Get more replies from employers
Send a job-specific resume in minutes.
Trinamics seeks a Senior Security Risk Manager to oversee information security and compliance risks within the R&D domain. The role embeds risk management within business sectors, enabling security while preserving agility across cloud and on-prem projects.
You will drive risk assessments, define controls, and partner with DevOps and IT teams to mature security posture in Azure/GCP-centric environments, with a focus on SAFe/Agile methods and secure-by-design principles across R&D
As a Senior Security Risk Manager, you will manage information security and compliance risks within the R&D domain — a challenging position in an intellectual-property-driven enterprise.
In our security governance model, information security risk management is embedded within the business sectors themselves, through sector-level security risk management functions.
The Hardware Cluster Security and Compliance team operates within the Research & Development domain, which includes D&E, System Engineering, intellectual property, and the Business Lines. The team helps R&D teams integrate new (public cloud) services into their business processes by providing architectural guidance, controlling costs, and ensuring operations remain within the R&D risk appetite.
As part of this information security risk manager role, you will be responsible for:
The majority of the work will focus on R&D cloud initiatives but will also include on-premises projects.
(core activities, expected outputs, regulatory & legal requirements)
Ensure security risks remain within the defined risk appetite by timely identifying and assessing risks, and proposing mitigating controls in line with best practices, policies, and standards. Identify gaps, propose improvements, and update or create policies, standards, and methods. Monitor and report on adherence to required security controls. Drive business awareness of security processes and initiatives, and define key guidelines to resolve recurring gaps.
This role focuses on information security within hardware-related departments, including performing information security risk management activities across the various phases of cloud initiatives to ensure security by design. Beyond these domains, you will also be expected to perform or assist with generic security risk assessments and support the Information Management department as a whole. Stakeholder management across the R&D business is essential to gather security priorities, present the risk portfolio, and secure firm commitment to mitigation efforts. You will help drive and shape information management security and compliance initiatives for business adoption, playing an influential role in embedding secure-by-design principles.