IT-Security Manager at Alterric safeguarding critical IT infrastructures for the energy transition. Responsibilities include risk management and development of security architectures in hybrid settings.
Responsibilities
IT security responsibility
Protection of IT infrastructure, particularly cloud, network and critical production systems
Ensuring endpoint, application and identity security (IAM, MFA, Conditional Access)
Implementation of zero-trust architectures and network segmentation
Compliance with standards such as ISO 27001 and legal requirements (KRITIS, NIS2)
Development and implementation of holistic technical security concepts and policies
Conducting security architecture reviews for new projects and technologies
Introduction and maintenance of KPIs to measure the security posture
Proactive identification, assessment and treatment of IT security risks
Management of incident and problem handling, including coordination of the external SOC
Planning and testing of disaster recovery plans, including alignment with business continuity management
Supporting internal departments on security issues related to cloud, IoT and new software solutions
Integration of Security by Design into projects
Organizing and tracking actions arising from ISO 27001 audits
Conducting gap analyses and deriving improvement measures
Requirements
Degree in IT, IT security or comparable qualification — alternatively several years of relevant professional experience with appropriate further training
Several years of experience in technical IT security, ideally in the energy sector, critical infrastructures or other regulated industries
Solid expertise in network security, cloud security (Microsoft Azure), zero-trust architectures and modern security solutions
Experience with sovereign cloud solutions, data sovereignty and data residency
Practical experience in Identity & Access Management (IAM, MFA, Conditional Access) and experience with SIEM/SOC environments
Knowledge of current standards and methods (ISO 27001, BSI IT-Grundschutz, NIS2, KRITIS) — certifications such as CISSP or Microsoft Security are an advantage
Analytical and conceptual thinking, solution-oriented and structured way of working
Strong communication skills and enjoyment of interdisciplinary collaboration
Very good German and English skills
Driver's license and mobility required
Benefits
30 vacation days per year (plus December 24 and 31 off)
Overtime tracking that can be converted into flex-time days
Individual development opportunities and training offers
High level of development and support opportunities
Monthly benefits budget of €50, flexibly usable for sports, shopping or mobility
Option to use the company health insurance BKK EWE
Company pension scheme with gross salary conversion including 20% employer contribution
Various leave options using time-value accounts (e.g. sabbatical, part-time)
Collegial first-name culture and diversity
Employee discounts via the Corporate Benefits platform
Modern Infrastructure and Security Architect at MUFG responsible for directing cyber security initiatives. Collaborating with engineers to enhance security features and tools across the organization.
Senior Federal Technical Program Manager driving execution of federal cloud operations. Facilitating engagements between HPE's CSP and MSP teams while ensuring compliance and operational efficiency.
Cloud Cybersecurity Engineer supporting multi - cloud environments for critical missions in alignment with the U.S. Air Force. Roles include overseeing security authorizations and collaborating with government teams.
Program Security Manager overseeing security and compliance for mission applications in the US. Managing security programs and leading facility operations at Aurora and Philadelphia locations.
Information System Security Manager providing cybersecurity and RMF support for DoD systems and applications. Collaborating with military, government, and contractor personnel to ensure national security and systems compliance.
AI Security Engineer focusing on identifying and mitigating AI vulnerabilities. Involves research, development, and implementation of adversarial machine learning algorithms.
Vice President overseeing DHS & National Security Accounts at ITC Federal. Driving growth, managing P&L, and building strategic relationships across federal contracting.
Information Systems Security Officer supporting national priority programs for AMERICAN SYSTEMS. Ensuring security of AIS and network operations as part of information technology and security teams.
Information Systems Security Officer ensuring security for national priority programs at AMERICAN SYSTEMS. Overseeing automated information systems and providing security coordination for compliance and vulnerability management.
Information Systems Security Officer role at AMERICAN SYSTEMS ensuring automated information systems security and compliance. Supporting federal government contracts with a focus on information technology solutions.