Information Security Consultant | Informatiker/in (Hochschule)

KPMG Services GmbH

Linz, Oberösterreich, Österreich
Published Apr 10, 2026
Full-time
Permanent

Job Summary

In this professional role at KPMG Linz, you will take a leading role in shaping the future of information security for diverse clients. Your day-to-day responsibilities involve planning, designing, and implementing Information Security Management Systems (ISMS) with a focus on ISO/IEC 27001, ISO 27017, and ISO 27005 standards. You will develop innovative security compliance frameworks for sectors like finance, critical infrastructure, and automotive, while performing gap analyses and managing client accounts independently. The role is highly collaborative, requiring you to bridge the gap between technical teams and management. This position is particularly attractive due to its high level of autonomy, the opportunity to work on strategic digitalization topics, and a comprehensive benefits package including flexible working hours and mobile work options. It is ideal for a security professional looking to leverage their analytical skills in a high-impact consulting environment.

Required Skills

Education

University degree in Computer Science, Business Informatics, or a related field with a focus on IT Security. Relevant certifications (CISSP, CISM, ISO 27001 Lead Auditor/Implementer) are highly advantageous.

Experience

  • Professional experience in information security, IT security, or computer science
  • Several years of experience as an Information Security Officer, Manager, Auditor, or Security Architect is highly preferred
  • Experience as an ISO 27001 Lead Auditor or NIS-G Auditor is desirable
  • Experience in project leadership is desirable
  • Proven experience in strategic thinking and complex analytical tasks
  • Experience in client account management and consulting

Languages

German (Fluent)English (Fluent)

Additional

  • The role is based in Linz, Austria. Candidates should have a professional and client-oriented demeanor with the ability to communicate technical security topics to non-technical management.