Information Security Specialist responsible for developing ISMS under ISO 27001 and guiding audits. Collaborating closely with IT and management while ensuring compliance and documentation.
Responsibilities
You develop and advance our Information Security Management System (ISMS) in accordance with ISO 27001
You support internal and external ISO 27001 audits
You maintain policies, processes and evidence related to information security
You assist with risk analyses, tracking of remediation measures and effectiveness assessments
You work closely with IT, business units and management
You additionally support the integrated management system (ISO 9001)
Requirements
Experience with ISO 27001 – ideally in maintaining or further developing an ISMS
Understanding of information security processes, controls and audit procedures
Structured, meticulous working style and enjoyment of documentation
Very good German language skills, solid English skills
Confident use of Microsoft Office
Residence in or willingness to work in the Ulm area (no remote position)
Benefits
Participation in the company share program, including subsidised free shares and support for occupational pension schemes
Flexible working time models (e.g. part-time, flexitime, trust-based working hours, …)
Modern offices where on-site work is enjoyable
Access to an external employee assistance platform for all life situations (e.g. advice for caring for relatives, childcare options, support for private or work-related issues, …)
Health prevention measures and sports offers, e.g. EGYM Wellpass or bike leasing
Numerous training and development opportunities in our VINCI Academy for your individual technical and leadership career
Shopping discounts with over 700 well-known providers and much more!
Senior Threat Detection & Response Engineer at ICF developing cyber analytic capabilities for federal cybersecurity. Engage in project design and countermeasure capabilities while collaborating with key stakeholders.
Technician in Occupational Safety at Telefônica working on safety programs to prevent workplace accidents. Ensuring compliance with safety regulations in Ribeirão Preto/SP.
Cybersecurity Engineer at Mythics implementing Zero Trust security architecture for federal systems. Collaborating with senior engineers on secure data movement and vulnerability remediation.
Lead Information Security Engineer focused on phishing mitigation in Cybersecurity at Wells Fargo. Engaging in threat detection and incident response across various teams.
Principal Engineer implementing generative AI for cybersecurity at Wells Fargo. Act as a strategic advisor to leadership while overseeing security and AI initiatives.
IT & Cybersecurity Manager leading IT infrastructure and cybersecurity efforts at knok. Ensuring secure, scalable systems to support the digital transformation of healthcare.
Security Systems Technician maintaining physical security technologies and supporting enterprise security operations. Ensuring system integrity and compliance through troubleshooting and vendor collaboration.
IT Security Expert creating and managing SIEM solutions to strengthen Europe's defence capabilities. Collaborating in a small elite team to solve significant security challenges rapidly.
Senior Manager in Regulatory Compliance ensuring effective risk management within the Information Security Group. Overseeing regulatory compliance and governance while leading automation efforts.
Information Security Engineer overseeing security tasks, ensuring implementation of security controls. Collaborating with legal and technical teams in a professional office environment.