Manager Cybersecurity & Regulatory Compliance | Manager (m/w/d) Cybersecurity & Regulatory Compliance

Rail Power Systems GmbH

München, Bayern, Deutschland
Published Dec 23, 2025
Full-time
Permanent

Job Summary

This role involves steering and advancing Information and Operational Technology (OT) security while ensuring compliance with critical European and national regulations, including the Cyber Resilience Act (CRA), NIS-2 Directive, AI Act, and IT Security Act 2.0. The Manager will be responsible for building, implementing, and maintaining an Information Security Management System (ISMS) based on ISO 27001, and supporting the integration of OT Security Management based on IEC 62443. This is a central interface function requiring close collaboration across IT, Production, Development, Legal, and Management to define network security concepts, manage risk analyses for IT/OT systems, and develop Security Incident Management processes. The ideal candidate possesses a relevant degree or extensive professional experience in IT, deep knowledge of regulatory frameworks, and technical understanding of IT infrastructure and production systems (SCADA, MES). This position offers the opportunity to contribute to sustainable railway infrastructure projects in a future-oriented industry.

Required Skills

Education

Relevant degree (IT, Industrial Engineering, or similar) or vocational training

Experience

  • Long-term professional experience in the IT sector (if no relevant degree)
  • Experience in introducing or developing management systems (e.g., ISMS)
  • Experience in cross-functional project management
  • Foundational knowledge in Cyber Resilience Act, Product Liability Law, IT Security Act 2.0 (especially KRITIS), and AI Act

Languages

German (Fluent)English (Fluent)

Additional

  • Willingness to travel