Job
- Level
- Senior
- Job Field
- IT, Project, Security
- Employment Type
- Full Time
- Contract Type
- Permanent employment
- Salary
- 5.301 to 6.781€ Gross/Month
- Location
- Marchtrenk
- Working Model
- Onsite
Job Summary
In this role, you will develop comprehensive security strategies, lead cyber defense teams, conduct risk assessments, and oversee compliance processes according to applicable standards and regulations.
Job Technologies
Your role in the team
- Security Governance
- Cyber Defense Oversight
- Compliance (ISO, GDPR, Policies, Audit Readiness)
- Incident Response & Crisis Management
- Risk analyses
- Architecture approvals
- Security Roadmaps
- Security Awareness & Culture
- Security Operations at an enterprise level
- You are the one who determines whether an environment is safe or not.
- Strategy & Governance
- Development and implementation of the entire security strategy
- Development & Enhancement of the TOMORIS Security Framework
- Creation and maintenance of policies, standards, guidelines
- Leadership of the Security Roadmap and long-term security objectives
- Regular risk and threat analyses
- Consulting & Leadership
- Sparring partner for CEO, CTO, and leadership team
- Consulting clients at management and executive board level
- Presentation of complex issues in an understandable and impactful manner
- Leadership of the Cyber Defense, IT Security & Compliance Teams
- Operations & Incident Response
- Technical review of security architectures
- Management of Major Incidents and Security Incidents
- Approval & Monitoring of Critical Changes
- Control of Zero-Trust standards, identities, networks & processes
- Compliance & Audit
- Preparation, support, and management of audits (ISO, customers, authorities)
- Development of documented structures (Notion, Jira, D365, SOPs)
- Ensuring compliance with legal and normative requirements
- Implementation of Security Awareness Programs
This text has been machine translated. Show original
Our expectations of you
Qualifications
- Deep technical understanding in:
- Microsoft Security Stack
- Azure Security & Identity
- Firewalls / Network / Zero Trust
- Incident Response, Forensics, Threat Modeling
- Knowledge of standards / compliance (ISO 27001, 9001, 45001, GDPR)
- Ability to connect management & technology
- Excellent communication and presentation skills
- German & English professionally
- Certifications such as CISSP, CISM, CCSP, SC-300/400, NSE
- You remain calm in critical situations.
- You make decisions based on facts and with precision.
- You think in systems, cause & effect.
- You are steadfast, clear, professional.
- You can lead, set boundaries, and take full responsibility.
- You are always honest.
Experience
- Several years of experience in the IT security environment (at least 5-8 years)
- Experience in leading security programs or teams
- Experience with SOC/SIEM/SOAR
- Experience in crisis management
- Experience with cloud governance, RBAC, PIM
This text has been machine translated. Show original
What we offer
- TOMORIS is building one of the strongest security units in Austria.
- You get:
- Direct influence on corporate strategy & customer architectures
- TOMORIS University for Security, Leadership & Architecture
- Work with enterprise technologies (Microsoft, Fortinet, Sentinel, Defender)
- Access to critical real-world scenarios & environments
- A team that embodies responsibility and excellence
- Full support for certifications & further training
- Opportunity to build a security organization long-term
- This position clearly falls into the activity family:
- LT - Management, IT Collective Agreement
- A CISO is always paid above KV - significantly. Especially with relevant experience, certification, and higher responsibility.
This text has been machine translated. Show original
Topics that you deal with on the job
Job Locations
This is your employer
TOMORIS GmbH
TOMORIS GmbH provides comprehensive solutions in IT services, particularly in the areas of cyber security and automation. The company acts as a strategic partner for businesses looking to efficiently design their IT architecture.
Description
- Company Type
- Established Company
- Working Model
- Onsite
- Industry
- Internet, IT, Telecommunication