VamiSec GmbH
Information Security Consultant
VamiSec GmbHGermany2 hours ago
Full-timeRemote FriendlyInformation Technology
Company Description

VamiSec GmbH is a trusted partner in IT security, information security, and compliance, offering over 15 years of expertise in the field. Headquartered in Bonn, the company specializes in implementing and certifying Information Security Management Systems (ISMS) in alignment with globally recognized standards, including ISO 27001, TISAX, and BSI IT-Grundschutz. With services spanning governance, risk management, cloud security, and compliance with regulations like GDPR, NIS2, and DORA, VamiSec delivers strategic solutions that protect assets and promote innovation. The company also provides virtual Chief Information Security Officer (vCISO) services, incident management, and employee awareness training to enhance overall security. VamiSec is dedicated to offering tailored solutions and reliable expertise for a variety of industries.
Role Description

The Information Security Consultant role is a full-time position combining in-office work in Bonn with the flexibility of remote work (hybrid model). Responsibilities include supporting the implementation and certification of Information Security Management Systems (ISMS), ensuring compliance with regulations and standards like ISO 27001, analyzing and minimizing security risks, conducting audits and assessments, and providing strategic security consultation to clients. The consultant will work on designing and implementing tailored IT and network security strategies, developing risk mitigation plans, and raising organizational awareness through training initiatives and best practices.
Qualifications

  • Proficiency in implementing and managing Information Security Management Systems (ISMS) in line with ISO 27001 or similar standards.
  • Solid knowledge of Data Privacy regulations (e.g., GDPR) and their application in an organizational context.
  • Demonstrated expertise in Cybersecurity, Network Security, and threat mitigation strategies.
  • Experience in Information Security Management, governance, or equivalent fields.
  • Strong analytical and communication skills, with the ability to present technical concepts to diverse audiences.
  • Relevant certifications such as ISO 27001 Lead Auditor, CISSP, CISM, or CISA are preferred but not required.
  • Background in cloud security and regulatory compliance, including NIS2 or GDPR, is a plus.

Key Skills

Ranked by relevance