Senior Consultant in Information Security at carmasec designing ISMS solutions for clients. Collaborating on projects to enhance cybersecurity and regulatory compliance.
Responsibilities
You develop tailored ISMS solutions for our clients
You create policies and practical security concepts
You implement technical and organizational measures
You carry out exciting projects to ensure compliance with new regulatory requirements (e.g., NIS-2, DORA) and prepare our clients optimally for the future
You help our clients detect threats early and establish processes for efficient IT risk management
You conduct Business Impact Analyses
You support our clients in embedding information security as an integral part of their organization
Together we look for projects that match your interests. You have a say in which client project you will work on.
Requirements
Several years of practical experience in the field of information security
Willingness to take responsibility and make decisions
Enthusiasm for personal development and continuous learning
Strong ability for self-organization and efficient work planning
Strong interpersonal and leadership skills
Experience applying standards and regulatory requirements (e.g., ISO 27001, BSI IT-Grundschutz) and adapting them to individual client needs
Benefits
Freedom to pursue your ideas: room to experiment, an open error culture, and the opportunity to help shape company structures are a matter of course for us
Mentorship: Our experienced colleagues support you in your personal and professional development
Flexible working hours: Work during your most productive hours and schedule private commitments flexibly. Overtime is compensated
Additional benefits: Choose from options such as a Germany-wide job ticket, Urban Sports Club membership, childcare subsidy for daycare places, or a company bike (JobRad)
Training and certification: We invest in your development through regular training and recognized certifications
Low travel requirements: We work remotely or from our offices in Cologne or Essen. On-site client meetings are the exception
Teambuilding: Our monthly Open Space is dedicated to creative work on current topics. Regular events (e.g., joint workation, summer party, or Christmas party) are planned and organized by the team
Workation and sabbatical options: Combine work and travel or take an extended break as part of a sabbatical
Vacation: 30 days of annual leave per year and special leave for significant life events
IT - Systemadministrator managing physical security systems and multimedia solutions. Administration, support, and project involvement in multimedia and surveillance technologies in Roding.
Security Officer performing patrols, emergency response, and customer service at Climax Molybdenum. Managing site security and assisting with emergency situations at various locations.
Security Officer overseeing safety inspections and personnel training for Crown Equipment Corporation. Responsible for monitoring facilities and responding to security incidents.
Security Officer leading safety inspections and facility patrols at Crown Equipment Corporation. Assigning duties and responding to security incidents efficiently.
Manager of Security Risk at Grainger overseeing Information Security Risk team and managing security risk programs. Focused on regulatory compliance, leadership, and risk assessment integration.
SAP Security GRC Consultant involved in designing and implementing security architectures for Swiss clients. Collaborating with project teams on compliance and security solutions.
Senior Consultant with Wavestone providing SAP Security and IAM solutions in Switzerland. Collaborating on security architectures and supporting clients on SAP security transformations.
Network Security Engineer ensuring secure, highly available enterprise network systems with a focus on collaboration and technical excellence. Involves designing and implementing networking solutions.
Security Manager at Leonardo focusing on cyber compliance and risk management across OT and IT frameworks. Supporting clients in strategic initiatives and infrastructure assessments.
Senior Analyst leading cybersecurity governance initiatives at Elsevier. Developing and maturing governance programs for data protection and risk management across the organization.