Technical Information Security Officer (TISO) | Technical Information Security Officer (TISO) (m/w/d)

Bergman Germany HoldCo GmbH

Hamburg, Hamburg, Deutschland
Published Nov 27, 2025
Full-time
No information

Job Summary

This role bridges the gap between IT governance and technology, requiring a professional to implement, manage, and monitor the organization's cybersecurity infrastructure and controls. The TISO will translate group policies, security frameworks (like ISO 27001, BSI IT-Grundschutz, and NIS2), and legal requirements (such as GDPR) into concrete security configurations for the IT environment. Key responsibilities include overseeing CIS control implementation, conducting risk analyses, managing vulnerability and patch processes, and coordinating incident response and penetration testing. The position demands strong technical expertise in securing both on-premise and cloud infrastructure, combined with management skills to align security controls with business objectives. This is an attractive opportunity to work within the German IT organization of a leading European healthcare provider, collaborating closely with international CISO colleagues to continuously enhance the security posture in a highly relevant and regulated industry.

Required Skills

Education

Bachelor's or Master's degree in Information Security, Computer Science, or IT Engineering

Experience

  • 3–7 years of professional experience in information or cybersecurity
  • Experience in a regulated environment or critical infrastructure is ideal
  • Proven technical expertise with network protocols, firewalls, SIEM solutions, Endpoint Protection, and vulnerability management
  • Experience with BSI IT-Grundschutz, ISO 27001, CIS Controls, NIS2, and GDPR compliance frameworks is desirable
  • Experience in security incident response, security monitoring, and risk-based prioritization
  • Demonstrated ability to translate technical risks into business impacts for non-technical stakeholders

Languages

German (Fluent)English (Fluent)

Additional

  • Relevant certifications or accreditations are desirable (e.g., BSI IT-Grundschutz Practitioner/Consultant, CISM/CISSP/CEH/CompTIA Security+)