMS, coordinate risk assessments, and drive security governance across a multinational team. You will guide incident response, audits, and regulatory reviews, while aligning security with product and project goals.

The role requires 5–8 years in information security, English fluency, and strong collaboration across countries.

Qualifikationen

  • Bachelor’s degree in information security, cybersecurity, computer science, information technology, engineering, risk management, or a related discipline.
  • Typically 5-8 years of relevant experience in information security, cybersecurity, IT risk, security governance, security operations, audit, compliance, or a related field.
  • Experience working in an international, matrixed, regulated, technology‑driven, or multi-site organization.
  • Practical experience with information security risk assessments, control implementation, security policies, audit support, and remediation tracking.
  • Experience supporting security incident response, vulnerability management, access governance, business continuity, or cyber resilience activities.
  • Experience working with European privacy and security requirements; GDPR knowledge desirable.
  • Experience coordinating stakeholders across multiple countries and functions.
  • Experience with third‑party risk assessments and supplier due diligence is advantageous.
  • Relevant certifications like CISSP, CISM, CRISC, ISO/IEC 27001 Lead Implementer/Auditor, CompTIA Security+ are desirable.
  • Fluency in English is required; German working proficiency desirable.

Aufgaben

  • Manage/Contribute to the continuous improvement of the information security management framework, policies, standards, and procedures.
  • Coordinate information security risk assessments, risk treatment plans, and risk acceptance processes.
  • Maintain the security risk register and report key risks, trends, and remediation progress to management.
  • Support the operation and continual improvement of the Information Security Management System (ISMS).
  • Prepare for and support internal and external security audits, certifications, customer assessments, and regulatory reviews.
  • Monitor compliance with applicable legal, regulatory, contractual, and internal security requirements.
  • Coordinate incident preparedness, including security incident procedures, exercises, lessons learned, and follow‑up actions.
  • Support vulnerability, threat, access, asset, and third‑party security management activities.
  • Promote secure working practices through security awareness training, communications, and targeted guidance.
  • Advise project and product teams on security requirements, secure design, data protection, and risk‑based controls.
  • Contribute to business continuity, disaster recovery, and organizational resilience planning.
  • Define and track meaningful security metrics and management reports.
  • Work with stakeholders to ensure security findings and audit actions are prioritized and closed effectively.
  • Keep current with relevant threats, standards, regulatory developments, and industry practices.

Kenntnisse

5-8 years experience
English fluency
Stakeholder coordination

Ausbildung

Bachelor’s degree in information security or related discipline

Jobbeschreibung

Utimaco is an international provider of IT security solutions and cybersecurity technologies with headquarters in Aachen (Germany) and Campbell (USA). For over 40 years, we have been developing innovative solutions for the protection of people, data and communications that meet the highest standards. We are the world's leading manufacturer of hardware security modules and compliance solutions in a wide range of industries such as automotive, banking, telecommunications and many more. With our global network of partners and customers, we contribute to making digital information and infrastructures secure worldwide. Become part of our team and help us make the digital world more secure - together we are shaping the future of IT security.

Key Responsibilities
  • Manage/Contribute to the continuous improvement of the information security management framework, policies, standards, and procedures.
  • Coordinate information security risk assessments, risk treatment plans, and risk acceptance processes.
  • Maintain the security risk register and report key risks, trends, and remediation progress to management.
  • Support the operation and continual improvement of the Information Security Management System (ISMS).
  • Prepare for and support internal and external security audits, certifications, customer assessments, and regulatory reviews.
  • Monitor compliance with applicable legal, regulatory, contractual, and internal security requirements.
  • Coordinate incident preparedness, including security incident procedures, exercises, lessons learned, and follow‑up actions.
  • Support vulnerability, threat, access, asset, and third‑party security management activities.
  • Promote secure working practices through security awareness training, communications, and targeted guidance.
  • Advise project and product teams on security requirements, secure design, data protection, and risk‑based controls.
  • Contribute to business continuity, disaster recovery, and organizational resilience planning.
  • Define and track meaningful security metrics and management reports.
  • Work with stakeholders to ensure security findings and audit actions are prioritized and closed effectively.
  • Keep current with relevant threats, standards, regulatory developments, and industry practices.
Qualifications
  • Bachelor’s degree in information security, cybersecurity, computer science, information technology, engineering, risk management, or a related discipline; equivalent professional experience may be considered.
  • Typically 5-8 years of relevant experience in information security, cybersecurity, IT risk, security governance, security operations, audit, compliance, or a related field.
  • Experience working in an international, matrixed, regulated, technology‑driven, or multi‑site organization.
  • Practical experience with information security risk assessments, control implementation, security policies, audit support, and remediation tracking.
  • Experience supporting security incident response, vulnerability management, access governance, business continuity, or cyber resilience activities.
  • Experience working with European privacy and security requirements; practical knowledge of GDPR and German data protection expectations is desirable.
  • Experience coordinating stakeholders across multiple countries and functions.
  • Experience with third‑party risk assessments, supplier due diligence, or customer security questionnaires is advantageous.
  • Experience in security awareness, training, communications, or security culture programs is advantageous.
  • Relevant professional certifications are desirable, such as CISSP, CISM, CRISC, ISO/IEC 27001 Lead Implementer or Lead Auditor, CompTIA Security+, GIAC certifications, or equivalent qualifications.
  • Fluency in English is required. Professional working proficiency in German is highly desirable.
Benefits & Culture
  • An open and friendly corporate culture characterized by constructive and collaborative interaction.
  • Early risers and night owls - thanks to a flexible working model you can organise your working day yourself.
  • We also support you privately - benefit from special payments or additional vacation days on anniversaries or other special occasions.
  • Utimaco is growing and living diversity! Our global team includes colleagues from 42 nationalities and 45 different languages spoken.
Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.

oder ziehe deine Datei hierhin.

Similar jobs

Ähnliche Jobs, die dir auch gefallen könnten

Information Security Officer
Information Security Officer

Utimaco • Düsseldorf

Vor Ort
EUR 90.000 - 150.000
Flexible working model
Extra vacation days on anniversaries
Diversity & inclusion
PreSales Engineer (f/m/d) – Cybersecurity Solutions
PreSales Engineer (f/m/d) – Cybersecurity Solutions

Utimaco • Aachen

Vor Ort
EUR 60.000 - 100.000
Flexible working model
Company pension scheme
Diversity-friendly environment
IT specialist for System Integration
IT specialist for System Integration

Utimaco • Aachen

Vor Ort
EUR 65.000 - 90.000
Company car or car allowance
Company pension scheme
Flexible working model
+1
PreSales Engineer (f/m/d) – Cybersecurity Solutions
PreSales Engineer (f/m/d) – Cybersecurity Solutions

PreSales Collective • Aachen

Vor Ort
EUR 65.000 - 90.000
Open and friendly culture
Company pension scheme
Flexible working model
+2
IT specialist for system integration
IT specialist for system integration

Utimaco Safeware AG • Aachen

Vor Ort
EUR 60.000 - 90.000
Company pension
Flexible working model
On-site travel support
+1
Product Owner - Hardware
Product Owner - Hardware

Utimaco • Aachen

Vor Ort
EUR 90.000 - 120.000
Company pension
Flexible working model
Anniversary extra vacation days
+1
Linux Systems Engineer
Linux Systems Engineer

Utimaco Safeware AG • Deutschland

Vor Ort
EUR 70.000 - 100.000
Hybrid work
Learning opportunities
Flexible hours
+2
IT Project Manager (m/f/d)
IT Project Manager (m/f/d)

Utimaco • Aachen

Hybrid
EUR 90.000 - 120.000
Company pension scheme
Flexible working model
Special vacation days on anniversaries
DevOps Engineer
DevOps Engineer

Utimaco Safeware AG • Aachen

Vor Ort
EUR 65.000 - 85.000
Flexible working model
Company pension scheme
Additional vacation days on anniversaries
Linux Systems Engineer DE
Linux Systems Engineer DE

Utimaco • Aachen

Vor Ort
EUR 70.000 - 110.000
Flexible working hours
Hybrid work model
Learning opportunities and global team