Description
The role is responsible for developing and maintaining ISO 27001 and ISO 27019-aligned information-security policies, managing cybersecurity requirements, performing plant-specific risk analyses, supporting ISMS audits and certifications, and owning incident management, vulnerability management, and external penetration testing. It requires a relevant degree, experience in information security, OT security, or technical compliance management, and knowledge of OT systems, industrial networks, operational processes, and relevant standards such as IEC 62443 or BSI IT Baseline Protection.
