Information Security Officer
ABOUT UTIMACO
Utimaco is a worldwide supplier of professional cyber-security solutions and is based in Aachen, Germany. Since 1983, Utimaco develops hardware security modules and compliance solutions for telecommunication provider regulations. Utimaco is a world-market leader in both segments. Customers and parters of Utimaco in all parts of the world trust the company's long-term, proven reliability and investments protection, as well as its many certified IT security standards. Utimaco stands for recognizes product quality, user-friendly software, excellent support and trusted high security-made in Germany.
To further strengthen our Corporate Unit we are looking for a: Information Security Officer
Your tasks:
Manage/Contribute to the continuous improvement of the information security management framework, policies, standards, and procedures.
Coordinate information security risk assessments, risk treatment plans, and risk acceptance processes.
Maintain the security risk register and report key risks, trends, and remediation progress to management.
Support the operation and continual improvement of the Information Security Management System (ISMS).
Prepare for and support internal and external security audits, certifications, customer assessments, and regulatory reviews.
Monitor compliance with applicable legal, regulatory, contractual, and internal security requirements.
Coordinate incident preparedness, including security incident procedures, exercises, lessons learned, and follow-up actions.
Support vulnerability, threat, access, asset, and third-party security management activities.
Promote secure working practices through security awareness training, communications, and targeted guidance.
Advise project and product teams on security requirements, secure design, data protection, and risk-based controls.
Contribute to business continuity, disaster recovery, and organizational resilience planning.
Define and track meaningful security metrics and management reports.
Work with stakeholders to ensure security findings and audit actions are prioritized and closed effectively.
Keep current with relevant threats, standards, regulatory developments, and industry practices
Your profile:
Bachelor’s degree in information security, cybersecurity, computer science, information technology, engineering, risk management, or a related discipline; equivalent professional experience may be considered.
Typically 5–8 years of relevant experience in information security, cybersecurity, IT risk, security governance, security operations, audit, compliance, or a related field.
Experience working in an international, matrixed, regulated, technology-driven, or multi-site organization.
Practical experience with information security risk assessments, control implementation, security policies, audit support, and remediation tracking.
Experience supporting security incident response, vulnerability management, access governance, business continuity, or cyber resilience activities.
Experience working with European privacy and security requirements; practical knowledge of GDPR and German data protection expectations is desirable.
Experience coordinating stakeholders across multiple countries and functions.
Experience with third-party risk assessments, supplier due diligence, or customer security questionnaires is advantageous.
Experience in security awareness, training, communications, or security culture programs is advantageous.
Relevant professional certifications are desirable, such as CISSP, CISM, CRISC, ISO/IEC 27001 Lead Implementer or Lead Auditor, CompTIA Security+, GIAC certifications, or equivalent qualifications.
Fluency in English is required. Professional working proficiency in German is highly desirable.
We offer you:
- An open and friendly corporate culture characterized by constructive and collaborative interaction
- Early risers and night owls - thanks to a flexible working model you can organise your working day yourself
- We also support you privately - benefit from special payments or additional vacation days on anniversaries or other special occasions
- Utimaco is growing and living diversity! Our global team includes colleagues from 42 nationalities and 45 different languages spoken
DO YOU FEEL ADDRESSED?
Then we look forward to receiving your detailed application stating your earliest possible starting date and your salary expectations.