Skip to content
New Job?Nejo!

The AI Job Search Engine

IDIDEALworks GmbH

Information Security Officer(m/w/x)

München
Full-timeOn-siteExperienced

Implementing and maintaining ISO 27001 and TISAX certifications for a deep tech company in logistics automation. Hands-on ISO 27001 implementation and TISAX experience required. 30 vacation days, annual personal development budget.

Requirements

  • Bachelor’s degree in Information Technology, Computer Science, or related field
  • 4 to 6 years work experience in information security, compliance, or IT governance
  • Hands-on experience with ISO 27001 implementation and audits
  • Experience in TISAX requirements and automotive security standards
  • Strong understanding of risk management, threat modelling, and vulnerability management
  • Experience with penetration testing tools and methodologies
  • Knowledge of infrastructure hardening and application security best practices
  • Deep understanding of regulatory frameworks and audit processes
  • Experience maintaining compliance documentation and evidence
  • Excellent problem-solving and analytical skills
  • Strong verbal and written communication skills in English, German is a plus
  • Ability to work in a highly agile, fast-paced environment

Tasks

  • Implement and maintain ISO 27001 and TISAX certifications
  • Coordinate internal and external audit preparation
  • Maintain the Statement of Applicability (SoA) and evidence for controls
  • Ensure adherence to regulatory and contractual security requirements
  • Develop and maintain compliance documentation, policies, and procedures
  • Lead security incident response and document incidents
  • Conduct root cause analysis and follow up on corrective actions
  • Manage the end-to-end Business Continuity Planning (BCP) process
  • Maintain BCP documentation and conduct periodic drills
  • Activate BCP during major incidents or disruptions
  • Coordinate communication with stakeholders during BCP activation
  • Identify, assess, prioritize, and track security risks
  • Monitor execution of mitigation plans
  • Perform and review threat modeling for critical systems
  • Oversee data classification and define retention periods
  • Support infrastructure hardening and application security initiatives
  • Enhance the security playbook AI model for incident response
  • Plan and coordinate penetration testing and vulnerability assessments
  • Prioritize and follow up on mitigation of penetration test findings
  • Act as a security and compliance subject matter expert for customer-facing teams
  • Respond to security questionnaires and RFPs

Work Experience

  • 4 - 6 years

Education

  • Bachelor's degree

Languages

  • EnglishBusiness Fluent
  • GermanBasic

Benefits

Competitive Pay

  • Above-average pay

Bonuses & Incentives

  • Bonus scheme

Additional Allowances

  • Annual personal development budget

More Vacation Days

  • 30 vacation days per year

Corporate Discounts

  • Exciting corporate benefits

Retirement Plans

  • Attractive company pension scheme

Team Events

  • Regular team events
Find the original job posting in its most current version here. Nejo automatically captured this job from the website of IDEALworks GmbH and processed the information on Nejo with the help of AI for you. Despite careful analysis, some information may be incomplete or inaccurate. Please always verify all details in the original posting! Content and copyrights of the original posting belong to the advertising company.

  • GWP Gesellschaft für Werkstoffprüfung mbH

    Information security officer / Data Governance Manager(m/w/x)

    Full-timeOn-siteExperienced
    München
  • Qwist GmbH

    Information Security Engineer(m/w/x)

    Full-timeOn-siteExperienced
    Berlin, München
  • Huawei Research Center Germany & Austria

    Intelligent Vehicle Cybersecurity Standardization Engineer(m/w/x)

    Full-timeOn-siteSenior
    München
  • Hawk

    Senior Information Security Analyst(m/w/x)

    Full-timeOn-siteSenior
    München
  • Huawei Research Center Germany & Austria

    Security Incident and Emergency Response - Legal & Compliance Liaison(m/w/x)

    Full-timeFreelanceOn-siteExperienced
    München
View all 100+ similar jobs

Nejo is an AI – results may be incomplete or contain mistakes