What you will do:
- managing and be accountable for the comprehensive cyber security and IT risk management for the entire company (incl. AutoScout24, ImmoScout24, FinanceScout24, anibis.ch)
- own and drive the IT security strategy; work cross functional to create security policies, requirements and guidelines; define, implement and monitor IT security related processes.
- strengthen the information security and risk management mindset across the entire company, incl. top management.
- manage the Scout24 bug bounty programs
- manage and report on security incidents and leads corresponding task forces (CERT)
- participate in meetings of the Data Protection board
- provide regularly updates to the Scout24 executive board about the Scout24 security posture, security policy updates, implementation plans and priorities of security measures
- manage security related missions and initiatives across all Scout24 business units
- organize security tests and audits of Scout24 businesses are conducted
- be accountable for business continuity and disaster recovery plans
- support development teams in best DevSecOps practices
- help with the evaluation of security tools for development and IT operations
- ensure that all customer and company data has a Data Owner and is handled according the DSGVO
- work with internal and external partners/suppliers to ensure that employees receive adequate security sensitivity training.
- collaborate with information security officers of other companies
- support the fraud prevention team in their investigations and remediation
- report to the CIO