Information Security Consultant

Posted 7hrs ago

Employment Information

Education
Salary
Experience
Job Type

Report this job

Job expired or something wrong with this job?

Job Description

Consultant in information security at RST providing individualized strategies to protect client information assets. Engaging in a variety of security projects remotely with a focus on practical implementation.

Responsibilities:

  • Advising on the establishment and improvement of ISMS and BCMS across various industries and company sizes.
  • Advising on the integration and implementation of regulatory requirements such as the BSI Act, the KRITIS umbrella law, DORA (Digital Operational Resilience Act), and other standards.
  • Planning and conducting risk assessments and risk treatment with the aim of ensuring effective controllability (KPIs, roadmaps, prioritization).
  • Developing concepts and governance/rulebooks for clients in regulated sectors (KRITIS, NIS-2, KRITIS umbrella law).
  • Performing internal audits and preparing and supporting our clients for certification to ISO 27001 and/or TISAX.
  • Preparing and executing emergency/incident exercises.
  • Participating in internal projects, structuring our collective knowledge across the firm, and further developing our consulting approach.

Requirements:

  • At least 3 years of practical experience in a management consultancy advising on information and IT security topics.
  • University degree or equivalent experience in one or more of our core areas, e.g., IT security, (business) informatics/computer science, business administration, or security management.
  • Required knowledge of standards and methods: ISO 27001, ISO 22301, TISAX.
  • Optional: ISO 27031, DORA, BSI IT-Grundschutz, etc.
  • Nice-to-have (not mandatory): CISM/CISA, ISO 27001 Auditor, experience as an external CISO/ISB, IT-Grundschutz practitioner/consultant, Certified ITSC-Manager, etc.
  • Very good German language skills and good English skills.

Benefits:

  • Corporate fitness program
  • Team events: Because “we” is more than just a word.