Information Security Officer

Iduet

Dortmund

Vor Ort

EUR 65.000 - 90.000

Vollzeit

vor 10 Stunden
Sei unter den ersten Bewerbenden

Erhalte mehr Antworten von Arbeitgebern

Versende in nur wenigen Minuten einen passgenauen Lebenslauf.

Zusammenfassung

Iduet is seeking a regional information-security professional to implement and continuously improve security standards across the DACH region. You will translate international strategy into practical regional plans, working with IT leaders and Security Champions to reduce risk.

You will engage in governance, operations and security engineering as needed, coordinating across business units and countries. German and English fluency are required, with travel across the region expected.

Qualifikationen

  • Five+ years in a complex information-security role.
  • Experience in governance and operational security delivery.
  • Experience with risk assessments, compliance oversight, control monitoring, remediation.
  • Exposure to incident response, vulnerability management, penetration testing, monitoring and third-party risk.
  • Experience coordinating across multiple units or countries.
  • Fluency in German and English with strong written and verbal skills.

Aufgaben

  • Translate group-level security strategy into regional governance, roadmaps and implementation plans.
  • Chair regional security forums with business-unit management, IT leadership and Security Champions.
  • Support management in evaluating security performance, overseeing compliance and resource allocation.
  • Act as regional contact for information-security with clear, pragmatic advice to senior stakeholders.
  • Ensure security policies and procedures are documented, communicated and maintained across the region.
  • Monitor compliance, identify control gaps and drive remediation across local units.
  • Define and report meaningful security KPIs, control effectiveness, risks and remediation progress.
  • Lead security risk assessments and mitigation plans with timely follow-up of material risks.
  • Coordinate regional adoption of security services including detection, response and monitoring.
  • Support incident coordination, security requests and crisis-management activities.
  • Drive vulnerability assessments, pentesting and secure SDLC practices.
  • Support third-party cyber-risk management and risk-treatment plans.
  • Drive regional security initiatives with milestones and measurable outcomes.
  • Prioritise improvements across IAM, MFA, patching, endpoints, networks and cloud security.

Kenntnisse

Governance
Ops engagement
Risk assessment
Incident response
Security monitoring
Stakeholder mgmt
Compliance
Languages: German/English

Jobbeschreibung

International multi-site organisation | Germany / DACH region

The opportunity

This regional role is accountable for implementing, maintaining and continuously improving information-security standards, policies, processes and procedures across the DACH region. You will help translate an international security strategy and roadmap into practical adoption and measurable impact within local business units.

Working closely with regional management, IT leaders and Security Champions, you will establish effective security governance, advise senior stakeholders and drive measurable risk reduction. The role combines governance and stakeholder leadership with a willingness to engage directly in operational and engineering matters.

What you will do
  • Translate group-level information-security strategy and standards into regional governance structures, security calendars, roadmaps and implementation plans.
  • Establish, chair and coordinate information-security management forums with business-unit management, IT leadership and Security Champions.
  • Support management teams in evaluating security performance, overseeing compliance and ensuring appropriate resources are available for continual improvement.
  • Act as the primary regional contact for information-security matters and provide clear, pragmatic and business-focused advice to senior stakeholders.
  • Ensure security policies, standards, processes and procedures are documented, implemented, communicated and maintained across the region.
  • Monitor compliance, identify control gaps and drive appropriate remediation across local business units.
  • Define and report meaningful security KPIs, control effectiveness, material risks, incidents, exceptions and remediation progress.
  • Lead information-security risk assessments, define pragmatic mitigation plans and ensure timely follow-up of material risks and control gaps.
  • Coordinate regional adoption of security services, including detection and response, vulnerability management, security monitoring and incident-response capabilities.
  • Support the coordination, investigation and follow-up of security incidents, security requests and crisis-management activities.
  • Drive vulnerability assessments, penetration testing and red-team exercises, and promote secure practices throughout the software-development lifecycle.
  • Support third-party cyber-risk management, including supplier assessments, contractual security requirements and risk treatment plans.
  • Drive regional security initiatives with clear owners, milestones, dependencies and measurable outcomes.
  • Prioritise improvements across identity and access management, privileged access, MFA, vulnerability and patch management, endpoints, networks, cloud security, backup and recovery, and end-of-life remediation.
  • Promote security awareness and enable Security Champions to build a sustainable culture of accountability and secure behaviour.
What you bring
  • A strong understanding of information-security governance, risk, controls, compliance, incident response, vulnerability management and security monitoring.
  • Hands-on security experience and a willingness to engage in security operations and engineering activities when required.
  • The ability to translate international security strategy and standards into pragmatic regional and business-unit implementation plans.
  • Excellent analytical and communication skills, with the ability to explain risks, priorities and required actions clearly to senior stakeholders.
  • Strong organisational skills, attention to detail and the ability to manage multiple initiatives, timelines and dependencies across business units.
  • The ability to influence effectively in a federated organisation and build trust with management, IT leaders, Security Champions and central functions.
  • An action-oriented, results-driven approach, with a strong sense of urgency and commitment to thorough execution.
  • Sound judgement, discretion and respect for confidentiality.
Experience and qualifications
  • At least five years of experience in a complex information-security role, ideally within an international or multi-site organisation.
  • Demonstrable experience spanning security governance as well as operational security delivery.
  • Experience with security risk assessments, compliance oversight, control monitoring and remediation programmes.
  • Practical exposure to incident response, vulnerability management, penetration testing, security monitoring and third-party cyber risk.
  • Experience coordinating stakeholders and initiatives across multiple business units or countries.
  • Professional fluency in German and English, with strong written and verbal communication skills.
Working arrangement

The role is based in eg. Dortmund or Hamburg region and requires fluency in German and has responsibility across the DACH region. Travelling to the opco's in the region is required. Further organisational and location details are shared during the recruitment process.

Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.
oder ziehe deine Datei hierhin.
Similar jobs

Ähnliche Jobs, die dir auch gefallen könnten

Information Security Manager
Information Security Manager

Digital Waffle • Berlin

Hybrid
EUR 85.000 - 100.000
Information Security Officer (m/f/d)
Information Security Officer (m/f/d)

IDEALworks GmbH • München

Hybrid
EUR 70.000 - 90.000
30 vacation days
Bonus scheme
Company pension scheme
+1
(Senior) Information Security Officer (German)
(Senior) Information Security Officer (German)

United States Digital Space LLC • München

Vor Ort
EUR 90.000 - 130.000
IT Security Specialist Europe (m/f/d)
IT Security Specialist Europe (m/f/d)

KYOCERA AVX Components (Munich) GmbH • Goldach

Vor Ort
EUR 65.000 - 90.000
Flexible working hours
Up to 5 days of mobile work per month
30% travel across Europe
+1
Junior Information Security Officer
Junior Information Security Officer

Zync. • Deutschland

Hybrid
EUR 55.000 - 65.000
Competitive compensation package
30 vacation days per year
Flexible working hours
+4
IT Security Specialist Europe (m/f/d)
IT Security Specialist Europe (m/f/d)

KYOCERA AVX Components (Munich) GmbH • Hallbergmoos

Vor Ort
EUR 65.000 - 90.000
Permanent employment
Flexible working hours
Up to 5 days of mobile work per month
+6
Cyber Security Assurance Lead – Information Security
Cyber Security Assurance Lead – Information Security

Michael Bailey Associates • Berlin

Hybrid
EUR 70.000 - 90.000
Information Security (Senior) Manager (m/w/d)
Information Security (Senior) Manager (m/w/d)

NVISO Security • Frankfurt

Vor Ort
EUR 90.000 - 115.000
Training budget of 10,000 EUR
30 days of vacation
Flexible working hours
+2
Cyber Security Manager- IT/OT (m/f/d)
Cyber Security Manager- IT/OT (m/f/d)

eAces GmbH • Köln

Vor Ort
Vertraulich
Cyber Security Manager- IT/OT (m/f/d)
Cyber Security Manager- IT/OT (m/f/d)

eAces GmbH • Köln

Vor Ort
Vertraulich