Senior Specialist IT-Security EU (m/f/d)
Bei Röchling Medical vereint uns ein gemeinsames Ziel: die Verbesserung von Leben durch Innovation im Gesundheitsbereich. Als zuverlässiger Partner von führenden Pharma-, Biotech- und Medizintechnikunternehmen weltweit entwickeln wir maßgeschneiderte Produkte und Lösungen, die die Patientenversorgung verbessern und Leben retten.
Ihre Rolle
Your Responsibilities
Shape Information Security & Governance
- Develop and continuously improve our regional IT security and compliance framework based on corporate requirements and recognized standards such as ISO 27001.
- Create and maintain security policies, standards and technical security guidelines covering areas such as access management, privileged accounts, hardening and remote access.
- Advise business functions and projects on Security-by-Design and IT compliance requirements.
- Translate security requirements into pragmatic and sustainable solutions for our European organization.
Identify & Manage Security Risks
- Plan, coordinate and conduct IT security risk assessments, security reviews and GAP analyses.
- Assess and prioritize vulnerabilities and security risks and recommend appropriate technical and organizational measures.
- Support effective Vulnerability Management and the continuous reduction of security exposure.
- Work closely with Infrastructure, Applications, Workplace and local IT teams to implement security requirements.
Drive Audits & Compliance
- Coordinate customer, certification and internal IT audits across the European organization.
- Prepare audit documentation and manage findings, corrective actions and deadlines.
- Develop meaningful IT security and compliance KPIs and KRIs and provide transparent reporting to relevant management stakeholders.
- Collaborate with Data Protection, Quality Management and Legal where information security and regulatory requirements intersect.
Strengthen Security Awareness & Incident Management
- Coordinate the regional IT Security Awareness Program, including training, communication campaigns and phishing simulations.
- Support and coordinate the response to security incidents together with internal teams, Group Security and external partners.
- Help build a strong security culture in which information security becomes part of everyday decision-making.
What You Bring
- Degree in Computer Science, Business Informatics, Information Security or a comparable technical field; alternatively, relevant vocational IT training combined with substantial professional experience.
- Several years of experience in IT Security, Information Security, Cyber Security or a comparable role such as Security Engineer, Information Security Officer, Cyber Security Consultant or GRC Specialist.
- Good knowledge of recognized security standards and frameworks such as ISO 27001/27002, NIST or BSI IT-Grundschutz.
- Solid understanding of technical security mechanisms across networks, servers and virtualization, endpoints, identity and access management.
- Experience with risk assessments, audits, remediation tracking and ITIL-related processes such as Incident, Change and Problem Management.
- Ideally, experience within a regulated environment such as MedTech, pharmaceutical manufacturing, life sciences or another highly regulated industry.
- Business-fluent German and strong English skills for working with international stakeholders.
What Sets You Apart
You combine technical understanding with a strong sense of governance and pragmatism. You can translate complex security topics for different audiences – from IT specialists to business functions and management.
You are comfortable challenging existing approaches when necessary, while understanding that successful information security requires collaboration rather than simply imposing rules.
You bring a structured and analytical mindset, strong communication skills and the confidence to coordinate cross-functional initiatives across sites and functions.
Most importantly, you see Information Security as a business enabler – not an obstacle.
Why Röchling Medical?
At Röchling Medical, we develop and manufacture innovative solutions for customers in the pharmaceutical, diagnostics and medical technology industries. Working in this highly regulated environment means that quality, reliability, compliance and information security are integral to how we operate.
In this role, you can expect:
- A key position with significant scope to shape IT Security across our European Medical organization
- International collaboration across sites, functions and IT teams
- Exposure to strategic as well as hands-on Cyber Security and Compliance topics
- The opportunity to further develop security standards, processes and culture
- A highly regulated and technologically demanding MedTech environment
- A role where your expertise can make a visible impact on the organization
Ready to strengthen our digital future?
If you want to combine Cyber Security, Information Security, Governance and Compliance with international collaboration and real organizational impact, we look forward to hearing from you.
Ihr Profil
Ihre Benefits
Betriebliches Gesundheitsmanagement: Ihre Gesundheit und Ihr Wohlbefinden liegen uns am Herzen. Profitieren Sie daher von unseren vielfältigen Gesundheitsangeboten wie dem Betriebsarzt, der Gesundheitsvorsorge, Check-ups, Fitnessangeboten und Nachhaltigkeitstagen
Jobrad: Wir bieten unseren Mitarbeitenden die Möglichkeit, ein Jobrad zu leasen. Unser Angebot umfasst auch E-Bikes, für alle, die ein wenig zusätzlichen Rückenwind benötigen.
Verpflegung: Je nach Standort finden Sie verschiedene Verpflegungsoptionen – von klassischen Kantinen bis hin zu modernen Konzepten wie ‚FreshTaste‘.
Corporate Benefits: Wir bieten unseren Mitarbeitenden exklusive Rabatte und Sonderkonditionen bei zahlreichen Marken aus den Bereichen Mode, Technik, Freizeit und vielem mehr.
Fort- und Weiterbildungen: Unser Fokus liegt auf der stetigen Weiterentwicklung unserer Teammitglieder. Wir möchten sicherstellen, dass jeder Einzelne sein volles Potenzial ausschöpfen kann, und bieten daher passgenaue Trainingsangebote für unterschiedliche Positionen an.
Flexibilität: Wo möglich, schaffen wir durch unsere flexiblen Arbeitszeitmodelle eine gute Vereinbarkeit von Beruf und Privatleben.