secAdair GmbH | Germany | 50xxx, 51xxx Köln | Permanent position | Full time / Home office | Published since: 14.08.2026 on stepstone.de
Senior Consultant IT Compliance and Cybersecurity (m/f/d)
Communication, design and customer proximity are your strengths? You are delighted to build, introduce and keep up processes around information and cyber security?
The basis for your action is professional passion and openness? Values such as accuracy, reliability and independent action are important to you?
Then shape your future: Go to the lead and strengthen our team as:
Senior Consultant (w/m/d) IT Compliance and Cybersecurity
We support our customers in implementing complex regulatory requirements in the energy industry – from IT governance and information security to NIS2, KRITIS Dachgesetz and BNetzA industry-specific requirements.
In the field of economic claims and regulatory requirements, we implement compliance, which is not a business-inhibiting, but a clear competitive advantage - customer-oriented and flexible. With an outstanding mix of expertise, methodological expertise and IT confession, we work on the fact that our customers are: notPwnd!
!
* After clicking the Read more button, the original advert will open on our partner's website, where you can see the details of this vacancy and contact information. If you need a translation of this text, after returning to our website it will be prepared and you can read it by clicking the Show full translation button.
Your tasks • Your profile • What we offer
Communication, design and customer proximity are your strengths? You are delighted to build, introduce and keep up processes around information and cyber security?
The basis for your action is professional passion and openness? Values such as accuracy, reliability and independent action are important to you?
Then shape your future: Go to the lead and strengthen our team as:
Senior Consultant (w/m/d) IT Compliance and Cybersecurity
We support our customers in implementing complex regulatory requirements in the energy industry – from IT governance and information security to NIS2, KRITIS Dachgesetz and BNetzA industry-specific requirements.
In the field of economic claims and regulatory requirements, we implement compliance, which is not a business-inhibiting, but a clear competitive advantage - customer-oriented and flexible. With an outstanding mix of expertise, methodological expertise and IT confession, we work on the fact that our customers are: notPwnd!
Analysis, interpretation and evaluation of legal, regulatory and normative requirements (e.g. GDPR, ISO/IEC 27001, ISO/IEC 22301, KRITIS Regulation, NIS2) Conception, introduction and continuous development of management systems (e.g. ISMS) including ongoing optimization measures Development, updating and maintenance of guidelines, processes and related documentation Implementation of assessments, risk and gap analyses and derivation and planning of appropriate measures Central contact person for IT, specialist departments, management and external partners in all questions of IT compliance including consulting and reporting Planning, preparation and monitoring of internal and external audits Future management and further development of the IT compliance portfolio, especially in the field of energy/KRITIS.
Education: Complete university studies and experience in compliance, computer science, risk management, auditing, data protection, law (or comparable). Legal basis and standards: Regulations, regulations and standards such as NIS2, CRA, GDPR, DORA, KRITIS, EnWG, IT-SiKat, BSIG, ISMS are not unknown to you. Certifications: Detectable knowledge in the field of IT compliance, ideally with certification (e.g. CISM, CGEIT, CRISC, CISSP or ITIL). Industry experience: At least 5 years of relevant professional experience in the energy industry, preferably in the field of renewable energy and storage systems. Professional skills: Detectable experiences in the auditing of ISMS systems, for example according to ISO 27001/19, as well as experienced handling of AI tools, in the context of IT compliance and cybersecurity. Technical understanding and knowledge in handling secure networks and SCADA Security. First experiences in leading teams – also remote. Personal Skills: IT-Affinity, Steuertti, Wadenbeißer*in, structured, termintreu as well as team- and training-affin – open and curious.
Flexibility: We care about the compatibility of work, family and health. Working time and place of work are therefore flexible. Training: We promote your development and support you in visiting training and seminars as well as obtaining certifications. Equipment: top equipment in the office or home office. Remuneration: We are not looking for a job-hopper and therefore pay market- and performance-oriented. Benefits: Bright, modernly equipped office rooms in Citylage, beverage-flatrate, terrace with barbecue, company bike, Germany-ticket and above all: a super team that packs up and drives customer solutions.
.
Location
![]() | secAdair GmbH | |
| 50667 Köln | ||
| Germany |
The text of this ad was translated from German into English using an automatic translation system and may contain semantic and lexical errors. Therefore, it should be used for introductory purposes only. For more detailed information, see the original text of the ad at the link below.
For more information read the original ad