0IT Security Architect / Project Manager SIEM & SOC (m/f/d)
Johann Wolfgang Goethe-Universität Frankfurt | Germany | 60xxx, 65xxx Frankfurt am Main | Temporary contract | Full time | Published since: 15.09.2026 on stepstone.de ♿️

IT Security Architect / Project Manager SIEM & SOC (m/f/d)

Branch: Humanities Branch: Humanities


The Johann Wolfgang Goethe-Universität Frankfurt am Main is one of the largest universities in Germany with around 41,000 students and around 7,000 employees. Founded in 1914 by Frankfurter Bürger and since 2008 again in the legal form of a foundation, the Goethe University has a high degree of autonomy, professional diversity and innovative capacity. As a full university, the Goethe University currently offers 159 degree programs in 16 disciplines at five locations, has an outstanding research and third-party strength and is closely linked to society in various interactions by its scientists. In addition, the Goethe University is embedded within the association of the Rhine-Main University (RMU). The University Computing Center (HRZ) is the central IT service provider of the Goethe University Frankfurt am Main. It supports all university members in their respective areas of responsibility by providing IT infrastructure, various services, applications and comprehensive consulting and training services. In the Higher Education Computing Centre, the following point for the implementation of the project “Building a Core-wide SIEM/SOC Structure for Higher Education” is for one(s): IT Security Architect(in) / Project Manager(in) SIEM & SOC (m/w/d) (E 13 TV-G-U) to occupy for four years. The grouping is based on the characteristics of the collective agreement applicable to the Goethe University (TV-G-U). Strengthen our team at Goethe University Frankfurt in the field of IT security. In this position, you contribute significantly to protecting our university from cyber threats and strengthening our IT infrastructure. They work at the interface to a core-wide collaborative project to introduce and establish a SOC in the university context. They are linked to the central, university CERT team responsible for the prevention, detection, response and follow-up of cyber security incidents at the university. Enjoy the benefits of a dynamic and research-intensive environment on Campus Westend, one of the most modern and most beautiful university campus in Germany. Benefit from our outstanding social benefits, including a currently free country ticket and access to a wide range of professional training opportunities. .

Your tasks • Your profile • What we offer

The Johann Wolfgang Goethe-Universität Frankfurt am Main is one of the largest universities in Germany with around 41,000 students and around 7,000 employees. Founded in 1914 by Frankfurter Bürger and since 2008 again in the legal form of a foundation, the Goethe University has a high degree of autonomy, professional diversity and innovative capacity. As a full university, the Goethe University currently offers 159 degree programs in 16 disciplines at five locations, has an outstanding research and third-party strength and is closely linked to society in various interactions by its scientists. In addition, the Goethe University is embedded within the association of the Rhine-Main University (RMU). The University Computing Center (HRZ) is the central IT service provider of the Goethe University Frankfurt am Main. It supports all university members in their respective areas of responsibility by providing IT infrastructure, various services, applications and comprehensive consulting and training services. In the Higher Education Computing Centre, the following point for the implementation of the project “Building a Core-wide SIEM/SOC Structure for Higher Education” is for one(s): IT Security Architect(in) / Project Manager(in) SIEM & SOC (m/w/d) (E 13 TV-G-U) to occupy for four years. The grouping is based on the characteristics of the collective agreement applicable to the Goethe University (TV-G-U). Strengthen our team at Goethe University Frankfurt in the field of IT security. In this position, you contribute significantly to protecting our university from cyber threats and strengthening our IT infrastructure. You work at the interface to a core-wide collaborative project to introduce and establish a SOC in the university context. You are linked to the central, university CERT team responsible for the prevention, detection, response and follow-up of cyber security incidents at the university. Enjoy the benefits of a dynamic and research-intensive environment on Campus Westend, one of the most modern and most beautiful university campus in Germany. Benefit from our outstanding social benefits, including a currently free country ticket and access to a wide range of professional training opportunities.

Project Management & Coordination: You create the local conditions for participating in the central SIEM/SOC and represent the local needs of our university towards the central project. You actively participate in the multi-school working groups, create regular local status reports and take over stakeholder management at their own university. You collect and structure the local requirements of relevant institutions such as HRZ, university library, departments and other central units and prepare them for the central SIEM/SOC project. Technical onboarding & data flows: you document and organize the local data sources according to central specifications. You ensure the secure data flow as well as the onboarding of the log data to the central SIEM and take over the local log management to ensure the data quality and to prepare an appropriate connection. You also take into account security-relevant log data from cloud and platform services such as Microsoft 365, Azure or other services used at the University. Use Case Management: You support the organization, selection and evaluation of relevant use cases in cooperation with the central project and introduce high-level requirements. The implementation of own dashboards or detection rules takes place according to requirements and in coordination with the central SOC. Incident Response & Alert: You document the responsibilities and alert paths and develop local playbooks/runbooks for standardised processing of the security incidents transmitted by the central SOC (e.g. isolation of compromised endpoints). Committee and approval processes: You provide technical and organizational information for consultations with data protection, personnel representation, information security management and other internal bodies.

completed scientific study of the field of computer science or equivalent skills, knowledge or experience desirable many years of practical experience in IT security, security monitoring, security operations, system and Network administration or comparable fields of activity Experience in the cooperation or coordination of complex IT projects and the ability to collect, document and coordinate technical and organizational requirements in a structured manner Experience in the administration or in the technical operation of server and/or client operating systems Knowledge of the administration of IT systems and the handling of security-relevant log data from local IT systems and cloud services knowledge of network security as well as the handling of security-relevant log data, e.g. firewall, proxy, endpoint or cloud systems Knowledge and experience in Vulnerability Management and Endpoint Security well-founded knowledge in SIEM/SOC, log management, incident response and network security as well as a good understanding of typical SOC processes Knowledge and experience in the interpretation of logfiles and identification of security-relevant notes Knowledge of information security management and experience in the comprehensible documentation of IT security processes Experience in the treatment and documentation of safety incidents Experience in the care and documentation of IT processes independent operation communicative skills, high service orientation, team skills and very good German and English skills The following are also desirable: Experience with scripting, automation or simple data processing, e.g. with PowerShell, Python or Shell scripts Knowledge of relevant standards and frameworks, e.g. ISO 27001, BSI IT-Grundschutz, MITRE ATT&CK or NIST relevant further education or certification in the field of IT security, information security management or incident response Interest in and knowledge of current developments in artificial intelligence related to IT security, in particular AI-based attacks, detection methods or security risks

an independent working environment in our collegial, dedicated CERT team the possibility of using current technologies in an inspiring environment, testing new technologies and transferring them to productive operations a modern workplace at the Campus Westend of Goethe University a currently free country ticket Hesse Social benefits according to the regulations of the public service, e.g. benefits, additional pensions and much more Training opportunities, flexible working hours, health management and joint events a diverse range of sports offerings with over 100 courses at discounted conditions family-friendly and flexible working hours You are directly involved in the design and implementation of innovative security strategies and play a central role in securing our IT infrastructure against cyber threats. If you are part of a dedicated team and want to make a significant contribution to the IT security of our university, we look forward to your meaningful application. The Goethe University is actively engaged in opportunities, family-friendliness and diversity. In order to strengthen the diversity of different worlds of life and experience at the university, we are particularly pleased with applications from people with migration history and members of other previously underrepresented groups. Persons with a severe disability or similar persons are preferably taken into account with the same suitability. If women are underrepresented in the central institution, You are preferably taken into account with the same qualification. Subsequent documents in German, including the certificates, can be sent to the Head of the GU-CERT Mr. Jörg Breuer, PA-Building, Theodor-W.-Adorno-Platz 1, 60629 Frankfurt am Main or by e-mail with the password “SIEM/SOC” to bewerbung@rz.uni-frankfurt.de. Please note that the application documents are not sent back. Costs incurred as part of the application process are not reimbursed by the Goethe University. .

Location

ava Johann Wolfgang Goethe-Universität Frankfurt
60323  Frankfurt am Main
Germany

The text of this ad was translated from German into English using an automatic translation system and may contain semantic and lexical errors. Therefore, it should be used for introductory purposes only. For more detailed information, see the original text of the ad at the link below.

For more information read the original ad

Permanent link to this ad

Ad Id