Job description
We are looking for a committed individual in the field of information security and data protection for our client in the chemical industry in the Hockenheim area.
In this responsible position, you will actively design an ISMS, ensure compliance, and drive security governance issues across departments.
Benefits
- Long-term employment opportunity in a company in the region
- A wide range of discounts and exclusive employee offers through Corporate Benefits
- Very good chances of subsequent recruitment and permanent employment
- Fair pay according to the GVP tariff, including vacation and Christmas bonuses
- Professional and personal support from an ACTIEF contact person
- Free preventive medical checkups and work clothes provided
Tasks
- • Design, implementation, and continuous optimization of a location-based ISMS in the area of information security and data protection
- • Ensuring compliance with ISO 27001, NIS2, GDPR, and internal company guidelines
- • Development, maintenance, and management of guidelines, processes, and internal control systems
- • Further development of risk management as well as planning, preparation, and support of internal and external audits
- • Analysis, evaluation, and control of technical and organizational measures (TOMs)
- • Close coordination with IT, compliance, legal, and specialist departments to implement holistic security governance
- • Conducting training and awareness-raising measures in the area of information security and data protection
- • Preparation and presentation of management reports on risk status, compliance status, and audit results
requirements
- • Completed degree, preferably in (business) informatics, IT security/cybersecurity, information management, or similar.
- • Several years of relevant professional experience in the field of information security, IT governance, or data protection compliance
- • In-depth knowledge of relevant standards and regulations such as ISO 27001, NIS2, GDPR, and common IT security best practices
- • Solid understanding of technical security mechanisms, such as encryption, access control systems, or cloud security concepts
- • Confident written and spoken German and English skills
- • Relevant certifications such as CISM, CISSP, ISO 27001 Lead Auditor, or CIPP/E are desirable.
- • Strong communication skills, high willingness to embrace change, and expertise in cross-departmental management and collaboration