Senior Specialist IT-Security EU

Röchling
Neuhaus am Rennweg, Germany
5 days ago
Apply on www.adzuna.de
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Working hours
Regular working hours
Languages
English, German
Job source

Tech stack

Cyber Security Identity and Access Management Information Technology Audit Remote Access Technology Phishing Software Vulnerability Management Information Technology Meditech Network Server

Job description

Shape Information Security & Governance

  • Develop and continuously improve our regional IT security and compliance framework based on corporate requirements and recognized standards such as ISO 27001.
  • Create and maintain security policies, standards and technical security guidelines covering areas such as access management, privileged accounts, hardening and remote access.
  • Advise business functions and projects on Security-by-Design and IT compliance requirements.
  • Translate security requirements into pragmatic and sustainable solutions for our European organization.

Identify & Manage Security Risks

  • Plan, coordinate and conduct IT security risk assessments, security reviews and GAP analyses.
  • Assess and prioritize vulnerabilities and security risks and recommend appropriate technical and organizational measures.
  • Support effective Vulnerability Management and the continuous reduction of security exposure.
  • Work closely with Infrastructure, Applications, Workplace and local IT teams to implement security requirements.

Drive Audits & Compliance

  • Coordinate customer, certification and internal IT audits across the European organization.
  • Prepare audit documentation and manage findings, corrective actions and deadlines.
  • Develop meaningful IT security and compliance KPIs and KRIs and provide transparent reporting to relevant management stakeholders.
  • Collaborate with Data Protection, Quality Management and Legal where information security and regulatory requirements intersect.

Strengthen Security Awareness & Incident Management

  • Coordinate the regional IT Security Awareness Program, including training, communication campaigns and phishing simulations.
  • Support and coordinate the response to security incidents together with internal teams, Group Security and external partners.
  • Help build a strong security culture in which information security becomes part of everyday decision-making.

Requirements

  • Degree in Computer Science, Business Informatics, Information Security or a comparable technical field; alternatively, relevant vocational IT training combined with substantial professional experience.
  • Several years of experience in IT Security, Information Security, Cyber Security or a comparable role such as Security Engineer, Information Security Officer, Cyber Security Consultant or GRC Specialist.
  • Good knowledge of recognized security standards and frameworks such as ISO 27001/27002, NIST or BSI IT-Grundschutz.
  • Solid understanding of technical security mechanisms across networks, servers and virtualization, endpoints, identity and access management.
  • Experience with risk assessments, audits, remediation tracking and ITIL-related processes such as Incident, Change and Problem Management.
  • Ideally, experience within a regulated environment such as MedTech, pharmaceutical manufacturing, life sciences or another highly regulated industry.
  • Business-fluent German and strong English skills for working with international stakeholders.

What Sets You Apart

You combine technical understanding with a strong sense of governance and pragmatism. You can translate complex security topics for different audiences - from IT specialists to business functions and management.

You are comfortable challenging existing approaches when necessary, while understanding that successful information security requires collaboration rather than simply imposing rules.

You bring a structured and analytical mindset, strong communication skills and the confidence to coordinate cross-functional initiatives across sites and functions.

Benefits & conditions

  • Betriebliches Gesundheitsmanagement: Ihre Gesundheit und Ihr Wohlbefinden liegen uns am Herzen. Profitieren Sie daher von unseren vielfältigen Gesundheitsangeboten wie dem Betriebsarzt, der Gesundheitsvorsorge, Check-ups, Fitnessangeboten und Nachhaltigkeitstagen
  • Jobrad: Wir bieten unseren Mitarbeitenden die Möglichkeit, ein Jobrad zu leasen. Unser Angebot umfasst auch E-Bikes, für alle, die ein wenig zusätzlichen Rückenwind benötigen.
  • Verpflegung: Je nach Standort finden Sie verschiedene Verpflegungsoptionen - von klassischen Kantinen bis hin zu modernen Konzepten wie (FreshTaste’.
  • Corporate Benefits: Wir bieten unseren Mitarbeitenden exklusive Rabatte und Sonderkonditionen bei zahlreichen Marken aus den Bereichen Mode, Technik, Freizeit und vielem mehr.
  • Fort- und Weiterbildungen: Unser Fokus liegt auf der stetigen Weiterentwicklung unserer Teammitglieder. Wir möchten sicherstellen, dass jeder Einzelne sein volles Potenzial ausschöpfen kann, und bieten daher passgenaue Trainingsangebote für unterschiedliche Positionen an.
  • Flexibilität: Wo möglich, schaffen wir durch unsere flexiblen Arbeitszeitmodelle eine gute Vereinbarkeit von Beruf und Privatleben.

About the company

Why Röchling Medical?

At Röchling Medical, we develop and manufacture innovative solutions for customers in the pharmaceutical, diagnostics and medical technology industries. Working in this highly regulated environment means that quality, reliability, compliance and information security are integral to how we operate.

In this role, you can expect:

  • A key position with significant scope to shape IT Security across our European Medical organization
  • International collaboration across sites, functions and IT teams
  • Exposure to strategic as well as hands-on Cyber Security and Compliance topics
  • The opportunity to further develop security standards, processes and culture
  • A highly regulated and technologically demanding MedTech environment
  • A role where your expertise can make a visible impact on the organization

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.adzuna.de
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:29 min

Evaluating phishing emails that leverage artificial time constraints

Mauro Verderosa · LIVE

2:47 min

Exploring career opportunities and recruitment open positions

Kurt Eder · LIVE

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

2:39 min

Exposing stored XSS and phishing attacks via markdown

Ramona Schwering Ramona Schwering · World Congress 2026 Europe

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

Videos

See all

Related articles

See all