About the job
Permanent position | Full time | Hybrid / remote with occasional meetings in Pulsnitz
As an information security officer, you will take on a central role in the further development of our information security management and ensure that security requirements are implemented effectively, verifiably and comprehensibly.
YOUR FIELD OF ACTION AND TASKS
- You control and further develop secupay AG's information security management system, including guidelines, standards, procedures, roles and control frameworks
- You advise the board of directors, managers, departments, IT and security office/SOC on information security and secure systems, applications, processes and service providers
- You derive security requirements from DORA, ZAG-MaRisk, BaFin and EBA specifications, GDPR, ISO/IEC 27001, TISAX and PCI DSS and monitor their implementation
- They accompany audits, assessments, management reviews, certifications and tests including verifiable evidence
- They assess security incidents, vulnerabilities, threats and test results and support emergency management, recovery and digital operational resilience
- You design awareness and training measures and work closely with ICT risk management, IT compliance, data protection, outsourcing management, auditing and other control functions