Information Security Officer

ÜBER UTIMACO

Utimaco ist ein international tätiger Anbieter von professionellen IT-Sicherheitslösungen mit Sitz in Aachen. Seit 1983 entwickelt Utimaco Hardware Security Module und Compliance-Lösungen für Telekommunikationsanbieter im Bereich der Regulierung. In beiden Segmenten ist Utimaco ein weltweiter Marktführer. Dem Unternehmensziel, Menschen und Ideen zu schützen, haben sich über 200 Mitarbeiterinnen und Mitarbeiter verschrieben. Kunden und Partner von Utimaco schätzen die Zuverlässigkeit und die langfristige Investitionssicherheit der Utimaco-Sicherheitslösungen. Utimaco steht für anerkannte Produktqualität, Bedienerfreundlichkeit, exzellenten Support und ein marktgerechtes Angebot, hergestellt in Deutschland.

Zur Verstärkung unserer Corporate Unit suchen wir ab sofort am Standort Aachen, Düsseldorf einen:   

Information Security Officer

Deine Aufgaben:

  • Manage/Contribute to the continuous improvement of the information security management framework, policies, standards, and procedures.

  • Coordinate information security risk assessments, risk treatment plans, and risk acceptance processes.

  • Maintain the security risk register and report key risks, trends, and remediation progress to management.

  • Support the operation and continual improvement of the Information Security Management System (ISMS).

  • Prepare for and support internal and external security audits, certifications, customer assessments, and regulatory reviews.

  • Monitor compliance with applicable legal, regulatory, contractual, and internal security requirements.

  • Coordinate incident preparedness, including security incident procedures, exercises, lessons learned, and follow-up actions.

  • Support vulnerability, threat, access, asset, and third-party security management activities.

  • Promote secure working practices through security awareness training, communications, and targeted guidance.

  • Advise project and product teams on security requirements, secure design, data protection, and risk-based controls.

  • Contribute to business continuity, disaster recovery, and organizational resilience planning.

  • Define and track meaningful security metrics and management reports.

  • Work with stakeholders to ensure security findings and audit actions are prioritized and closed effectively.

  • Keep current with relevant threats, standards, regulatory developments, and industry practices

Dein Profil:

  • Bachelor’s degree in information security, cybersecurity, computer science, information technology, engineering, risk management, or a related discipline; equivalent professional experience may be considered.

  • Typically 5–8 years of relevant experience in information security, cybersecurity, IT risk, security governance, security operations, audit, compliance, or a related field.

  • Experience working in an international, matrixed, regulated, technology-driven, or multi-site organization.

  • Practical experience with information security risk assessments, control implementation, security policies, audit support, and remediation tracking.

  • Experience supporting security incident response, vulnerability management, access governance, business continuity, or cyber resilience activities.

  • Experience working with European privacy and security requirements; practical knowledge of GDPR and German data protection expectations is desirable.

  • Experience coordinating stakeholders across multiple countries and functions.

  • Experience with third-party risk assessments, supplier due diligence, or customer security questionnaires is advantageous.

  • Experience in security awareness, training, communications, or security culture programs is advantageous.

  • Relevant professional certifications are desirable, such as CISSP, CISM, CRISC, ISO/IEC 27001 Lead Implementer or Lead Auditor, CompTIA Security+, GIAC certifications, or equivalent qualifications.

  • Fluency in English is required. Professional working proficiency in German is highly desirable.

Wir bieten Dir:

  • An open and friendly corporate culture characterized by constructive and collaborative interaction
  • Early risers and night owls - thanks to a flexible working model you can organise your working day yourself
  • We also support you privately - benefit from special payments or additional vacation days on anniversaries or other special occasions
  • Utimaco is growing and living diversity! Our global team includes colleagues from 42 nationalities and 45 different languages spoken

FÜHLST DU DICH ANGESPROCHEN?

Dann freuen wir uns auf Deine aussagekräftige Bewerbung unter Angabe des frühestmöglichen Eintrittstermins und Deiner Gehaltsvorstellung.