0Chief Information Security Officer (CISO) / Informationssicherheitsbeauftragter (m/f/d)
Universitätsklinikum Ulm | Germany | 89xxx Ulm | Permanent position | Part time - flexible / Full time / Home office | Published since: 17.09.2026 on stepstone.de

Chief Information Security Officer (CISO) / Informationssicherheitsbeauftragter (m/f/d)

Branch: Nursing, emergency medical ... Branch: Nursing, emergency medical services and obstetrics


The University Hospital Ulm, with its employees, stands for a modern patient care with high quality, top-quality research and a future-oriented medical teaching as well as training in attractive professional fields. Qualified and dedicated employees are prerequisites for this. In our Centre for Information and Communication the following position is to be taken: Chief Information Security Officer (CISO) / Information Security Officer (m/w/d) Type of contract: unlimited Type of employment: Full-time Application until: 15.10.2026

Your tasks • Your profile • What we offer

The University Hospital Ulm, with its employees, stands for a modern patient care with high quality, top-quality research and a future-oriented medical teaching as well as training in attractive professional fields. Qualified and dedicated employees are prerequisites for this. In our Centre for Information and Communication the following position is to be taken: Chief Information Security Officer (CISO) / Information Security Officer (m/w/d) Type of contract: unlimited Type of employment: Full-time Application until: 15.10.2026

As CISO, you take over the strategic, organizational and professional management of information security at the University Hospital. You build an effective information security management system (ISMS), develop this continuously and ensure compliance with legal, regulatory and internal requirements. The function is directly assigned to the Executive Board as an independent staff body and has a direct right to lecture and escalation.

Your main responsibilities Development of the information security strategy and derivation of security targets from corporate strategy, regulatory requirements and risk situation. Establishment, operation and continuous development of the ISMS according to relevant standards, in particular BSI IT-Grundschutz and ISO 27001. Management of information security risk management and preparation of risk treatment decisions for the Executive Board. Ensuring the implementation of regulatory requirements, in particular KRITIS, NIS2, BSI requirements, GDPR and relevant governance requirements. Regular reporting on security situation, risks, measures, security indicators and significant incidents to the Executive Board. Advising Board of Management, Executives, IT, Medical Technology and Departments on Information Security, Cybersecurity and Cyber Resilience. Coordination of security incidents, reporting processes, follow-up and improvement measures in cooperation with the relevant operational units. Further development of security awareness, security culture and targeted training and awareness measures.

Complete Master's degree in Computer Science, Business Informatics, IT Security, Information Management or a comparable qualification. Multiannual professional experience in information security, cybersecurity, IT governance or regulated IT environments, ideally in healthcare, KRITIS environment or public sector. Funded knowledge in ISMS, risk and compliance management as well as relevant standards and specifications, in particular ISO 27001, BSI IT-Grundschutz, NIS2 and KRITIS. Experience in project, risk and stakeholder management and understanding of technical and process-oriented processes in complex organisations. Certifications such as CISM, CISSP, CRISC, ISO 27001 Lead Implementer/Lead Auditor or IT-Grundschutz-Praktiker/-Berater are desirable.

A responsible key role with direct management commitment and high strategic relevance. The opportunity to actively shape information security, cyber resilience and digital transformation in a university clinic. A challenging, interdisciplinary environment with high social importance. Design space in building modern governance, risk and security structures. Remuneration according to the collective agreement TV UK (Tarif Contracts – AGU Uniklinika) in remuneration group E13 UK (Entgelt Chart TV UK.pdf). The specific grouping takes place taking into account your qualifications and the activity to be carried out. The respective level of experience depends on the relevant professional experience. Annual special payment and occupational pensions Individual integration and personnel development planning Possibilities for personal and professional development, e.g. specialist training, additional qualifications and support in the course of professional studies Teleworking / Homeoffice Offers for the compatibility of family and profession, e.g. in-house kindergarten and nursery Staff residence and grant ÖPNV Operational health promotion (e.g. cooperation with various fitness studios) Various corporate benefits/benefits

Location

ava Universitätsklinikum Ulm
89081  Ulm
Germany

The text of this ad was translated from German into English using an automatic translation system and may contain semantic and lexical errors. Therefore, it should be used for introductory purposes only. For more detailed information, see the original text of the ad at the link below.

For more information read the original ad

Permanent link to this ad

Ad Id