IT Security Consultant
Posted 1hrs ago
Employment Information
Report this job
Job expired or something wrong with this job?
Job Description
IT Security Consultant advising Evonik, a global specialty chemicals company, on information security, risk management, and M&A security assessments. Home-office role in Brazil.
Responsibilities:
- Consult on current trends in the methodological and technical assessment of IT security requirements
- Analyze the IT security threat landscape and review regulatory requirements and methodologies related to information security
- Monitor IT security levels, assess threat potentials and residual risks, and develop recommendations for action
- Introduce, implement, and continuously develop methodologies for ensuring IT security requirements
- Participate in developing new IT security solutions and conduct security assessments of new or existing solutions
- Advise and support IT product groups and Evonik units on information security
- Guide and consult IT projects on information security matters
- Exchange knowledge with Product Owners, Domain Architects, IP Protection, and OT Security stakeholders
- Support M&A due diligence by assessing sellers’ IT security levels and developing temporary protection measures
- Guide and consult IT M&A projects through information-security transition
- Contribute to IT group standards and participate actively in IT committees
Requirements:
- Successfully completed (technical) university degree in IT security, computer science, economics, engineering, or natural sciences, or comparable commercial/technical education in the IT field with relevant professional experience
- Several years of professional experience in information security
- Proven experience with concepts, protocols, strategies, and best practices in information security
- Experience conducting risk analyses, including business impact, vulnerability assessment, measure effectiveness, and risk-reduction strategies
- Strong understanding of the impact of IT security tools, technologies, and regulations on business processes
- Familiarity with information security management frameworks such as (ISO) 2700x or the NIST Cyber Security Framework
- Certification in IT security such as CISM, CRISC, ISO 27001 Lead Auditor, or CISSP
- Fluent English, written and spoken
- German is an advantage
- Ability and willingness to interact with Evonik personnel and build a network
- High level of initiative, assertiveness, cooperation skills, and team spirit
- Willingness to travel occasionally nationally and internationally
- Shift working is required
Benefits:
- Performance-based remuneration
- Occupational health benefits
- Hybrid and flexible working environments with #SmartWork
- Attractive career paths
- High-quality development programs


















