For our client from the Energy sector we are looking for IT Security Technology & Compliance Expert (f/m/d)
Key Data:
Start: ASAP
Location: Stuttgart
Employment type: Permanent
Key Responsibilities
Threat Detection & Risk Management
- Monitor, analyze, and evaluate emerging cyber threats, with a focus on AI-driven attacks and cloud-related risk scenarios.
- Perform risk and vulnerability assessments, defining appropriate mitigation and remediation measures in line with corporate risk frameworks.
- Support the implementation of preventive security controls, including threat intelligence, security monitoring, and AI-based anomaly detection.
Security Operations & Incident Response
- Assist in daily security monitoring, evaluate alerts, and coordinate remediation efforts with end users and IT teams.
- Support incident response activities across the EU, collaborating with internal IT, legal teams, and external forensic partners when necessary.
- Contribute to efficient incident management, escalation, and communication processes in close alignment with SOC and CSIRT teams.
Governance, Compliance & Resilience
- Support the implementation and continuous enhancement of IT security and risk management practices, ensuring alignment with relevant frameworks (e.g., NIS2, CRA, ISO 27001).
- Help coordinate penetration testing activities and track follow-up actions.
- Assist in maintaining IT security requirements for Business Continuity Planning (BCP) and overall operational resilience.
Collaboration & Stakeholder Engagement
- Work closely with global IT security teams, business units, and external partners to ensure consistent and practical security standards.
- Clearly communicate security risks, incidents, and mitigation strategies to both technical and non-technical stakeholders.
Required Qualifications & Experience
- Bachelor's degree in Computer Science, Information Security, or a related field; a Master's degree is a plus.
- 5-8 years of professional IT experience, including at least 3 years in information security or security management.
- Hands-on experience with SIEM solutions, threat intelligence platforms, and modern security tools.
- Strong knowledge of cybersecurity principles, security monitoring, and threat detection methodologies.
- Familiarity with key security and compliance frameworks such as NIS2, ISO 27001, SEMI 187/188, and CRA.
- Fluent in English; additional languages are beneficial.
Preferred Competencies
- Proven ability to work effectively in international, matrix-driven organizations.
- Strong stakeholder management and communication skills, including engagement with senior leadership and external partners.
- Good understanding of evolving AI-driven threat landscapes and related regulatory considerations.
We look forward to your application!