workidentity GmbH logo
workidentity GmbH

We deliver the strategy in the war for talent. With us, you get access to the hottest tech companies in Germany

IT Auditor, ISO 27001

Security EngineerSecurity EngineerFull TimeRemoteSeniorTeam 11-50H1B No SponsorCompany SiteLinkedIn

Location

Europe

Posted

81 days ago

Salary

€80K - €95K / year

Seniority

Senior

Bachelor Degree4 yrs expGermanEnglish

Job Description

IT Auditor, ISO 27001

workidentity GmbH

• Koordination der Audits, einschließlich Entwicklung des Auditplans unter Berücksichtigung der Anforderungen der Normen sowie der Organisations- und Prozessstruktur • Durchführung von Vor-Ort- und Remote-Audits zur Überprüfung der Einhaltung der Normen, Identifizierung von Abweichungen und von Verbesserungspotenzialen • Erstellung von Auditberichten zur Dokumentation der Ergebnisse • Technische Überprüfung von Prüfberichten • Teilnahme an Schulungen und Weiterbildungsmaßnahmen zur Aufrechterhaltung aktueller Fachkenntnisse im Bereich Informationssicherheit und ISO 27001

Job Requirements

  • Ein abgeschlossenes Studium im IT-Bereich
  • Über 4 Jahre operative Berufserfahrung im IT-Bereich - idealerweise in der IT-Security, alternativ bspw. in der Administration, Entwicklung oder im Projekt-Management
  • Zertifizierung als ISO 27001 Lead Auditor
  • Sehr gute Deutsch- und Englisch-Kenntnisse zur Auditdurchführung und Berichterstattung in deutscher und englischer Sprache
  • Bereitschaft zur kontinuierlichen Weiterbildung und Anpassung an sich ändernde Technologien und Regelwerke
  • Kommunikationsstärke und Erfahrung im Umgang mit Stakeholdern
  • Reisebereitschaft im Rahmen von vor Ort Audits in der DACH-Region

Benefits

  • Eine unbefristete Festanstellung in Vollzeit
  • Flexibles Arbeitszeitmodell, Arbeitszeitkonto und remote work
  • 30 Urlaubstage
  • Interne Entwicklungsmöglichkeiten und zukünftige Karrierechancen
  • Starker Fokus auf Weiterbildungsangebote
  • BAV, VWL, Zuschuss zu Versicherungsangeboten
  • Corporate Benefits, Sportangebote, wie der EGYM Wellpass, Fahrradleasing, Mitarbeiter- & Teamevents

Related Categories

Related Job Pages

More Security Engineer Jobs

Full TimeRemoteTeam 10,001+H1B No Sponsor

• Provide strategic direction for the Enterprise Security Strategy at JLL by educating self and others in new security threats across the entire spectrum of JLL applicable technologies. • Provide strong technical leadership in all aspects of security including end point protection, network security, firewalls, application, and cloud security. • Provide guidance, governance, and oversight of multiple security efforts in parallel. • Analyze and communicate benefits and risks associated with IT investments and participates in Regional IT governance and decision making, adhering to standards. • Ensure applications, processes, and procedures of the Enterprise Application team comply with JLL standards including security policies, change management, SOC2 and other critical business requirements.

India
Full TimeRemoteTeam 10,001+H1B No Sponsor

• Perform security risk assessments of potential new vendors and / or where vendor services have changed. • Monitor changes in business processes, information systems, management and operations, and accordingly maintain an assessment to risk. • Build and maintain productive relationships with process owners. • Ensure audits of control effectiveness and design and other projects are completed in an efficient manner, and within established deadlines. • Ensure that the assessments of internal control structure related to processes audited are supported through sufficient and adequately documented evidence. • Assist with internal investigations. • Promote good practice of Information Security Third Party Risk Management to staff and associated contractors. • Provide direct and specific guidance to the department internal control process owners’ as appropriate for each process owner of the department and the work being performed.

India
Job Closed
Full TimeRemoteTeam 10,001+H1B No Sponsor

• Monitor changes in business processes, information systems, management and operations, and maintain ongoing risk assessments • Perform comprehensive cybersecurity risk assessments using established methodologies (FAIR, OCTAVE, etc.) • Develop and maintain cybersecurity risk registers and treatment plans aligned with business objectives • Monitor and report on key risk indicators (KRIs) and compliance metrics • Support vendor risk management programs, including security questionnaire reviews and on-site assessments • Lead audits of control effectiveness and design, ensuring completion within established deadlines • Collaborate with internal audit teams on cybersecurity-focused audit programs • Maintain relationships with external auditors, regulators, and cybersecurity assessment bodies • Ensure assessments of internal control structures are supported by sufficient and documented evidence • Conduct regular policy reviews and updates to address emerging threats and regulatory changes • Create and deliver cybersecurity policy awareness training and education programs • Build and maintain productive relationships with process owners across all business functions

India
Job Closed
Full TimeRemoteTeam 10,001+H1B No Sponsor

• Assist in monitoring business process changes and maintaining risk assessment documentation • Support cybersecurity risk assessments using established methodologies and templates • Help maintain cybersecurity risk registers and update treatment plans under guidance • Track and compile key risk indicators (KRIs) and compliance metrics for reporting

India
Job Closed