Aktiviere Job-Benachrichtigungen per E-Mail!

VP Head of Cyber Defence Unit (all genders)

Evotec

München

Vor Ort

EUR 80.000 - 120.000

Vollzeit

Vor 30+ Tagen

Erhöhe deine Chancen auf ein Interview

Erstelle einen auf die Position zugeschnittenen Lebenslauf, um deine Erfolgsquote zu erhöhen.

Zusammenfassung

Ein etabliertes Unternehmen sucht einen Head of Cyber Defence Unit, der für die Gestaltung und Umsetzung technischer Sicherheitslösungen verantwortlich ist. Diese Schlüsselrolle umfasst die Entwicklung von Sicherheitsstrategien, die Integration von Sicherheitsstandards in Unternehmensprozesse und die Leitung eines Teams von Sicherheitsexperten. In einem dynamischen Umfeld werden Sie die Sicherheitsarchitektur des Unternehmens gestalten und sicherstellen, dass Sicherheitskonzepte in allen Bereichen, einschließlich Produktion und R&D, implementiert werden. Wenn Sie leidenschaftlich an IT-Sicherheit interessiert sind und gerne in einem sich schnell verändernden Umfeld arbeiten, ist dies Ihre Chance.

Qualifikationen

  • Mindestens 8 Jahre Erfahrung in einer großen IT-Umgebung mit Fokus auf IT-Sicherheit.
  • Erfahrung in der Leitung von Teams zur Gestaltung von IT-Sicherheitslösungen.

Aufgaben

  • Entwicklung und Implementierung der IT-Sicherheitsstrategie für Infrastruktur und Anwendungen.
  • Management der internationalen IT-Sicherheitsorganisation und ihrer Experten.

Kenntnisse

IT-Sicherheitsmanagement
Risikomanagement
Projektmanagement (PMP, ITIL)
Kommunikationsfähigkeiten
Technisches Wissen über Sicherheitstechnologien
Fähigkeit zur Anpassung an Veränderungen

Ausbildung

Bachelor oder Master in Betriebswirtschaft oder Informatik
Industriezertifizierungen (z.B. PMP, ITIL, ISO 27001)

Tools

Sicherheitsüberwachung/Security Operations Centre (SOC)
ISO 27001
NIST

Jobbeschreibung

The Head of Cyber Defence Unit is responsible for the design, implementation, and operation (PLAN BUILD RUN) of all technical security solutions and processes. They drive the security vision within IT and beyond, in areas like production, digital products, and facility management. The HoITSEC acts as the authority for the development and enforcement of technical enterprise security strategy, standards, and policies.

The HoITSEC is also a close sparring partner to the Chief Information Security Officer (CISO) for aligning Information Security Governance and the technical and procedural adoption of ISMS policies and requirements.

Key Responsibilities:

  1. Developing and implementing the IT Security strategy (covering IT infrastructure, IT applications, cloud, on-premise) and incorporating it into the IT strategy.
  2. Incorporating the IT security strategy into the production and R&D strategies.
  3. Establishing a companywide enterprise IT security architecture.
  4. Defining and enforcing technical security standards and operational policies.
  5. Driving “Security by Design” in relevant business areas.
  6. Integrating IT Security into IT processes (IT service management, IT operations management).
  7. Establishing IT security in projects (security concepts, security reviews) and overseeing the whole project portfolio regarding security relevance and priorities.
  8. Establishing processes for security operations, including running the security operations center/cyber defence center.
  9. Managing the international IT security organization and its team of security experts.
  10. Coordinating external IT security suppliers and operators.
  11. Planning and performing technical and procedural IT Security audits in the areas of architecture, engineering, and operations.
  12. Reporting vulnerabilities and technical risks to the CIO and CISO.
  13. Handling security incidents in close cooperation with Information Security Governance (CISO).
  14. Defining and creating IT skills and necessary resources (FTE) for IT Security.
  15. Raising awareness for IT Security in target areas (IT, Production, R&D, Facility).

Ideal Qualifications:

  1. Bachelor's or Master's degree in Business Administration, Information Technology, or a related field, or an equivalent qualification.
  2. Industry certifications such as PMP, ITIL, ISO 27001, Agile.
  3. Industry certifications such as CISSP, CISM, SANS, GSEC, etc. (preferred, but not required).
  4. Minimum 8 years’ experience working in a large-scale IT environment on IT security and risk, including 5 years of managing security organizations/teams.
  5. Experience in leading a team in the design and assessment of IT security solutions, preferably in a financial services environment.
  6. A proven track record in dealing with complex security projects and managing conflicting situations and crisis scenarios.
  7. Ability to adapt to a fast-moving IT security landscape and keep pace with the latest concepts, new security challenges, and cyber threats.
  8. Profound technical knowledge of security technologies (network, cloud, Identity & Access, etc.).
  9. Profound knowledge of security norms and standards (ISO 27001, NIST, CIS, GMP).
  10. Profound knowledge of enterprise IT Security solutions.
  11. Strong experience in Security monitoring/Security Operations Centre (SOC).
  12. Thrives on change, showing an ability to constantly develop IT security.
  13. Ability to build relationships and interact effectively with internal and external parties.
  14. Excellent communication skills, with the ability to translate complex technical concepts into understandable language.
  15. Excellent written and verbal communication skills in English; German language skills would be an advantage.
  16. Experience in a regulated industry such as pharmaceuticals, biotech, or healthcare is preferred.
Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.
eine PDF-, DOC-, DOCX-, ODT- oder PAGES-Datei bis zu 5 MB per Drag & Drop ablegen.