همهٔ موقعیت‌ها

مشاور ارشد سیستم مدیریت امنیت اطلاعات (ISO 27001)

Senior ISMS Consultant (ISO 27001)

برنامه‌های ISO 27001 را برای سازمان‌های متوسط و بزرگ، از تحلیل شکاف تا ممیزی صدور گواهی، رهبری کنید. شما سیستم‌های مدیریتی می‌سازید که کارکنان مشتری واقعاً از آن‌ها استفاده کنند و ممیزان بتوانند آن‌ها را دنبال کنند.

ارسال درخواستحدود ۳ دقیقه زمان می‌برد

متن کامل آگهی به انگلیسی است. می‌توانید درخواست خود را به زبان خودتان ارسال کنید.

About the role

Many of our clients need an information security management system because a customer, regulator or insurer has asked for one. This role leads that work. You run gap analyses against ISO/IEC 27001:2022, shape the scope and the risk method, and guide client teams through implementation and internal audit to certification. You work with our NIS2 and cloud security consultants and with client management, IT and legal staff. Engagements usually run for six to twelve months, mostly in southern Germany.

What you will do

  • Run gap analyses against ISO/IEC 27001:2022 and the Annex A controls, and turn the results into a staged plan
  • Define ISMS scope, risk assessment method and Statement of Applicability together with client management
  • Write and review policies, procedures and control evidence that fit how the client already works
  • Plan and conduct internal audits and management reviews ahead of the certification audit
  • Coach junior consultants and review their deliverables before they reach the client

What you bring

  • 6+ years in information security, at least 3 of them leading ISO 27001 implementations
  • ISO 27001 Lead Implementer or Lead Auditor certification
  • Working knowledge of ISO 27002, ISO 27005 and BSI IT-Grundschutz
  • Experience presenting risk decisions to executive boards and works councils
  • Confident written German and English for client documentation

Good to have

  • Experience with TISAX assessments in the automotive supply chain
  • Familiarity with GRC platforms such as Vanta, OneTrust or ServiceNow IRM

Languages

English (C1), German (B2)

Skills

  • ISO 27001
  • ISO 27005
  • IT-Grundschutz
  • Risk assessment
  • Internal audit
  • Policy writing
  • TISAX

این صفحه با کمک هوش مصنوعی ترجمه شده است. در صورت هرگونه ابهام، نسخهٔ انگلیسی ملاک است.