Source description
About the role
Job Description Conduct regular information security risk assessments using qualitative and/or quantitative methods, develop security strategies in collaboration with internal teams and stakeholders, and propose corrective measures for medium to large consulting projects. Develop and implement security policies and procedures for the entire organization, ensuring compliance with cybersecurity regulations and best practices. Raise awareness of security policies and train employees on best practices. Define and monitor functional and technical mitigation plans, methodological and technical monitoring, data analytics, and mathematical modelling. Plan and lead mediumsized consulting projects; significantly participate in larger consulting projects. Apply consulting methods independently while documenting and presenting results internally and externally. Design and deliver awareness and training to internal and external customers. Improve existing processes and tooling and involve technical experts to guarantee successful delivery and training of junior consultants. Provide regular advice to customers for potential further support (cross/upselling); prepare bids for smalltomedium projects or provide support for large projects. Conduct internal audits to verify compliance and recommend improvements as necessary. Collaborate in the preparation of offers and company presentations. Take on functional and/or projectrelated tasks in projects (e.g., technical project planning, topic responsibility). Required Qualifications The work requires knowledge and skills generally acquired through a relevant, completed degree programme with a standard duration of up to 4 years in the field of engineering, computer science, cybersecurity or comparable programmes, and related additional subjectspecific qualifications. Knowledge and experience may have been acquired in other ways. Skills and Competences Extensive knowledge and experience in the tasks listed above. Deep understanding of major security management frameworks (ISO27000, ISO2701, ISO31000, BSIITGrundschutz, NISTCSF, IT/OT Governance). Deep understanding of security technologies, controls, and best practices. Ability to develop and maintain security policies, procedures, and standards. Proven experience leading governance projects and security initiatives; strong experience with ISMS implementation and security requirements at any level. Extensive knowledge of regulatory requirements across industries (NIS2, Export Control, GDPR, Defence, EASA Regulations) and experience with GRC platforms and risk management tools. Exceptional ability to communicate complex security concepts to nontechnical stakeholders, strong presentation and report writing skills for executivelevel audiences, and strong negotiation and stakeholder management skills. Ability to advise customers on their objectives and build consensus among diverse stakeholders. Cultural sensitivity for working with international teams. German and English: negotiation level mandatory (speaking and writing). Willingness to travel domestically and abroad. Additional Requirements A security clearance is required for this activity or must be issued by the responsible authorities. Location Our main offices are located near Munich. Work may also be performed at the following locations within Germany if mutually agreed: Ottobrunn (Munich area), Donauwrth, Friedrichshafen, Cologne, and Finkenwerder (Hamburg). Flexible working location may be determined in conjunction with the company and will be documented in the employment contract. Advantages at Airbus Protect Mobile and flexible working hours. Competitive remuneration and special payments. 30 days holiday and additional days off for special occasions. Intensive induction and expert support with a personal mentor. Excellent training opportunities and promising development prospects. Attractive social benefits, including employerfinanced pension scheme, employee share options, discounted car and bike leasing, and special conditions for insurance and employee benefits at cooperating companies. Onsite facilities (depending on location) such as canteen, cafeteria, fitness studio, onsite kindergarten, and company medical services. Company Airbus Protect GmbH Contract Type Permanent Experience Level Professional Job Family General Security Equal Opportunity & Confidentiality By submitting your CV or application you consent to Airbus using and storing information about you for monitoring purposes related to your application or future employment. This information will only be used by Airbus. Airbus is committed to achieving workforce diversity and creating an inclusive working environment. We welcome all applications irrespective of social and cultural background, age, gender, disability, sexual orientation, or religious belief. Airbus is committed to equal opportunities for all and will never ask for any monetary exchange in the Job Descrip
More at Airbus Protect