DZ HYP | Germany | 22xxx, 21xxx, 20xxx Hamburg | Permanent position | Full time / Home office | Published since: 28.02.2026 on stepstone.de
(Senior) Information Security Officer (m/f/d)
We are around 900 employees in a leading real estate bank. Every year we are moving projects worth several billion euros across Germany, from residential buildings to quarter development. We are doing great things together – with open doors, short paths and a lot of self-responsibility. In our role as 2nd Line of Defense, we are responsible for the I(K)T risk management process, the further development of our information security management, emergency and crisis management as well as the third-party risk management of the DZ HYP. Our focus? Ensure that regulatory requirements such as DORA and MaRisk as well as group-specific standards are not only complied with, but also implemented effectively and risk-consciously. As a central risk control function, we think and act forward-looking – and we need you for that! !
* After clicking the Read more button, the original advert will open on our partner's website, where you can see the details of this vacancy and contact information. If you need a translation of this text, after returning to our website it will be prepared and you can read it by clicking the Show full translation button.
Your tasks • Your profile • What we offer
Consultation and support of experts on information security and assessment of the general hazard situation Close cooperation with emergency management / BCM and third-party management in the context of further development and assessment of ICT risk management Monitoring and evaluation of legal and supervisory regulations and group-specific requirements and monitoring and preparation of internal requirements Conception, planning and implementation of IS audits, target set-point and target-actual balances as well as risk assessment of deviations and recommendation of risk-reducing measures and cooperation in projects Monitoring and enforcement of information security in projects and procurement to address the information security requirements and to support a security-by-design approach Analyses of safety incidents and work out recommendations for action Planning and implementation of sensitisation and training measures (Security Awareness) Assessment of the current general threat and hazard situation Accompanying internal and external audits and cooperation in projects
A completed study in the field of business informatics, computer science, IT security, or in a comparable field, forms the basis for your success with us. You are strong in translating regulatory requirements and corporate requirements into company-specific guidelines, accompanying their implementation and monitoring the success of corresponding KPIs. You already have professional experience in one of the areas of information security, ICT risk management or IT security – the rest can be learned. Ideally, you have additional practical experience in operational information security management, in the ICT risk management of the 1st Line of Defense or you know in IT operation. Basics of information security standards (e.g. ISO 27001, IT-Grundschutz, NIST) and common security technologies such as DDoS-Auswehr, SIEM, firewalls or cryptography are of advantage – not yet your field of expertise? We give you room to deepen your knowledge. BCM and emergency management are not foreign words for you and you are ready to deal with them deeper. You are interested in current technological developments and challenges in this field and are motivated to acquire new topics independently and practice-oriented. Good knowledge of English will help you work internationally. Your personal profile: You have a high degree of initiative, coupled with a careful and solution-oriented approach. Trust, reliability and sensitivity are values that distinguish you. Your analytical skills are paired with a pronounced sense of objectivity and a sovereign rise. Communication: You can clearly and convincingly share informations – whether for colleagues, decision-makers: inside or outside partners. You are a team player, show a healthy level of technical interest and bring the motivation to continuously develop and deepen new knowledge.
Top city location in Hamburg Various training opportunities, both professional and personal Flexible working time design with the possibility of mobile work 30 days holiday and additionally Sabbatical as well as salary change possible on holiday Attractive remuneration and social benefits, such as asset-effective benefits and occupational pensions Strongly discounted Germany ticket Varied food in the in-house restaurant Strongly discounted Germany ticket, well-pass membership, numerous business sports and operational health management
Location
![]() | DZ HYP | |
| Hamburg | ||
| Germany |
The text of this ad was translated from German into English using an automatic translation system and may contain semantic and lexical errors. Therefore, it should be used for introductory purposes only. For more detailed information, see the original text of the ad at the link below.
For more information read the original ad