(Senior) Consultant Information Security developing tailored ISMS solutions and security concepts for clients. Engaging in exciting projects to meet new regulatory requirements and manage IT risks.
Responsibilities
You develop tailored ISMS solutions for our clients
You create policies and practical security concepts
You implement technical and organizational measures
You lead exciting projects to comply with new regulatory requirements (e.g., NIS-2, DORA) and prepare our clients for the future
You help our clients detect threats early and establish processes for efficient IT risk management
You conduct Business Impact Analyses
You support our clients in embedding information security as an integral part of their organization
Together we look for projects that match your interests
You have a say in which client project you will work on.
Requirements
Several years of practical experience in information security
Willingness to take responsibility and make decisions
Enthusiasm for personal development and continuous learning
Strong self-organization skills and efficient work planning
Strong interpersonal and leadership skills
Experience applying standards and regulatory requirements (e.g., ISO 27001, BSI IT-Grundschutz) and adapting them to individual client needs
We welcome the following skills from you, otherwise you will learn these aspects during onboarding: confident use of consulting methods such as time management, project and client management, and quality management
Motivation to actively contribute to the further development of carmasec
In-depth knowledge of regulatory standards and industry frameworks (e.g., NIS-2, DORA, BAIT/VAIT, MaRisk, TISAX, CRA)
Ideally, professional experience in a consulting environment.
Benefits
Self-fulfillment: Freedom to experiment, an open error culture, and the opportunity to help shape company structures are part of our culture
Mentorship: Our experienced team members support you in your personal and professional development
Flexible working hours: Work during your most productive times and plan private commitments flexibly. Overtime is compensated
Additional benefits: Choose from offers such as the Germany job ticket (Deutschland-Ticket), Urban Sports Club membership, childcare subsidy, or company bike (JobRad)
Training & certifications: We invest in your development through regular training and recognized certifications
Low travel requirement: We work remotely or from our offices in Cologne or Essen. On-site client meetings are the exception
Team building: Our monthly Open Space is dedicated to creative work on current topics. Regular events (e.g., joint workation, summer party, or Christmas party) are planned and organized by the team
Workation: Combine work and travel or take an extended break as part of a sabbatical
Vacation: 30 days of annual leave and special leave for special occasions
Senior Information Security Engineer at Wells Fargo investigating insider threats and strengthening cybersecurity measures. Conducting advanced investigations and collaborating with cyber teams to mitigate risks.
Staff Product Manager overseeing enterprise security product strategy for Tenable. Collaborating with various teams to deliver customer - focused solutions and product features.
Program Security Representative providing multi - discipline security support for Special Access Programs. Ensuring compliance, developing policies, and conducting security assessments in a military context.
Information Systems Security Officer managing operational security posture for information systems at GDIT. Collaborating closely with ISSM and ISO, handling security aspects, and ensuring compliance with security standards.
Senior Cyber Security Project Manager at Airbus Protect managing medium complexity projects in Cyber Security Consulting. Focusing on project leadership and team management in diverse client settings.
Security Architect responsible for designing cloud security architectures for leading brands. Ensuring compliance and guiding incident response strategies in AWS environments.
Senior Security Consultant for ISMS Management at Bundesdruckerei GmbH in Berlin. Responsible for security analysis, management, and advisory roles on cybersecurity issues.
IT - Systemadministrator managing Video Surveillance and Alarm Systems at Mühlbauer. Supporting technical solutions for multimedia and conference systems with project involvement and ticket handling.
AI Application Security Architect in charge of driving secure development lifecycle for AI systems across multi - cloud environments and hybrid platforms.
Security Project Manager responsible for managing cyber - security project delivery and ensuring quality execution in Bulgaria. Requires excellent communication skills and fluency in English.