IT Security Consultant

Posted 1hrs ago

Employment Information

Education
Salary
Experience
Job Type

Report this job

Job expired or something wrong with this job?

Job Description

IT Security Consultant advising Evonik, a global specialty chemicals company, on information security, risk management, and M&A security assessments. Home-office role in Brazil.

Responsibilities:

  • Consult on current trends in the methodological and technical assessment of IT security requirements
  • Analyze the IT security threat landscape and review regulatory requirements and methodologies related to information security
  • Monitor IT security levels, assess threat potentials and residual risks, and develop recommendations for action
  • Introduce, implement, and continuously develop methodologies for ensuring IT security requirements
  • Participate in developing new IT security solutions and conduct security assessments of new or existing solutions
  • Advise and support IT product groups and Evonik units on information security
  • Guide and consult IT projects on information security matters
  • Exchange knowledge with Product Owners, Domain Architects, IP Protection, and OT Security stakeholders
  • Support M&A due diligence by assessing sellers’ IT security levels and developing temporary protection measures
  • Guide and consult IT M&A projects through information-security transition
  • Contribute to IT group standards and participate actively in IT committees

Requirements:

  • Successfully completed (technical) university degree in IT security, computer science, economics, engineering, or natural sciences, or comparable commercial/technical education in the IT field with relevant professional experience
  • Several years of professional experience in information security
  • Proven experience with concepts, protocols, strategies, and best practices in information security
  • Experience conducting risk analyses, including business impact, vulnerability assessment, measure effectiveness, and risk-reduction strategies
  • Strong understanding of the impact of IT security tools, technologies, and regulations on business processes
  • Familiarity with information security management frameworks such as (ISO) 2700x or the NIST Cyber Security Framework
  • Certification in IT security such as CISM, CRISC, ISO 27001 Lead Auditor, or CISSP
  • Fluent English, written and spoken
  • German is an advantage
  • Ability and willingness to interact with Evonik personnel and build a network
  • High level of initiative, assertiveness, cooperation skills, and team spirit
  • Willingness to travel occasionally nationally and internationally
  • Shift working is required

Benefits:

  • Performance-based remuneration
  • Occupational health benefits
  • Hybrid and flexible working environments with #SmartWork
  • Attractive career paths
  • High-quality development programs