Назад
Company hidden
1 день назад

Business Information Security Officer (Cybersecurity)

Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
c1
Страна
Germany
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Business Information Security Officer (Cybersecurity): Advising business units on cybersecurity, information security risk, governance, compliance, and practical security controls with an accent on translating technical risks into business impacts. Focus on risk and system assessments, vulnerability management, regulatory initiatives, and collaboration between business, IT, and cybersecurity stakeholders.

Location: Poing, Germany, at the European Headquarters in Munich (Poing); flexible and hybrid working arrangements are available, with up to 10 workation days per year from approved locations.

Company

hirify.global Business Services GmbH provides EMEA services for the hirify.global Group, a global distributor of semiconductor products and related services.

What you will do

  • Advise assigned business units and leaders on cybersecurity, information security risk, and compliance.
  • Conduct risk and system assessments and recommend appropriate security controls.
  • Translate technical risks into clear business impacts and actionable recommendations.
  • Drive governance, risk, and compliance activities, including vulnerability management and secure baseline adoption.
  • Provide security expertise for customer engagements, sales activities, audits, certifications, and regulatory initiatives.
  • Represent business interests in enterprise cybersecurity and IT discussions while promoting a risk-aware security culture.

Requirements

  • Bachelor’s degree in computer science, information technology, information security, business information systems, or a related field, or equivalent professional experience.
  • At least 8 years of IT experience, including at least 4 years in cybersecurity, IT risk management, or information security.
  • Strong knowledge of information security, risk management, and governance frameworks such as NIST and CIS.
  • Experience with compliance programs, audits, and regulatory requirements including ISO 27001, NIS2, CMMC, PCI DSS, and GDPR.
  • Ability to communicate complex technical topics effectively to business leaders and executive stakeholders.
  • Fluent English communication skills, written and spoken, are required.

Nice to have

  • Knowledge of modern IT architectures, cloud technologies, and DevSecOps practices.
  • Certifications such as CISSP, CISM, or CRISC.

Culture & Benefits

  • 30 days of annual vacation plus additional paid leave days on December 24 and December 31.
  • 38.5-hour workweek with a flexible working time account.
  • Supplementary health insurance, group accident insurance, and access to Wellpass fitness and health services.
  • Company pension scheme, capital-forming benefits, and an Employee Assistance Program.
  • Job Bike leasing, subsidized cafeterias, and preferential conditions at an affiliated daycare center and kindergarten.
  • International collaboration, professional growth opportunities, and a strategically important role connecting security, technology, and business strategy.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →