The Information Security Management Specialist position is part of the Information Security Officer (ISO) team within GIZ's Governance, Risk, Compliance (GRC) unit. The ISB team ensures that information security management is monitored and positions the topic within the organisation.
 

Job description

The Information Security Management Specialist position is part of the Information Security Officer (ISO) team within GIZ's Governance, Risk, Compliance (GRC) unit. The ISB team ensures that information security management is monitored and positions the topic within the organisation.
 

Your tasks include

  • Representation of the ISB during absences
  • Participation in reporting to the Executive Board and independent creation of (partial) contents of the report
  • Participation in the creation and maintenance of rules for information security management in cooperation with the information security management team
  • Support in stakeholder and interface management (internal and external), in particular with regard to committees and units of the security organisation
  • Support in handling high-profile (category "high" and "very high") information security incidents
  • Implementation of awareness-raising measures for information security issues
  • Conceptual, technical and organisational cooperation in monitoring the establishment, operation and further development of GIZ's information security management system (ISMS)
    Participation in information security risk management and monitoring of information security measures
  • Willingness to take on requirement packages in the area of governance, risk and compliance

What you bring with you

  • Completed (specialised) university degree in information security, computer science or a comparable degree programme or comparable knowledge acquired through practical experience
  • Several years of experience in information security management or in the design of change processes / change management
    Experience in the area of ISO/IEC 27001 and/or BSI IT-Grundschutz 
    Knowledge of IT technology and methods as well as IT standards
  • Knowledge of IT systems and IT operations, in particular of current IT security standards and IT applications involved in ISMS processes
  • Experience in crisis management and resilience in dealing with crisis situations, as well as an understanding of process management
  • High personal integrity, neutrality and discretion
    Ability to work in a team and experience in communicating with interdisciplinary contacts in information security management
  • Efficient, structured and goal-orientated way of working with a high level of personal responsibility
  • Business fluent in German and English; other languages are an advantage

About the company

We work worldwide for a future worth living. That is GIZ's vision and long-term goal.

It offers customised, economical and effective services for sustainable development.

Our benefits

  • Promotion opportunities
  • Vocational training
  • Company kindergarten
  • Flexible working hours
  • Home office
  • Public transport ticket / subsidy
  • Special leave
  • Team building
  • Further training