devjobs.de

Information Security Compliance & Audit

ODDO BHF · Saarbrücken | Deutschland · Onsite

Gehalt auf Anfrage

Gefunden am 17.05.2026

Match

84%

Fit in Skills, Kultur und Entwicklungspfad.

Beschreibung

Job Zusammenfassung In dieser Position überprüfst du die Informationssicherheits-Compliance, entwickelst Auditpläne, identifizierst Risiken und dokumentierst Sicherheitsanforderungen, um optimale Sicherheitsstandards in Zusammenarbeit mit internen sowie externen Stakeholdern zu gewährleisten. Job Zusammenfassung In dieser Position überprüfst du die Informationssicherheits-Compliance, entwickelst Auditpläne, identifizierst Risiken und dokumentierst Sicherheitsanforderungen, um optimale Sicherheitsstandards in Zusammenarbeit mit internen sowie externen Stakeholdern zu gewährleisten. Deine Rolle im Team This position assists Compliance and Information Security in providing independent internal control evaluations, auditing, monitoring, and reviewing activities performed by the 1st line of defense, including 3rd party providers/outsourcing on regards to information security relevant domains. This role will work to ensure ongoing information security compliance by identifying information security risks or non-compliances against the internal information security baseline, industry security standards and frameworks, relevant laws and regulations, and industry best practices. This position also assists in maintaining and developing appropriate policies, procedures, and other relevant documentation to Information Security Compliance Evaluation functions and the whole organization. Define and execute information security audit/control plans on ODDO BHF's ecosystem internally and for external suppliers/outsourcing, by identifying the control objectives in conformity with information security related standards (ISO 2700x, BSI, NIST etc.) Define and execute the plan for monitoring and reviewing the results of self-assessment process on a risk-based approach Verify the implementation status of control objectives and applicable security requirements by checking the provided evidence in support to the evaluation Monitor the effectiveness of the compliance evaluation processes in accordance with agreed metrics and performance measures to drive continuous improvements Prepare IS Compliance reports and status reports, by documenting the identified information security non-compliances Actively communicate to asset/process owners and other stakeholders with the goal of identifying the information security non-compliances on regards to 3rd parties suppliers/outsourcing Develop and maintain the policies, procedures, manuals, guidelines relevant to IS Compliance Evaluation function Unsere Erwartungen an dich Ausbildung University degree in Computer Science/ Information Security or related technical fields Qualifikationen Ability to collaborate with other departments and stakeholders Technical certifications in Information Security and IT Audit A passion for accuracy and translating insights into a compelling narrative; able to maintain a balance between the details and the larger picture. Erfahrung Proven track record of work experience in ISM Control System related job positions Knowledge and experience on information security standards such as ISO 2700x, BSI, NIST Experience on planning and performing technical controls, monitoring and reviewing software and hardware security, and organizational controls +3y experience in same or similar positions in Financial Institutions Knowledge and/or experience on information security frameworks such as SWIFT, PCI DSS, SOX, DORA Themen mit denen du dich im Job beschäftigst Cyber/Security Metadaten Level: Erfahren Job Feld: IT, Security Anstellung: Vollzeit Vertragsart: Unbefristetes Dienstverhältnis Arbeitsmodell: Onsite Unternehmenstyp: Etablierte Firma Branche: Banken, Finanz, Versicherung Ort: Saarbrücken | Deutschland

Tech Stack

AWS

Warum passt du zu dieser Stelle?

Fit technisch: Stark auf Backend und API-Architektur.

Gaps: Fehlende Tool-Erfahrung in 1-2 Schlüsselbereichen.

Success-Wahrscheinlichkeit: Hoch bei schneller Einarbeitung.