(Senior) Consultant Information Security designing customized ISMS solutions and technical measures at a hybrid cybersecurity firm. Collaborating with clients to enhance their security aspects in compliance with regulations.
Responsibilities
You develop tailor-made ISMS solutions for our clients
You create policies and practical, implementable security concepts
You implement technical and organizational measures
You lead engaging projects to comply with new regulatory requirements (e.g., NIS-2, DORA) and prepare our clients optimally for the future
You support our clients in detecting threats early and in establishing processes for efficient IT risk management
You conduct Business Impact Analyses
You help our clients anchor information security as an integral part of their organization
Together we look for projects that match your interests. You participate in choosing which client project you will work on.
Requirements
Several years of practical experience in the field of information security
Willingness to take responsibility and make decisions
Enjoyment of personal development and continuous learning
Strong ability to self-organize and plan work efficiently
Strong interpersonal and leadership skills
Experience applying standards and regulatory requirements (e.g., ISO 27001, BSI IT Baseline Protection) and adapting them to individual client needs
We welcome the following skills from you; otherwise you will acquire them during onboarding: confident use of consulting methods such as time management, project and client management, and quality management
Motivation to actively contribute to the further development of carmasec
In-depth knowledge of regulatory standards and industry frameworks (e.g., NIS-2, DORA, BAIT/VAIT, MaRisk, TISAX, CRA)
Ideally, professional experience in a consulting environment
Benefits
Self-realization: Freedom to experiment, an open error culture, and the opportunity to help shape company structures are a given here.
Mentorship: Our experienced colleagues support you in your personal and professional development.
Flexible working hours: Work during your most productive hours and schedule private commitments flexibly. Overtime is compensated.
Additional benefits: Choose from options such as a Germany job ticket, Urban Sports Club membership, childcare subsidy (Kitaplatz support), or a company bike (JobRad).
Training and development: We invest in your growth through regular training and recognized certifications.
Low travel requirements: We work remotely or from our offices in Cologne or Essen. On-site meetings at client locations are the exception.
Team building: Our monthly Open Space is dedicated to collaborative work on current topics. Regular events (e.g., joint workation, summer party, or Christmas party) are planned and organized by the team.
Workation: Combine work and travel or take an extended break as part of a sabbatical.
Vacation: 30 days of vacation per year and special leave for significant life events.
Cybersecurity Consultant strengthening the Incident Response Team at Conscia. Responsibilities include onboarding, incident management, and reporting for critical security incidents.
Join Cloudflare as a Security Third Party Risk Management Specialist. Execute vendor reviews and improve Cloudflare’s Third Party Risk Program in a rapidly scaling security organization.
Cyber Security Advisor safeguarding client digital environments by addressing cyber risks at Centorrino Technologies in Melbourne and Perth. Ensuring compliance with regulations and effective incident response.
Manage revenue growth across the UK National Security community for AI solutions at Mind Foundry. Lead sales lifecycle from opportunity qualification through contract negotiation and account expansion.
Lead technical design and delivery of Early Warning’s cross - border consumer money movement platform leveraging blockchain and stablecoins. Collaborate across teams to define strategy and architecture for secure and scalable solutions.
Lead the development and execution of a robust Cybersecurity Program for Field, an Energy Storage Provider. Responsible for compliance standards and effective controls across IT & OT environments.
Cloud Security Engineer ensuring secure solutions in the cloud for UMB's technology. Collaborating with teams to define security controls and integrate best practices.
AVP, Cloud Security Engineer responsible for designing and managing cloud security solutions at Synchrony. Collaborating with teams to ensure compliance and mitigate security risks.
Werkstudent Homologation Passive Sicherheit supporting international vehicle type approval at BMW. Collaborating on documentation, project management, and engaging with global markets.