Job Description
MAIN RESPONSIBILITIES:
- Act as the primary point of contact for Information Security topics and coordinate the implementation of Cyber Resilience Act requirements, including awareness activities across the organization.
- Serve as the Local Information Security Officer (LISO) and ensure compliance with TISAX requirements, including implementation, maintenance, and employee awareness.
- Lead the development, implementation, and continuous improvement of the Business Continuity Management System (BCMS) in line with MHG requirements.
- Coordinate and support the implementation of the Risk Management System.
- Act as the main contact person for Data Protection (GDPR) topics and support relevant departments such as HR, HSE, Purchasing, and others.
- Coordinate activities related to crisis management and support compliance with NIS2 requirements, including reporting and communication with stakeholders.
- Coordinate general compliance audits and align audit activities with MHCZ auditors and corporate audit programs (excluding customer audits).
- Prepare, coordinate, and evaluate internal and external audits and support affected teams in implementing corrective actions.
- Drive employee awareness and training activities in the areas of resilience, compliance, information security, business continuity, and data protection.
- Coordinate resilience management activities in cooperation with senior management and the GBTS Compliance Manager.
- Manage and maintain relevant systems and platforms (e.g., Alyne and other compliance/risk management tools).
- Ensure regular reporting to the MHG Resilience organization and maintain a functional reporting line to the Head of Resilience.
- Cooperate closely with the GBTS Compliance Team and other key stakeholders.
- Act as a member of the MHCZ Management Team.
- Perform additional tasks assigned by the direct manager.
REQUIREMENTS:
- Strong understanding of Compliance Management processes and governance principles.
- Good knowledge of Quality Management Systems, including ISO 9001 and IATF 16949.
- Strong knowledge of Business Continuity Management (BCMS) and Risk Management methodologies.
- Good understanding of GDPR and Data Protection requirements.
- Knowledge of TISAX, Information Security, Cyber Security, and NIS2 requirements is highly desirable.
- Understanding of audit processes and compliance frameworks.
- Knowledge of Operational Excellence and Continuous Improvement methodologies.
Personal Profile
- Proactive and self-driven personality.
- Ability to manage multiple priorities in a dynamic environment.
- Strong organizational and leadership capabilities.
- Resilient mindset with a focus on continuous improvement and business
Skills
Risk Management
Process Improvement
Continuous Improvement
Data Analysis
Operational Risk
IT Security & Risk Management
Risk Analysis
Finance Risk Analysis
Process Development
Vulnerability Assessment
Competencies
Strategic Drive & Innovation (FCC) PCL1
Achievement Orientation (D) PCL1
Adaptability & Learning (FCC) PCL1
Cooperation & Collaboration (D) PCL1
Managing Execution (E) PCL1
Impact & Influence (D) PCL1
Organizational Awareness (E) PCL1