Information Security & IT-Risk Officer <br>
ÖKK Versicherungen AG
Landquart
Key information
- Publication date:23 June 2025
- Workload:100%
- Contract type:Permanent position
- Place of work:Landquart
Job summary
Join us as an Information Security & IT-Risk Officer in Landquart! Enjoy a flexible work environment with great benefits.
Tasks
- Develop and enhance our Information Security Management System (ISMS).
- Support the CISO with IT risk management and reporting to management.
- Conduct risk analyses and ensure compliance with security measures.
Skills
- Degree in IT, Cyber-Security, or related field with relevant experience.
- Strong knowledge of security standards like ISO 27001, NIST.
- Excellent communication skills and a proactive, structured approach.
Is this helpful?
Information Security & IT-Risk Officer
80-100%, Landquart, Work@Home
What to expect
Become an Information Security & IT-Risk Officer and actively support our CISO in managing information security and IT risk management at the highest level. Your tasks are:
What we offer
- Establishment, implementation, and further development of our Information Security Management System (ISMS) and ICT risk management
- Support in the information security strategy and reporting to management
- Control of IT security measures for effectiveness, efficiency, and compliance
- Conducting and updating risk analyses as well as managing measures for risk treatment
- Development of risk scenarios for early detection of threats
- Participation in internal and external audits and regulatory examinations
- Planning and conducting training and awareness programs for security culture
- Creation of documentation and collaboration with ICT, compliance, data protection, and specialist departments
What we offer
- Flexible working hours and models
- Flat hierarchies and an open, appreciative corporate culture
- Attractive social benefits and discounts for you and your family
- Generous support for training and further education
What you bring
- Completed studies in computer science, business informatics, cyber security, or comparable qualification
- Several years of experience in IT security, ISMS, IT risk management, ideally in regulated industries
- In-depth knowledge of security standards (e.g., ISO 27001, FINMA, NIST) and regulatory requirements
- Experience with IT risk assessments, compliance, audit processes, and governance
- Strong communication skills, team spirit, and assertiveness
- Self-initiative, analytical and structured working style