About the Role
As a Manager of Information Security, you will take on central professional and coordinating tasks in the area of information security and, together with the CISO, shape the strategic and operational further development of the security organization.
Responsibilities
- Provide technical support to the CISO and assume representative tasks as needed.
- Contribute to the further development and maintenance of the Information Security Management System (ISMS) and the company-wide security regulations.
- Monitor security-related regulatory developments (e.g., NIS2) and support their implementation within the company.
- Coordinate the ISMS steering committee and support the performance of governance tasks in information security.
- Support the further development of the security roadmap and related measures as a digitalization officer.
- Participate in associations and expert committees to represent information security interests.
- Coordinate security-related issues at the interfaces with procurement, data protection, approval, and other specialist departments, and support relevant tenders.
- Assist in processing security incidents and in conducting and moderating IAC workshops.
Requirements
- Completed university degree in computer science, business informatics, security management, or a comparable field.
- Relevant professional experience in information security, information security management (ISMS), or Governance, Risk & Compliance (GRC).
- Sound knowledge of relevant standards, norms, and regulatory requirements, ideally in the context of critical infrastructures.
- Experience in collaborating with committees and in professional stakeholder management.
- Strong analytical, conceptual, and organizational skills.
- Structured, responsible, and solution-oriented approach to work.
- Excellent communication skills and the ability to convey complex issues to target audiences.
- Fluent German language skills at a minimum C1 level, both written and spoken.
- Approximately 70 percent of the requirements are sufficient for application.
Skills
- Information Security
- Information Security Management (ISMS)
- Governance, Risk & Compliance (GRC)
- Stakeholder Management
- Digitalization
Location
- Berlin
Work Type
- Full-time
- Permanent
- Hybrid
Experience Level
- Professional
Education Level
- University degree in Computer Science, Business Informatics, Security Management, or a comparable field
Benefits
- Flexible work arrangements (37-hour week, part-time options, flexible working hours, time tracking, mobile working)
- 30 days of vacation, days off on December 24th and 31st, and leave options
- Support for individual development, including free training and support for further professional qualifications
- 13 monthly salaries for tariff employees and additional compensation components
- Company pension plan
- Public transport company ticket or Deutschlandticket (50% employer subsidy) and job bike offer
- Employee electricity tariff after 12 months of service
- Various health-related offers, including Urban Sports Club membership and PME family service
About the Company
- BEW Berliner Energie und Wärme GmbH supplies the capital with climate-friendly electricity and heat.
- Operates the largest district heating network in Western Europe with over 2,000 kilometers.
- Supplies approximately one-third of Berlin households with heat.
- Covers the entire value chain of district heating with the expertise of over 2,300 employees.
- Working towards phasing out coal by 2030 and achieving climate-neutral generation by 2045.
- Significantly supports the state of Berlin in achieving its climate goals.
- Aims to increase the share of renewable energies and waste heat.
- Undertaking transformation of many sites and facilities to achieve climate goals.
Equal Opportunity
- Applications are welcome from individuals of all ages, gender identities, sexual orientations, and ethnic-cultural backgrounds.
- Severely disabled individuals with equal professional suitability will be given special consideration.
- A pre-employment screening is part of the recruitment process for security reasons.
