Korian Deutschland GmbH | Germany | 81673 München | Permanent position | Home office | Published since: 17.09.2026 on stepstone.de ♿️
* After clicking the Read more button, the original advert will open on our partner's website, where you can see the details of this vacancy and contact information. If you need a translation of this text, after returning to our website it will be prepared and you can read it by clicking the Show full translation button.
Your tasks • Your profile • What we offer
Tasks As a Local Information Security Officer (m/w/d), you are responsible for the information security of Korian Deutschland with around 240 facilities and outpatient services in the KRITIS environment – with a direct line of reports to our Chief Digital & Information Officer. Together with the team, we work with Korian every day to provide good care. The values “confidence – initiative – responsibility” lead our work and are lived noticeably. Your employment is unlimited, in Munich and now. In this role, you are responsible for the further development of our information and cyber security landscape and ensure that regulatory requirements such as NIS2 and ISO 27001 are effectively integrated into our organization and IT landscape. In doing so, you connect security governance and compliance with technical security architecture: You work closely with Group Security in France – you control the operational implementation together with our IT departments and external IT service providers. The position is designed as an expert role without disciplinary leadership: You're professionally implementing standards, specifications and security projects and across all IT areas. Your future tasks: You will ensure the timely fulfilment of the NIS2 reporting and verification obligations and develop our ISMS according to ISO 27001/NIS2 – including risk registers, policies, reporting paths, audit management, and security awareness You set the security standards and reference architectures for IT and OT and specify the requirements for cloud (SaaS, IaaS, PaaS), IAM around Microsoft Entra ID, network (SD-WAN, WLAN, segmentation, firewall policies) and workplace (EDR strategy) – including security by design in projects You build security incident and emergency management and plan the associated processes from detection to NIS2 compliant notification to recovery – including crisis organisation, emergency exercises, and analysis and re-establishment of incidents for the sustainable derivation of measures You provide the security requirements for applications and proprietary developments – from Secure Software Development to Vulnerability Management –, implement their implementation to IT specialist areas and service providers and evaluate cloud providers as well as contracts from security perspective You control the assessment and sustainable reduction of security risks and audit finding and ensure a transparent monitoring of security measures and their effectiveness As a key point of contact: in Group Security, you are transferring Group Policy to the German context, is responsible for reporting security KPIs and incidents and bringing security requirements into implementation with internal teams and relevant stakeholders pragmatically.
Requirements That's what you bring You have a degree in computer science, business informatics, IT security or a comparable qualification You bring at least 8 years of experience in information security and know regulatory requirements from the KRITIS, NIS2 or ISO-27001 environment You combine strategic thinking with strong implementation and experience in building and sustaining ISMS, security processes and structures independently Ideally you bring certifications such as CISSP, CISM or ISO 27001 lead auditor/implementer with You have experience in enforceing security requirements across departments and external IT service providers and maintaining their compliance You have a broad technical understanding of cloud, network and application security and can discuss security requirements with technical teams at eye level You communicate safely in German and English; French knowledge is advantageous You are convinced by professional authority and enforcement strength in order to represent security issues to different stakeholders at eye level and to anchor them sustainably in the organization
Benefits We offer you Varied career opportunities in a future-oriented and meaningful company A separate responsibility area with free space for shaping Professional onboarding including own mentor:in A well-balanced work-life balance with home office regulations, flexible working hours and versatile offerings within the framework of health promotion Attractive employee benefits such as, for example, a grant to occupational retirement, employee benefits as part of corporate benefits and much more Individual training at Corporate Clariane University Germany and personal development opportunities Disabled applicants are particularly taken into account with the same suitability. Convinced? Then apply now and become part of the team Korian! !
Location
![]() | Korian Deutschland GmbH | |
| 81673 München | ||
| Germany |
The text of this ad was translated from German into English using an automatic translation system and may contain semantic and lexical errors. Therefore, it should be used for introductory purposes only. For more detailed information, see the original text of the ad at the link below.
For more information read the original ad