About the Role
In this key position, you will assume overall strategic and operational responsibility for IT Security. You will drive the further development of our security governance, security architecture, and cyber resilience initiatives, acting as a central point of contact between IT, management, and business departments.
Responsibilities
- Overall responsibility for all topics related to information security and data protection at the corporate level
- Independent expansion and operation of the ISMS – from the conception of additional policies to operational implementation
- Leading, coaching, and developing the IT team regarding information security topics
- Further development of the company-wide IT security strategy as well as the security architecture and governance structures (ISO 27001, BSI, IT-Grundschutz are particularly relevant)
- Responsibility for risk, vulnerability, and incident management
- Operational involvement in security incidents
- Advising management and business departments on all aspects of information security
- Analysis of new technologies as well as selection and introduction of suitable security solutions
- Creation of regular reports on the security situation, risks, and implementation of measures for management and stakeholders
Requirements
- Completed degree in computer science, IT, or a comparable qualification
- Several years of management experience in IT and information security
- In-depth know-how in modern security architectures, cybersecurity frameworks, and regulatory requirements
- Experience in the strategic management of complex IT and security projects
- Strong technical understanding of current security solutions and enterprise IT structures
- Several years of operational experience in information security – demonstrably self-implemented, not just managed
- Experience in expanding and maintaining ISMS structures, ideally in an environment without a pre-existing team
- Knowledge of relevant standards such as ISO 27001, BSI IT-Grundschutz, GDPR, and legal requirements (e.g., KRITIS, NIS2)
- Ideally, recognized certifications such as CISM, CISA, CISSP, or comparable
- Strong strategic thinking skills, decisiveness, and confident presence at management level
- High communication skills, assertiveness, and strong consulting competence
- Experience in collaborating with authorities or external institutions, such as the BSI or supervisory authorities
- Very good written and spoken German and English skills
Skills
- Information Security
- Data Protection
- ISMS
- Security Governance
- Security Architecture
- Cyber Resilience
- Risk Management
- Vulnerability Management
- Incident Management
- ISO 27001
- BSI IT-Grundschutz
- GDPR
- KRITIS
- NIS2
- CISM
- CISA
- CISSP
- Cybersecurity Frameworks
- Security Solutions
- Enterprise IT Structures
- Communication
- Consulting
Location
- Germany
Work Type
- Full-time
Experience Level
- Several years of management experience
- Several years of operational experience
Education Level
- Completed degree in computer science, IT, or a comparable qualification
Benefits
- Permanent employment contract with 30 days of vacation plus an additional day off on your birthday
- High-quality technical equipment (MacBook, iPhone, and tablet)
- Capital-forming benefits, company pension plan
- Work in a future-oriented industry
- Flat hierarchies, short communication channels, and a pleasant working atmosphere
- Familiar and open interaction in a "you" culture
- Free drinks and good coffee
About the Company
- Inspiring people with the speed of light – that is the vision that drives the approximately 250 employees of the DNS:NET family. We stand for the 'connection of the future' and have made it our mission to enforce the fundamental right to internet in underserved regions.
- As a medium-sized telecommunications company, we have been a firm fixture in the IT industry since 1998. Our service portfolio reflects the entire spectrum of the value chain: from the construction to the operation of our own network infrastructure, the DNS:NET corporate group offers diverse areas of application for specialists, generalists, career changers, and trainees.
