Developing and running product security management systems with an international team. Leading cybersecurity initiatives and collaborating with stakeholders for comprehensive security strategies.
Responsibilities
Develop, implement, and maintain the Product Security Management System (PSMS) and build the international team to support it
Develop a product security concept, taking into account threat landscapes and the company’s business and technology strategies
Advise development projects on cybersecurity requirements
Lead and coordinate the globally distributed PSIRT (Product Security Incident Response Team)
Manage the Coordinated Vulnerability Disclosure (CVD) process
Monitor and implement relevant regulatory requirements, with a focus on the Cyber Resilience Act
Participate in standardization activities in standards committees and industry associations
Conduct regular threat analyses and oversee penetration tests
Play a key role in internal training on the topic to transfer knowledge across the organization
Collaborate with internal and external stakeholders to ensure a holistic security approach
Requirements
University degree, ideally in IT security, computer science, (industrial/business) engineering, or a comparable field
Several years of professional experience, ideally in the relevant field
Extensive knowledge of current security technologies, encryption methods, authentication mechanisms, and network security
Knowledge of process management and security standards such as ISO/IEC 27001 and IEC 62443
Familiarity with regulatory frameworks such as the Cyber Resilience Act (CRA) and NIS2
Strong communication and planning skills
Strategic thinking and a high degree of initiative
Excellent written and spoken German and English
Experience leading interdisciplinary teams is an advantage
Strong identification with our company values: Long-term thinking, Committed to excellence, Always respectful, Passionate about customers
Sales Account Manager for Cyber Security and Awareness role at HvS - Consulting GmbH. Providing holistic consulting on Cyber Security services and managing client relationships.
Security Engineer at PRC - Saltillo safeguarding IT infrastructure from cyber threats. Collaborating with IT teams to design and maintain security controls in a hybrid work environment.
Information Security Manager leading cyber security initiatives at NVISO, enhancing clients’ security posture and managing a team of consultants in Germany.
Cybersecurity Assessment Expert at IT - Strat managing A&A of information systems for U.S. federal clients. Ensuring compliance with DOD cybersecurity policies and standards in complex IT environments.
Senior Security Engineer responsible for deploying and maintaining endpoint security solutions. Collaborating across teams to enhance security posture and supporting incident response activities.
Administrative support role within MAHLE's Thermal and Fluid Systems unit, assisting the team with various operational tasks and employee interactions.
Senior Security Engineer at PagBank focusing on application security and secure development practices. Responsibilities include testing, vulnerability management, and collaboration with development teams.
Security Software Engineer at a tool - building company automating coding. Focused on shipping secure products covering enterprise security, cloud, and embedded protections.
Senior Product Cyber Security Systems Engineer at Sonova focusing on product security and cyber threats. Collaborating with teams to maintain robust security practices and compliance.