Information Security Lead (OT Security, Video Data Privacy & SOC 2)

Brak informacji o wynagrodzeniu
SeniorFull-time
#436586·Dodano 8 dni temu·1
Źródło: TTMS
Aplikuj teraz

Tech Stack / Keywords

SOC 2ISO 27001IEC 62443GDPRAWSGCPAzureKubernetes

Firma i stanowisko

Our client is a Swiss AI scale-up with a platform that monitors manufacturing lines through cameras. The platform uses AI agents to detect jams, breakages, quality defects, and safety events in real time and can trigger actions on line equipment. It is deployed in plants across 18+ countries and industries including glass, food and beverage, consumer goods, building materials, and wood. The product integrates into customers' industrial networks, processes footage containing plant staff, bringing critical security and privacy concerns.

Wymagania

  • 6+ years of hands-on experience in information security implementation.
  • Practical experience with SOC 2 audits (Type I or II) or hands-on ISO 27001 implementation with understanding of SOC 2.
  • Expertise in OT and industrial network security, including segmentation, IEC 62443, secure remote access, and third-party system security.
  • Practical knowledge of data privacy under GDPR, including DPIAs, privacy by design, video/CCTV data anonymisation, and use of personal data for AI model training.
  • English language proficiency at C1 level for policy writing and communication with enterprise teams.
  • Pragmatic, independent work style suited for a fast-paced startup environment.

Nice to have:

  • German language skills.
  • Certifications such as CISSP, CISM, CISA, GICSP, ISA/IEC 62443, ISO 27001 Lead Implementer/Auditor, CIPP/E.
  • Knowledge of Swiss revFADP, NIS2, EU AI Act.
  • Experience with compliance platforms like Vanta, Drata, or Secureframe.
  • Cloud security knowledge on AWS, GCP, or Azure, including containers and Kubernetes.
  • Background in manufacturing, machine vision, IIoT, or video-surveillance products.

Obowiązki

  • Define how cameras, on-site devices, and equipment integrations connect into customer OT networks, including segmentation, firewall rules, and secure remote access.
  • Act as the security liaison with customers’ IT, OT, and security teams through questionnaires, architecture reviews, and network requirement documentation.
  • Lead SOC 2 compliance efforts, including gap assessments, policy development, evidence collection, and auditor engagement.
  • Manage privacy for video and image data, including DPIAs, data-flow mapping, retention, deletion, access controls, and anonymisation verification.
  • Support customers in adherence to workplace-camera rules involving works councils and employee-monitoring laws.
  • Maintain the security risk register, vendor risk assessments, incident-response plan, and advise engineering on necessary security controls.

Benefity

  • Participation in interesting and demanding projects.
  • Flexible working hours.
  • Possibility to work remotely or hybrid (2 days per week from the office).
  • Opportunities for development and promotion.
  • Attractive package of benefits.
Elastyczne godziny

Inne informacje

We reserve the right to contact selected candidates.

TTMS

TTMS

20 aktywnych ofert

Zobacz wszystkie oferty
Aplikuj teraz