(Junior) Information Security Officer responsible for ISMS management at Sana Clinics. Ensuring compliance with NIS-2 and training staff on information security.
Responsibilities
You are responsible for the establishment and operation of Information Security Management Systems (ISMS) for multiple Sana Clinics within a region
Ensuring compliance with legal and regulatory requirements regarding NIS-2 and B3S Medical Care
Preparing and delivering staff training on information security at the respective clinics is also part of your responsibilities
You actively participate in IT projects to ensure that security aspects are considered in all project phases to avoid vulnerabilities and minimize risks
You independently conduct internal audits and support external audits
You investigate and assess security-related incidents and perform risk analyses
You support the Information Security team in creating information security concepts and policies and participate in the implementation of a Business Continuity Management System
Requirements
You have a successfully completed degree in a computer-related field (Computer Science, Medical Informatics, Business Informatics or similar) or an IT vocational qualification with relevant professional experience
You have at least 2 years of professional experience in information/IT security
You can demonstrate experience in project and risk management
Ideally, you have initial experience in the KRITIS environment or another regulated sector
You possess solid knowledge of the ISO 27001 standard, BSI IT-Grundschutz, B3S Medical Care or NIS-2
You are a responsible, solution-oriented, assertive and communicative person with a service-oriented mindset
You are willing to travel for business within your region and occasionally across Germany
Benefits
30 days of vacation
Flexible working arrangements
Bike leasing in cooperation with Company Bike
Professional and personal development opportunities
Corporate benefits
Family-oriented and down-to-earth corporate culture
Mid to Senior Data Engineer joining CrowdStrike's Cloud Identity & Perimeter team. Focus on developing and maintaining complex data pipelines and security analytics at scale.
Cybersecurity Assessor evaluating enterprise systems for vulnerabilities and compliance. Engaging in assessments and reporting within a hybrid work structure based in Brooklyn Heights, NY.
Security Business Analyst engaging in requirements gathering, risk assessments, and stakeholder liaison. Supporting measurable security outcomes with comprehensive documentation in a hybrid work setup.
Senior Software Engineer developing engaging gamified learning experiences for cybersecurity awareness. Driving technical leadership and product ownership in a rapidly growing team.
Cyber Security Engineer providing cybersecurity support for SCADA, OT networks and industrial control systems at Vestas. Collaborating with cross - functional teams to ensure secure operations in offshore wind farms.
Senior Consultant in IT Security guiding clients through IT projects and security strategies. Analyzing vulnerabilities and leading project tasks while ensuring quality and timely delivery.
AI Security Engineer securing AI - driven applications at a rapidly expanding tech company. Focus on mitigating risks across the AI lifecycle with a talented team.
Sr. Product Manager leading vision and strategy for Smartsheet's security offerings. Managing enterprise security products while ensuring compliance and driving product adoption.
Senior penetration tester responsible for advanced security testing in various sectors at Combitech. Collaborating with a team of experts, focusing on real threat simulations and enhancing security measures.
Physical Security Specialist managing corporate security operations for a global media company in South Korea. Leading security projects, vendor management, and cross - functional collaboration.