Information Security Manager | Informationssicherheitsmanagerin / Informationssicherheitsmanager (w|m|d)

München Klinik

München, Bayern, Deutschland
Published Oct 21, 2025
Full-time
Permanent

Job Summary

This role involves managing, operating, and continuously improving the Information Security Management System (ISMS) for a major hospital network, which is classified as critical infrastructure. The manager will be responsible for strategic development of the ISMS, ensuring compliance with standards like ISO 27001 and B3S "Medical Care," and coordinating internal and external audits, including compliance procedures under §8a BSIG. Key daily tasks include steering risk management, developing and running security awareness programs across the organization, advising executive management on legal obligations, and managing information security incidents and reportable events. The ideal candidate holds a relevant Master’s degree, ISO 27001 certification, and at least three years of professional experience in information security within a clinical environment, bringing strong communication and conflict resolution skills to drive necessary change.

Required Skills

Education

Master's degree or equivalent (Diploma) in Computer Science, Business Informatics, Medical Informatics, IT Security, or a comparable discipline; ISO 27001 Personnel Certification (Information Security Officer or Auditor) or comparable qualification.

Experience

  • At least three years in a clinical environment and in information security
  • Professional experience in planning, expanding, operating, and continuously improving an ISMS
  • Experience in managing information security incidents and reportable events

Languages

Not specified

Additional

  • Must be able to fill the position starting January 1, 2026; Position is permanent (unbefristet).