1 Computer Science Job in Wien
Your responsibilities
- You establish, operate and continuously develop the information security management system (ISMS) of the Austrian Academy of Sciences (ÖAW) in line with ISO/IEC 27001.
- You act as the central point of contact and coordination for all organisation-wide matters relating to information security management.
- You prepare decision papers and recommendations on appropriate information security measures for the Presidential Board and the Directorate for Institutes and Infrastructure (DII).
- You maintain the ISMS documentation framework and steer the drafting, consultation, approval and periodic review of strategies, policies, standards and procedures.
- You coordinate information security risk management, support the identification and assessment of risks, and monitor the implementation of approved risk treatment measures.
- Together with the relevant technical units, you define requirements for logging, security monitoring and incident management, and verify that these are implemented appropriately and remain effective.
- You plan and coordinate internal and external information security audits, security reviews and penetration tests, and follow up on the resulting actions.
- You produce regular reports on the risk landscape, security incidents, control effectiveness, the status of measures and the maturity of the ISMS for the Presidential Board and the DII, and you prepare the ISMS management review.
- You design and coordinate target-group-specific training and awareness programmes and help advance the ÖAW's information security culture.
- You monitor the implementation and effectiveness of the security measures in place and track deviations and improvement measures in a documented and auditable way.
- You work closely with the Legal and Compliance Department as well as with other internal teams and external partners to ensure compliance with legal requirements and sector-specific standards.
|