Information Security Risk Management Specialist managing security risks across the Liebherr group. Supporting risk management and governance in information security with reporting to executive levels.
Responsibilities
supports the implementation and continuous operation of our Information Security Risk Management Product
Responsible for identifying, documenting, assessing, and tracking information security risks across the Liebherr group of companies
Deliver insights through executive-level dashboards and reports
Maintain and update the risk registers, tracking ownership, mitigation plans, residual risk, and status
Drive risk management data completeness, accuracy, and traceability of risk decisions
Collaborate with IT and business representatives, and technology experts to capture and validate risk information
Conduct qualitative and or quantitative risk assessments for Liebherr companies and from reported security issues
Track mitigation and treatment plans, monitor implementation progress, and flag delays or unresolved risks
Develop and maintain security risk management dashboards and reports using business intelligence tools
Track and report key risk indicators (KRIs), key performance indicators (KPIs), and risk treatment effectiveness
Contribute to process improvement initiatives for risk assessment and treatment workflows
Requirements
Bachelor’s or Master’s degree in Cybersecurity, Computer Science, or related field
3+ years of working experience in information security, IT security, risk management or related roles
Certifications such as CISSP, CISM, CRISC are a plus
Understanding of NIST SP 800-39, NIST CSF, and ISO/IEC 27005 risk management concepts
Experience in regulated industries (e.g., manufacturing, defense)
Experience with creating and maintaining risk registers, reporting tools, and producing risk management risk indicators, metrics and reports
Demonstrated ability to manage stakeholders across IT, OT, engineering, and business management in complex environments
Good analytical and communication skills to explain risk findings to both technical and non-technical stakeholders
Fluency in English (written and spoken) is a must; skills in German would be an advantage.
Benefits
Competitive compensation and benefits package that recognizes your expertise
Flexible and hybrid working model
Creative freedom and responsibility to shape processes and solutions in our global transformation
Continuous learning and development with tailored training and certification opportunities
Meal vouchers
Life and accident insurance
Option to include a premium private health insurance package as part of the flexible remuneration
A safe, stable and international workplace within a trusted family business that invests in people
Identity Security - PKI Engineer developing enterprise - grade PKI solutions for secure classified network products. Collaborating with teams to meet U.S. Government requirements and compliance needs.
Senior Technical Recruiter for Cyber Security roles in a global technology organization. Managing full - cycle recruiting to build high - quality security talent pipelines across multiple teams.
Business Development Manager driving cybersecurity business for Palo Alto Networks and BlackBerry in the Nordic market. Collaborating with partners and customers to strengthen security posture with innovative solutions.
Security staff at a leading metal processing company in Hamburg. Responsible for safety monitoring and emergency response coordination with modern technologies.
Business Information Security Officer supporting information security initiatives across global human resources. Collaborating with technology teams to ensure security compliance and risk management.
Senior Security Manager overseeing vulnerability management and remediation initiatives at GEICO. Leading high - impact security programs to safeguard enterprise - wide assets and customer data.
Contractor Special Security Officer supporting enterprise data initiatives within Department of War. Managing security requirements across multiple locations to ensure compliance and operational effectiveness.
Security Officer responsible for site security at Granny Smith Gold Mine in Australia. Implementing security protocols and ensuring compliance with safety measures across the mine site.
IT Administrator ensuring security and infrastructure for construction company across Germany. Involves monitoring, administration, and project planning with a focus on stability and safety.
Contractor Special Security Officer (CSSO) managing DoD security programs at AMERICAN SYSTEMS. Administering compliance and providing guidance on personnel security, security training, and program access.