As Fresenius Digital Technology, we are an integral part of the Fresenius Group, responsible for the IT of the healthcare group and its business segments. We ensure a frictionless interface of IT and business operations so that all employees in production, logistics, and other areas can work efficiently and without interference.
We are looking for an experienced IT Security Manager to lead and further develop our enterprise-wide capability for identifying, prioritizing and reducing cyber risk.
This role combines technical depth, people leadership and process ownership, ensuring that vulnerabilities and security exposures across IT, cloud, application, configuration and OT environments are managed in a risk-based, scalable and transparent manner.
What is important from our point of view:
Experience & Knowledge
Leadership & Skills
Certifications (Nice to Have)
As Fresenius Digital Technology, we are an integral part of the Fresenius Group, responsible for the IT of the healthcare group and its business segments. We ensure a frictionless interface of IT and business operations so that all employees in production, logistics, and other areas can work efficiently and without interference.
We are looking for an experienced IT Security Manager to lead and further develop our enterprise-wide capability for identifying, prioritizing and reducing cyber risk.
This role combines technical depth, people leadership and process ownership, ensuring that vulnerabilities and security exposures across IT, cloud, application, configuration and OT environments are managed in a risk-based, scalable and transparent manner.
,[Vulnerability & Exposure Management: Own and lead the end-to-end vulnerability and exposure management lifecycle: discovery, assessment, prioritization, remediation tracking and validation, Manage vulnerability scanning across infrastructure, cloud platforms, applications and endpoints, Define and apply risk-based prioritization models combining CVSS, exploitability, asset criticality, and business context, Security Configuration & Hardening: Define, maintain and enforce security baselines and hardening standards for operating systems, cloud services, platforms and applications, Align standards with industry frameworks such as CIS, NIST and ISO 27001, Monitor configuration drift and exposure caused by misconfigurations and support secure-by-design practices, OT Security (Exposure Perspective): Coordinate vulnerability and exposure management activities for OT and industrial environments, Ensure OT risks are integrated into the overall enterprise exposure and risk management approach, Leadership & Operations: Lead, mentor and develop a team of security engineers, Drive automation of vulnerability scanning, remediation tracking and reporting workflows, Define KPIs, dashboards and management reporting to demonstrate risk reduction and program maturity, Support incident response and investigations by providing vulnerability and exposure insights Requirements: Vulnerability Management, Tenable, Qualys, Cloud security, Azure, CISSP, CCSP, CSSLP