Logo of Huzzle

Senior Auditor für Informationssicherheit im Bereich Corporate Audit & Risk (m/w/d)

  • Job
    Full-time
    Senior Level
  • Consulting
    IT & Cybersecurity
  • Offenburg

AI generated summary

  • You need a relevant IT degree, experience in IT security or audits, knowledge of IT architectures, certifications (or willingness to get them), strong communication skills, and flexibility to travel.
  • You will conduct internal audits of ISMS, prepare audit reports, support IT governance and risk management, and collaborate on cross-functional digital projects.

Requirements

  • Erfolgreich abgeschlossenes Studium mit IT-Bezug (z.B. Wirtschaftsinformatik, Wirtschaftsingenieurwesen, Informatik, Informationssicherheit oder weitere Studiengänge mit IT-Bezug)
  • Mehrjährige Erfahrung in der IT, speziell im Bereich Informationssicherheit, in der internen Revision oder in einer IT-Beratungsgesellschaft
  • Ein gutes Verständnis für gängige IT-Architekturen, Netzwerkarchitekturen und -diensten sowie IT-Sicherheitstechnologien und -verfahren sowie Know-how im Sicherheits- und Risikomanagement
  • Einschlägige Zertifizierungen wie BSI-Auditor (Auditteamleiter für ISO 27001-Audits auf der Basis von IT-Grundschutz, ISO 27001 Lead Auditor, CISSP, CISA, CISM) bzw. die Motivation, diese zu erwerben
  • Methodische Kenntnisse in IT-bezogenen Prüfungsthemen und IT-Standards (ISO 2700x, COBIT, NIST, ITIL, ISO 31000)
  • Selbstständige, strukturierte und analytische Arbeitsweise
  • Starke kommunikative Fähigkeiten und ein ausgeprägtes Stakeholder-Management
  • Sehr gute Deutschkenntnisse (C2) und gute Englischkenntnisse
  • Reisebereitschaft und Flexibilität

Responsibilities

  • Vorbereitung und Durchführung interner Prüfungen des Information Security Management Systems (ISMS) in Einheiten der Burda-Unternehmensgruppe sowie von IT-Organisationen, komplexen operativen IT-Systemen, IT-gestützten Geschäftsprozessen und IT-Infrastrukturen
  • Selbständige Erstellung aussagefähiger IT-Revisionsberichte und Begleitung der Umsetzung vereinbarter Maßnahmen
  • Mitwirkung bei Beratungsdienstleistungen in Fragestellungen zu IT-Governance, Informationsrisiko- und Informationssicherheitsmanagement, Benutzerberechtigungsmanagement, IT-Betrieb, Datenmanagement sowie Etablierung der dazugehörigen IT-Kontrollen
  • Revisionsseitige Begleitung von bereichsübergreifenden Projekten mit Fokus auf Digitalisierung
  • Enge Zusammenarbeit mit IT, Informationssicherheit, Risikomanagement, Compliance und Datenschutz

FAQs

Where is the job located?

The job is located in Munich or Offenburg.

What is the employment type for this position?

The position is full-time and permanent.

What qualifications are required for this role?

A successfully completed degree with an IT focus, such as Business Informatics, Industrial Engineering, Computer Science, or Information Security, is required.

What kind of experience is necessary for applicants?

Applicants need several years of experience in IT, specifically in information security, internal auditing, or a consultancy firm.

What certifications are preferred for this position?

Relevant certifications such as BSI Auditor, ISO 27001 Lead Auditor, CISSP, CISA, or CISM are preferred, or candidates should have the motivation to obtain them.

Are there specific IT standards knowledge required?

Yes, knowledge in IT-related auditing topics and standards such as ISO 2700x, COBIT, NIST, ITIL, and ISO 31000 is required.

What language skills are necessary for this position?

Very good German skills (C2) and good English skills are required.

Is travel required for this job?

Yes, travel readiness and flexibility are required.

What benefits does the company offer?

The company offers various benefits, including support for retirement plans, job bike options, health management, discounts on magazines and brands, training opportunities, and flexible working hours.

Is there a commitment to diversity within the company?

Yes, the company values diversity and welcomes all applications regardless of gender, nationality, ethnicity, religion, disability, age, or sexual orientation.

Entertainment & Media
Industry
10,001+
Employees

Mission & Purpose

With around 10,500 employees and over 500 brands world-wide, Hubert Burda Media is one of Germany’s largest technology and media companies. We create media with people, for people. We use our social relevance to make a difference and offer our employees the freedom to be creative and to invent new things. That is why working at Burda means: working "...in good company". All our business activities focus on our consumers, offering them reliable information, helpful services and great entertainment. We have strong media and digital brands in the News, Tech, Food, Living, Gardening, Fashion, Lifestyle, Health and Entertainment segments. We are active in 13 markets across Europe, Asia, and the United States. A family enterprise with a history spanning over 100 years, Burda combines traditional publishing with successful digital innovation and also invests in digital business models to ensure their long-term success. Examples include Xing, Nebenan.de and Vinted. Our digital activities also include journalism services such as Focus Online and Chip.de. We strive to actively shape the changes taking place in the media world. Our employees are as diverse as our company, technologies and media. If you have an entrepreneurial mindset, can take responsibility, and enjoy working in a team to drive innovation, Burda is the right place for you.