Talent.com
RTX
Principal Specialist, Cyber security & Risk ManagementRTX • Frankfurt, Hessen, Germany
Principal Specialist, Cyber security & Risk Management

Principal Specialist, Cyber security & Risk Management

RTX • Frankfurt, Hessen, Germany
Vor 19 Tagen
Stellenbeschreibung

Date Posted:

Country:

Germany

Location:

DE-HE-FRANKFURT-AIRPORT-CUST Airportring 322 BLDG 335 Zweigniederlassung Deutschland (External Site)

Position Role Type:

Unspecified

Role Overview - Information System Security Officer ISSO

We are seeking a highly experienced and strategic Information System Security Officer to lead our cyber and regulatory compliance programs across RTX business units for sites located in Germany. This role is critical for ensuring the cyber posture of the sites and for establishing the guidelines and actions needed to protect the companys Information Systems against cyber threats responds to digital compliance risks and fosters a company-wide culture of cybersecurity.

The successful candidate will provide technical leadership oversee multi-site governance and risk management and ensure alignment between RTX ES Cybersecurity services (including IT and OT) with Business functions to safeguard critical assets applications systems and data.

The candidature is expected to follow a hybrid work model balancing remote and on-site presence based on business needs key meetings critical milestones team collaboration needs audits or incident response requirements.

What will you do

Governance:

  • Ensure the management and local cyber governance of the Information Systems within the sites under ISSO scope.
  • Ensure adherence to global and regional/local regulatory requirements and applicable frameworks (ISO NIST SP800-171 etc.).
  • Maintain the Information Security Management System (ISMS) or equivalent governance model.
  • Define implement coordinate manage and monitor activities related to the Part-IS regulation (acting as Aviation Safety ISMS Manager).
  • Drive internal and external audits certifications and compliance readiness across multiple sites.
  • Continuous monitoring of emerging regulations and standards ensuring proactive & compliance and risk management.
  • Ensure relationship and interface with cyber stakeholders in relation with site ecosystem including security authorities customers & partners.
  • Define derive and maintain security policies procedures and guidance for Restricted and Classified IS located on site (if any) and ensure their implementation with the support of DT team.
  • Ensure accreditation activities on Restricted and Classified networks (when applicable).
  • Develop and execute an annual security awareness plan to reduce business compliance risks cyber operational risks and to foster a cyber culture within the sites.

Cyber Risk Management:

  • Manage cyber risks (identification evaluation and treatment) according to applicable enterprise-wide cyber risk program and regulations including but not limited to Part-IS and NIS2. As part of the risk management the ISSO will perform/lead risk assessment for the sites and associated risk treatment plans with the support of DT Intl Operations and RTX Global GRC teams.
  • Oversee implementation of security controls (technical administrative physical) for applications infrastructure Cloud and OT systems under ISSO scope.
  • Ensure secure enablement of new technologies and digital transformation programs.

Compliance:

  • Ensure compliance with applicable security requirements for the sites (internal policies applicable regulations and customer frameworks).
  • Ensure compliance with applicable security requirements for the third parties engaged with the sites (internal policies applicable regulations and customer frameworks). Drive supplier cyber risks identification and treatment for the sites.
  • Support enterprise-wide compliance program (e.g. DT Assessment Part-IS internal audit) and external audit/assessment from customers and regulators (e.g. CASE audit).

Security event and incident management:

  • Ensure that threat detection capabilities provided by RTX Cyber-Defense team are fully implemented.
  • Monitor Detect and Respond to cyber threats exposing Restricted and Classified networks (when applicable).
  • Support the RTX Cyber-Defense Operations for any event or incident occurring on the sites. Drive incident response preparedness and act as point of contact for security incidents.

Operations:

  • Provide expert security guidance to DT Intl Operations (e.g. vulnerability management remediation plan execution support on new cyber programs).
  • Support special cyber programs such as SURGE and drive critical vulnerabilities remediation in support to DT Intl operations and CART team.
  • Champion business resilience by aligning DT and OT security strategies with business continuity and disaster recovery plans.
  • Provide support to the DT team on activities related to business continuity/recovery (BIA DRP etc.).

Technical Leadership:

  • Act as the point of contact for various compliance programs (e.g. EASA Part-IS NIS2 DFARS CMMC Global etc.) where applicable.
  • Provide expert security guidance to Engineering Operations and Value-Stream Leaders teams. Especially the ISSO will provide support to business programs and pursuits.
  • Collaborate with local stakeholders (e.g. Engineering Operations Safety Quality) to ensure seamless integration of information security requirements.
  • Represent Information Security with external regulators customers and partners.
  • Monitor regulatory threat landscape and technology evolution in cybersecurity.
  • Mentor and develop junior security professionals promoting a cybersecurity culture.

Qualifications you must have

  • Masters degree in Computer Science Information Security Engineering or related field with 8 years of experience in cybersecurity.
  • Knowledge or experience in the following domains (at least 5): Risk Management Security Architecture & Engineering Asset Security Communication & Network security Security Assessment and Testing IAM Security Operations.
  • Strong working knowledge of security frameworks: ISO NIST (CSF SP800-171 SP800-82) etc.
  • Experience leading multi-site/global compliance programs.
  • Excellent knowledge of risk management methodologies and audit practices.
  • Strong communication and stakeholder management skills at C level.
  • Relevant certifications (one or more): CISSP CISM CRISC ISO 27001 Lead Implementer/Auditor ISO 27005 Risk Manager OSCP CEH GIAC etc.

Qualifications we prefer

  • Experience in regulated industries (e.g. aerospace defence manufacturing or critical infrastructure).
  • Knowledge on EASA Part-IS NIS2 national MoD security regulations.
  • Experience working with/for regulators/authorities or customers (e.g. Aerospace & Defense OEMs).
  • Experience and expertise in the following security fields: threat monitoring & detection security incidents mgt penetration testing and/or technical audit software development security (threat modeling secure coding).
  • Familiarity with Industrial Control Systems (ICS) / OT cybersecurity.
  • Background in safety-critical or regulated environments.

Soft skills:

  • Demonstrate ownership and accountability for assigned projects/programs.
  • Curious passionate.
  • Ability to withstand pressure.
  • Ability to work across the organization.
  • Ability to influence.
  • Ability to report back to management.
  • Team management.
  • Sense of general interest committed.

Nationality/Clearance: this job may require having national security clearance. Must be eligible to obtain a higher security clearance.

RTX adheres to the principles of equal employment. All qualified applications will be given careful consideration without regard to ethnicity color religion gender sexual orientation or identity national origin age disability protected veteran status or any other characteristic protected by law.

Privacy Policy and Terms:

Click on this link to read the Policy and Terms


Required Experience:

Staff IC


Employment Type : Full-Time
Experience: years
Vacancy: 1
Jobalert für diese Suche erstellen

Principal Specialist, Cyber security & Risk Management • Frankfurt, Hessen, Germany

Ähnliche Stellen

Specialist Operational Risk Management (m/w/d)

FERIbad homburg vor der höhe, hessen, Deutschland

Multi Asset-Investmenthaus im deutschsprachigen Raum.Mit einem engagierten Team von über 290 Beschäftigtenentwickeln wir maßgeschneiderte Investmentlösungen für Institutionelle Investoren, Familien... Mehr anzeigen

 • Gesponsert

Senior Analyst, Cyber Risk & Compliance (f/m/d)

Digital Realtyfrankfurt, hesse, Deutschland

Senior Analyst, Cyber Risk & Compliance (f/m/d) in Frankfurt.We are seeking a Senior Analyst, Cyber Risk & Compliance (f/m/d) in Frankfurt is responsible for executing core cyber & IT risk manageme... Mehr anzeigen

 • Gesponsert

Security Incident Manager - ICT Risk Department

MAM Gruppefrankfurt, hesse, Deutschland

Our client is seeking an experienced.In this strategic role, you will lead responses to major cyber incidents and help enhance the organisation’s overall security posture.Lead and coordinate the en... Mehr anzeigen

 • Gesponsert

Principal Specialist, Cyber security & Risk Management

Prattwhitneyfrankfurt, hesse, Deutschland

Information System Security Officer – ISSO.We are seeking a highly experienced and strategic Information System Security Officer to lead our cyber and regulatory compliance programs across RTX busi... Mehr anzeigen

 • Gesponsert

Senior Portfolio & Partner Manager for Cybersecurity & Network Security (m/f/d)

Deutsche Telekomfrankfurt, hesse, Deutschland

Über Deutsche Telekom Security GmbH.Der Geschäftsbereich Deutsche Telekom Security bietet über die gesamte Wertschöpfungskette Lösungen und Services aus dem Magenta Security Portfolio für alle groß... Mehr anzeigen

 • Gesponsert

Manager Compliance & Information Security (m/f/d)

Merz Therapeutics GmbHfrankfurt, hesse, Deutschland

Manager Compliance & Information Security (m/f/d).Merz Therapeutics, with a focus on compliance and information security.In this role, you will be the trusted compliance advisor to headquarters fun... Mehr anzeigen

 • Gesponsert

Sr Lead Cybersecurity Architect

JPMorgan Chasefrankfurt, hesse, Deutschland

As a Senior Lead Cybersecurity Architect at JPMorgan Chase within Asset Wealth Management, you are an integral part of a team that works to develop high-quality cybersecurity solutions for various ... Mehr anzeigen

 • Gesponsert

Expert Project Risk Management (m/f/d)

Exytebad homburg vor der höhe, hessen, Deutschland

The Expert Project Risk Management (m/f/d) exists to ensure that project uncertainties are systematically identified, assessed, managed, and transparently reported, so that threats to project objec... Mehr anzeigen

 • Gesponsert

(Senior) Operational Risk Specialist

ProCredit Holdingfrankfurt, hesse, Deutschland

We are an international group of development-oriented commercial banks for micro, small and medium enterprises (MSME).We are active in Southeastern and Eastern Europe, South America and Germany.Our... Mehr anzeigen

 • Gesponsert

Manager – Informationssicherheit & Cyber Security Advisory (all genders)

Forvis Mazars in Germanyfrankfurt, hesse, Deutschland

Darüber hinaus baust du bestehende Mandantenbeziehungen aktiv aus und gewinnst neue Kunden, indem du Marktpotenziale identifizierst und in konkrete Beratungsangebote überführst.In deiner Rolle über... Mehr anzeigen

 • Gesponsert

Principal Consultant

N Consulting Limitedbad homburg vor der höhe, hessen, Deutschland

LocationBad Hamburg, Germany# Principal Consultant at N Consulting LtdLocationBad Hamburg, GermanySalary€700 - €800 /dayJob TypeFull-timeDate PostedApril 1st, 2026Apply NowWork mode: Hybrid - 4 day... Mehr anzeigen

 • Gesponsert

Information Security / Resilience (Senior) Manager (m/w/d)

NVISO Securityfrankfurt, hesse, Deutschland

It all starts with the mission: NVISO is here to protect European society from potentially devastating cyber attacks! This means we offer cyber security services to private and governmental organiz... Mehr anzeigen

 • Gesponsert

Global IT Specialist – Cyber Security (f/m/d)

Der Entrepreneurs Club e.K.weinheim (kernstadt), baden württemberg, Deutschland

Working at Freudenberg: "We will wow your world!" This is our promise.As a global technology group, we not only make the world cleaner, healthier and more comfortable, but also offer our 52,000 emp... Mehr anzeigen

 • Gesponsert

Projektleiter Elektrotechnik - Bauleitung / Sicherheitstechnik (m/w/d)

G&H Elektrotechnik GmbHviernheim, Deutschland

Wir denken technische Lösungen ganzheitlich und setzen sie zuverlässig um.Unsere Mission ist es, durch die Bündelung von Elektrotechnik, Sicherheitstechnik, Facility Management und IT-Services das ... Mehr anzeigen

 • Gesponsert

Information Security / Resilience (Senior) Manager (m/w/d)

NVISOfrankfurt, hesse, Deutschland

It all starts with the mission: NVISO is here to protect European society from potentially devastating cyber attacks! This means we offer cyber security services to private and governmental organiz... Mehr anzeigen

 • Gesponsert

Senior Consultant / Manager Cybersecurity & GRC (w|m|d)

Commerz Business Consulting GmbHfrankfurt, hesse, Deutschland

Senior Consultant / Manager Cybersecurity & GRC (w|m|d) – Vollzeit, unbefristet.Standort: Berlin, Frankfurt, Hamburg, München, Münster, Wien.Du erarbeitest eine umfassende Cyber-Security-Strategie,... Mehr anzeigen

 • Gesponsert

Networking and Security Lead

Crytekfrankfurt, hesse, Deutschland

We are a fast-changing gaming company known for our creativity, innovation, and passion for gaming.We embrace hybrid working models, have a global reach, and are committed to fostering a dynamic wo... Mehr anzeigen

 • Gesponsert

(Senior-) Referent (m/w/d) IT-Risiko / IT-Security im Team IT-Steuerung

SparkasseBad Homburg, Hochtaunuskreis, Hessen (Bundesland)

Werden Sie (Senior-) Referent (m/w/d) IT-Risiko / IT-Security im Team IT-Steuerung in Voll-/Teilzeit / Standort in Bad Homburg Das ist mein Job! KARRIERE BEI DER TAUNUS SPARKASSE: NAH BEI DE‘ LEUT‘... Mehr anzeigen

 • Gesponsert

Principal Specialist, Cyber security & Risk Management

RTXfrankfurt, hesse, Deutschland

Role Overview - Information System Security Officer – ISSO.We are seeking a highly experienced and strategic Information System Security Officer to lead our cyber and regulatory compliance programs... Mehr anzeigen

 • Gesponsert

Cyber Security Manager (m/w/d)

Finanz Informatik Technologie Serviceoffenbach am main, hessen, Deutschland

Als einer der größten Partner für den IT-Betrieb der Finanz- und Versicherungsbranche mit führenden Banken, Versicherungen und Finanzdienstleistern als Kunden betreibt FI-TS.An fünf Standorten in D... Mehr anzeigen