Aktiviere Job-Benachrichtigungen per E-Mail!

VP Head of Cyber Defence Unit (all genders)

Evotec

Hamburg

Vor Ort

EUR 80.000 - 120.000

Vollzeit

Vor 30+ Tagen

Erhöhe deine Chancen auf ein Interview

Erstelle einen auf die Position zugeschnittenen Lebenslauf, um deine Erfolgsquote zu erhöhen.

Zusammenfassung

Eine etablierte Branche sucht einen Head of Cyber Defence Unit, der die IT-Sicherheitsstrategie leitet und innovative Sicherheitslösungen implementiert. In dieser Schlüsselposition sind Sie verantwortlich für die Entwicklung und Durchsetzung von Sicherheitsstandards und -richtlinien in einem dynamischen Umfeld. Sie arbeiten eng mit dem Chief Information Security Officer zusammen, um Sicherheitsstrategien in die IT- und Produktionsstrategien zu integrieren. Ihre Expertise in der Leitung von Sicherheitsteams und Ihr technisches Wissen über Sicherheitsnormen werden entscheidend sein, um die Sicherheitsziele des Unternehmens zu erreichen. Wenn Sie eine Leidenschaft für IT-Sicherheit haben und in einem schnelllebigen Umfeld arbeiten möchten, ist diese Rolle genau das Richtige für Sie.

Qualifikationen

  • Mindestens 8 Jahre Erfahrung in einer großen IT-Umgebung mit Schwerpunkt IT-Sicherheit.
  • Nachgewiesene Erfahrung in der Leitung von Sicherheitsteams und -projekten.

Aufgaben

  • Entwicklung und Implementierung der IT-Sicherheitsstrategie für die gesamte IT-Infrastruktur.
  • Leitung der internationalen IT-Sicherheitsorganisation und Koordination externer Anbieter.

Kenntnisse

IT-Sicherheitsmanagement
Risikomanagement
Kommunikationsfähigkeiten
Teamführung
Technisches Wissen über Sicherheitstechnologien
Anpassungsfähigkeit an neue Sicherheitsherausforderungen

Ausbildung

Bachelor oder Master in Betriebswirtschaft oder Informatik
Zertifizierungen wie PMP, ITIL, ISO 27001
Zertifizierungen wie CISSP, CISM, SANS, GSEC

Tools

IT-Sicherheitsarchitektur
Sicherheitsüberwachungs-Tools

Jobbeschreibung

The Head of Cyber Defence Unit is responsible for the design, implementation, and operation (PLAN BUILD RUN) of all technical security solutions and processes. They drive the security vision within IT and beyond, in areas like production, digital products, and facility management. The HoITSEC acts as the authority for the development and enforcement of technical enterprise security strategy, standards, and policies.

The HoITSEC is also a close sparring partner to the Chief Information Security Officer (CISO) for aligning Information Security Governance and the technical and procedural adoption of ISMS policies and requirements.

Key Responsibilities:

  1. Developing and implementing the IT Security strategy (covering IT infrastructure, IT applications, cloud, on-premise) and incorporating it into the IT strategy.
  2. Incorporating the IT security strategy into the production and R&D strategies.
  3. Establishing a companywide enterprise IT security architecture.
  4. Defining and enforcing technical security standards and operational policies.
  5. Driving “Security by Design” in relevant business areas.
  6. Integrating IT Security into IT processes (IT service management, IT operations management).
  7. Establishing IT security in projects (security concepts, security reviews) and overseeing the whole project portfolio regarding security relevance and priorities.
  8. Establishing processes for security operations, including running the security operations center/cyber defence center.
  9. Managing the international IT security organization and its team of security experts.
  10. Coordinating external IT security suppliers and operators.
  11. Planning and performing technical and procedural IT Security audits in the areas of architecture, engineering, and operations.
  12. Reporting vulnerabilities and technical risks to the CIO and CISO.
  13. Handling security incidents in close cooperation with Information Security Governance (CISO).
  14. Defining and creating IT skills and necessary resources (FTE) for IT Security.
  15. Raising awareness for IT Security in target areas (IT, Production, R&D, Facility).

Ideal Qualifications:

  1. Bachelor's or Master's degree in Business Administration, Information Technology, or a related field, or an equivalent qualification.
  2. Industry certifications such as PMP, ITIL, ISO 27001, Agile.
  3. Industry certifications such as CISSP, CISM, SANS, GSEC, etc. (preferred, but not required).
  4. Minimum 8 years’ experience working in a large-scale IT environment on IT security and risk, including 5 years of managing security organizations/teams.
  5. Experience in leading a team in the design and assessment of IT security solutions, preferably in a financial services environment.
  6. A proven track record in dealing with complex security projects and managing conflicting situations and crisis scenarios.
  7. Ability to adapt to a fast-moving IT security landscape and keep pace with the latest concepts, new security challenges, and cyber threats.
  8. Profound technical knowledge of security technologies (network, cloud, Identity & Access, etc.).
  9. Profound knowledge of security norms and standards (ISO 27001, NIST, CIS, GMP).
  10. Profound knowledge of enterprise IT Security solutions.
  11. Strong experience in Security monitoring/Security Operations Centre (SOC).
  12. Thrives on change, showing an ability to constantly develop IT security.
  13. Ability to build relationships and interact effectively with internal and external parties.
  14. Excellent communication skills, with the ability to translate complex technical concepts into understandable language.
  15. Excellent written and verbal communication skills in English; German language skills would be an advantage.
  16. Experience in a regulated industry such as pharmaceuticals, biotech, or healthcare is preferred.
Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.
eine PDF-, DOC-, DOCX-, ODT- oder PAGES-Datei bis zu 5 MB per Drag & Drop ablegen.