Information Security Governance Manager at Knauf leading global information security governance. Focused on shaping policies, frameworks, and optimising ISMS while ensuring stakeholder engagement.
Responsibilities
Shape global information security governance within Knauf’s Information Security organisation, setting direction at scale
Create, maintain, and align core governance documents - Charter, Policy, and Standards - with evolving internal and external requirements
Establish and embed our Information Security Governance Framework worldwide, engaging stakeholders to drive understanding and ownership
Monitor and improve the effectiveness of governance and controls, delivering clear reporting and actionable insights
Champion the continuous optimisation of our ISMS, aligning processes, metrics, and audits with security and business objectives
Requirements
Degree in computer science, information security, or a related field, with substantial experience in IT/information security governance
Experienced advisor in information security, comfortable navigating complex organisations and influencing outcomes
Deep knowledge of security frameworks and best practice (ISO 27001/2, NIST CSF, BSI, CIS/SANS Controls)
Certifications such as CISSP, CISA, CISM, or ISO/IEC 27001 Lead Auditor/Implementer are a strong plus
A clear, collaborative communicator, fluent in English; German language skills are a distinct advantage
Benefits
30 days of vacation
Special leave for certain occasions
Flexitime account with a broad time window for flexible working and weekly home office days.
Discounts on various sports and leisure activities (e.g., fitness studio Iphofen, swimming training, soccer, etc.)
Opportunities for active health promotion through our company doctor and occupational health and safety offers.
Ample parking and access to public transport (train, bus).
Individual onboarding days, company and team events
Individual support and promotion for part-time studies, further education and training.
Discounts on well-known brands and reduced-price employee purchases.
Using tax advantages while promoting your own health.
Security Architect leading security strategy development and implementation for Kyndryl. Conducting performance testing and ensuring compliance with security guidelines and audits.
Junior Consultant working on Cyber Security standards and customer advisory at MKS4U IT - Beratungs GmbH. Engaging in security assessments and developing long - term security strategies.
IT - Security Consultant at Institut für Datenschutz und Datensicherheit guiding IT compliance and security strategies. Engage with clients to enhance IT security practices across Germany.
Business Development Representative creating and managing lead generation pipelines for cybersecurity solutions. Engaging with enterprise clients in Switzerland and Germany in a hybrid work model.
Information Security Manager leading CISOaaS or GRC consultants for NVISO in Germany. Enhancing clients’ cybersecurity posture and driving strategic security initiatives.
Information Security Officer responsible for developing and implementing security strategies at an IT service provider for the food and beverage industry. Engaging with teams and management on cyber risks and compliance.
Técnico de Segurança do Trabalho JR assisting with safety documentation and training for field activities at Arcadis. Focused on sustainable solutions in engineering and consulting.
Infra Security Engineer focusing on endpoint security solutions in South Korea's urban mobility services. Collaborating on security architecture and threat detection initiatives.
Compliance Specialist managing documentation and policies for Orro's Information Security Management System. Supporting essential compliance activities across ISO 27001 and IRAP with strong attention to detail.
Senior Security Engineer managing the vulnerability management program and collaborating with engineering teams at Causaly. Focused on cloud security and secure coding practices.