Information Security Officer

Utimaco

Düsseldorf

Hybrid

EUR 90.000 - 150.000

Vollzeit

14 Tage+
Bewerbungsgenerator

Eine maßgeschneiderte Bewerbung für diese Stelle — ein maßgeschneiderter Lebenslauf und ein Anschreiben, die genau zur Stellenanzeige passen.

Schaffe es an den ATS-Filtern vorbei

Benefits dieser Stelle

Flexible working model
Extra vacation days on anniversaries
Diversity & inclusion

Zusammenfassung

Utimaco is an international provider of IT security solutions and cybersecurity technologies with headquarters in Aachen (Germany) and Campbell (USA). We are the world's leading manufacturer of hardware security modules and compliance solutions; join us to help make the digital world more secure.

Utimaco seeks an experienced Information Security Manager to lead ISMS, risk assessments, audits, and regulatory reviews across our multinational organization.

Qualifikationen

  • Bachelor’s degree in information security, cybersecurity, IT, engineering, risk management, or a related discipline; equivalent experience may be considered.
  • Typically 5–8 years of relevant experience in information security, IT risk, governance, operations, audit, or compliance.
  • Experience in international, matrixed organizations with regulatory requirements.
  • Practical experience with risk assessments, controls, audits, remediation tracking, and incident response.
  • Knowledge of GDPR and data protection expectations is desirable.
  • Fluency in English; German proficiency is a plus.

Aufgaben

  • Manage and contribute to the continuous improvement of the ISMS framework, policies, standards, and procedures.
  • Coordinate information security risk assessments, risk treatment plans, and risk acceptance processes.
  • Maintain the security risk register and report key risks, trends, and remediation progress to management.
  • Support the operation and continual improvement of the ISMS.
  • Prepare for and support internal and external audits, certifications, and regulatory reviews.
  • Monitor compliance with applicable legal, regulatory, contractual, and internal security requirements.
  • Coordinate incident preparedness, including security incident procedures, exercises, and follow‑up actions.
  • Support vulnerability, threat, access, asset, and third‑party security management activities.
  • Promote secure working practices through security awareness training and guidance.
  • Advise project/product teams on security requirements, secure design, data protection, and risk‑based controls.
  • Contribute to business continuity, disaster recovery, and organizational resilience planning.
  • Define and track meaningful security metrics and management reports.
  • Work with stakeholders to ensure security findings and audit actions are prioritized and closed.

Kenntnisse

English fluency
German desirable
Stakeholder coordination
Security governance
ISMS knowledge

Ausbildung

Bachelor’s degree in information security / related field

Tools

GDPR knowledge
Audit tools

Jobbeschreibung

Utimaco is an international provider of IT security solutions and cybersecurity technologies with headquarters in Aachen (Germany) and Campbell (USA). For over 40 years, we have been developing innovative solutions for the protection of people, data and communications that meet the highest standards. We are the world's leading manufacturer of hardware security modules and compliance solutions in a wide range of industries such as automotive, banking, telecommunications and many more. With our global network of partners and customers, we contribute to making digital information and infrastructures secure worldwide. Become part of our team and help us make the digital world more secure - together we are shaping the future of IT security.

Key Responsibilities
  • Manage/Contribute to the continuous improvement of the information security management framework, policies, standards, and procedures.
  • Coordinate information security risk assessments, risk treatment plans, and risk acceptance processes.
  • Maintain the security risk register and report key risks, trends, and remediation progress to management.
  • Support the operation and continual improvement of the Information Security Management System (ISMS).
  • Prepare for and support internal and external security audits, certifications, customer assessments, and regulatory reviews.
  • Monitor compliance with applicable legal, regulatory, contractual, and internal security requirements.
  • Coordinate incident preparedness, including security incident procedures, exercises, lessons learned, and follow‑up actions.
  • Support vulnerability, threat, access, asset, and third‑party security management activities.
  • Promote secure working practices through security awareness training, communications, and targeted guidance.
  • Advise project and product teams on security requirements, secure design, data protection, and risk‑based controls.
  • Contribute to business continuity, disaster recovery, and organizational resilience planning.
  • Define and track meaningful security metrics and management reports.
  • Work with stakeholders to ensure security findings and audit actions are prioritized and closed effectively.
  • Keep current with relevant threats, standards, regulatory developments, and industry practices.
Qualifications
  • Bachelor’s degree in information security, cybersecurity, computer science, information technology, engineering, risk management, or a related discipline; equivalent professional experience may be considered.
  • Typically 5-8 years of relevant experience in information security, cybersecurity, IT risk, security governance, security operations, audit, compliance, or a related field.
  • Experience working in an international, matrixed, regulated, technology‑driven, or multi‑site organization.
  • Practical experience with information security risk assessments, control implementation, security policies, audit support, and remediation tracking.
  • Experience supporting security incident response, vulnerability management, access governance, business continuity, or cyber resilience activities.
  • Experience working with European privacy and security requirements; practical knowledge of GDPR and German data protection expectations is desirable.
  • Experience coordinating stakeholders across multiple countries and functions.
  • Experience with third‑party risk assessments, supplier due diligence, or customer security questionnaires is advantageous.
  • Experience in security awareness, training, communications, or security culture programs is advantageous.
  • Relevant professional certifications are desirable, such as CISSP, CISM, CRISC, ISO/IEC 27001 Lead Implementer or Lead Auditor, CompTIA Security+, GIAC certifications, or equivalent qualifications.
  • Fluency in English is required. Professional working proficiency in German is highly desirable.
Benefits & Culture
  • An open and friendly corporate culture characterized by constructive and collaborative interaction.
  • Early risers and night owls - thanks to a flexible working model you can organise your working day yourself.
  • We also support you privately - benefit from special payments or additional vacation days on anniversaries or other special occasions.
  • Utimaco is growing and living diversity! Our global team includes colleagues from 42 nationalities and 45 different languages spoken.
Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.

oder ziehe deine Datei hierhin.

Similar jobs

Ähnliche Jobs, die dir auch gefallen könnten

Information Security Officer
Information Security Officer

Utimaco • Aachen

Vor Ort
EUR 90.000 - 130.000
Flexible working model
Diversity and inclusion
Global team with 42 nationalities
PreSales Engineer (f/m/d) – Cybersecurity Solutions
PreSales Engineer (f/m/d) – Cybersecurity Solutions

Utimaco • Aachen

Vor Ort
EUR 60.000 - 100.000
Flexible working model
Company pension scheme
Diversity-friendly environment
IT specialist for System Integration
IT specialist for System Integration

Utimaco • Aachen

Vor Ort
EUR 65.000 - 90.000
Company car or car allowance
Company pension scheme
Flexible working model
+1
PreSales Engineer (f/m/d) – Cybersecurity Solutions
PreSales Engineer (f/m/d) – Cybersecurity Solutions

PreSales Collective • Aachen

Vor Ort
EUR 65.000 - 90.000
Open and friendly culture
Company pension scheme
Flexible working model
+2
IT specialist for system integration
IT specialist for system integration

Utimaco Safeware AG • Aachen

Vor Ort
EUR 60.000 - 90.000
Company pension
Flexible working model
On-site travel support
+1
Product Owner - Hardware
Product Owner - Hardware

Utimaco • Aachen

Vor Ort
EUR 90.000 - 120.000
Company pension
Flexible working model
Anniversary extra vacation days
+1
Linux Systems Engineer
Linux Systems Engineer

Utimaco Safeware AG • Deutschland

Vor Ort
EUR 70.000 - 100.000
Hybrid work
Learning opportunities
Flexible hours
+2
IT Project Manager (m/f/d)
IT Project Manager (m/f/d)

Utimaco • Aachen

Hybrid
EUR 90.000 - 120.000
Company pension scheme
Flexible working model
Special vacation days on anniversaries
DevOps Engineer
DevOps Engineer

Utimaco Safeware AG • Aachen

Vor Ort
EUR 65.000 - 85.000
Flexible working model
Company pension scheme
Additional vacation days on anniversaries
Linux Systems Engineer DE
Linux Systems Engineer DE

Utimaco • Aachen

Vor Ort
EUR 70.000 - 110.000
Flexible working hours
Hybrid work model
Learning opportunities and global team