Information Security Governance Manager (f/m/d)
Düsseldorf, DE
We are Uniper
At Uniper, we are pro-actively transforming the world of energy whilst at the same time ensuring security of energy supply. As an internationally operating company, we work in very diverse teams with the greatest possible working time flexibility for our employees. Our corporate culture is characterized by equal opportunities, mutual appreciation, and respect. With us, you will be able to develop new business models, work on technological solutions for a modern, sustainable, and future-oriented energy supply as well as pro-actively help to shape changes. Interested? Then we will look forward to meeting you!
Your responsibilities
The Information Security Governance Manager supports developing and implementing Uniper's information security strategy, Information Security Management System (ISMS) policies and governance framework. This role focuses on establishing and maintaining a robust and comprehensive security framework ensuring adherence to regulatory requirements, industry best practices and standards. Mission of this role is maintaining the integrity and protection of Uniper’s information assets through an effective ISMS.
- Serve as a Subject Matter Expert (SME) on Uniper’s information security strategy, governance and associated critical processes, ensuring alignment with regulatory, statutory, and industry requirements and security best practices
- Develop and manage comprehensive information security strategies, standards, processes, and ensuring enforcement across Uniper
- Support the review and formal approval process for security governance documents and coordinate updates to the ISMS policies framework
- Ensure ISMS policies and standard documents meet industry best practices, standards and compliance requirements
- Define and ensure implementation of information security governance across technologies, departments, and data assets
- Engage in preparation for and participation in external and internal audits (e.g., ISO 27001, NIS2, KRITIS, DORA). Maintain awareness and knowledge of current changes within legal, regulatory, and technology environments
- Support overall validation of adherence to ISMS policies and standards through control evaluation, ensuring compliance through assessment, remediation, and escalation
- Define and manage key performance indicators (KPIs) to measure effectiveness and compliance related to ISMS policies and standards
- Collaborate with IT and Operational Technology (OT) teams to ensure security measures and practices are integrated across all technology stacks and control systems
Your profile
- Completed degree in information security, business information technology, computer science, business administration, or a similar field / qualification
- Several years of experience in information security management / governance, or other information risk management functions
- Profound knowledge of information security industry standards and regulatory requirements, e.g., ISO/IEC 27001/62443, NIST CSF, NIS 2, DORA, KRITIS. Proven track record of implementing new regulations and maintaining compliance
- Good understanding of modern IT technology stacks, knowledge and understanding of control system (OT) architecture is a plus
- Relevant professional qualifications/certifications, e.g., CISM, CRISC, CISSP
- Excellent communication and interpersonal skills
- Proactive mindset to anticipate and address potential security issues before they become critical
- Effective project management skills to oversee the implementation of security initiatives
- Fluency in written and spoken English, German is a plus
Your benefits
At Uniper, we not only reward our employees with attractive salaries, an excellent company pension and health related benefits for their hard work and dedication to shaping the future energy transition. You can also expect a supportive working culture that offers a wide range of creative and innovative ideas. We enable various flexible working arrangements, whilst also supporting with home office equipment. Through regular training and workshops, together we work towards visualising yourself in our company as if it were your own. We support you in highlighting your individual potential, achieving your personal goals, and reaching your ambitions. We invite you to become part of our diverse company with international colleagues from more than 80 countries. As an employer, Uniper has committed itself to providing special support to certain areas: Work-Life-Balance / New Normal:- Choosing how, where, and when to work in accordance with your team and the requirements of your job
- Modern and ergonomic equipment for your workplace (home & office)
- Support to balance private life and work: Sabbaticals, part-time possibilities, family service
- Car and bike leasing offer (deferred compensation)
- E-car charging stations at almost all Uniper locations
Health offers:
- Flu vaccination
- Preventive health services
- Employee assistance program
Company pension:
- Employer-funded contributions to a modern pension system
- Possibility of self-funded contributions with employer-funded matching
Trainings:
- Lifelong training
- Coaching
Our employees are the reason for our success. Therefore, you will find many other benefits at the local level to help you reach your potential. Energy evolutionary wanted!
Your contact
If you have any questions, please do not hesitate to contact us at:
career@uniper.energy
Attention! Please apply via the button in this portal. Application documents that reach us by post will not be returned and, like those we receive by e-mail, can unfortunately not be considered!
--
As an employer, Uniper is committed to diversity and equal opportunities. Therefore, we encourage applications from suitably qualified individuals whose capabilities match the role requirements regardless of gender, origin, disability, age, religion, ideology, sexual identity or marital status. We live inclusion and support flexible working.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Audits CISM CISSP Compliance Computer Science CRISC Governance ISMS ISO 27001 KPIs NIS2 NIST Risk management Security strategy Strategy
Perks/benefits: Career development Flex hours Gear Health care
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.