yoinka

Principal Specialist, Cyber security & Risk Management (m/f/d)

RTX (Raytheon)

DE-BW-HEIDELBERG-036-751 ~ Grenzhofer Weg 36 ~ BLDG 751Principal
Sign in to applyVerified 3h ago
Location
DE-BW-HEIDELBERG-036-751 ~ Grenzhofer Weg 36 ~ BLDG 751
Work model
On-Site
Level
Principal
Posted
Sep 4, 2026

Skills

Cybersecurity

About this role

Location: DE-BW-HEIDELBERG-036-751 ~ Grenzhofer Weg 36 ~ BLDG 751

 Position Role Type: Unspecified At Collins Aerospace, we work side-by-side with our customers to tackle the toughest challenges in aerospace and defense. We’re combining boundless imagination with a broad portfolio and an unmatched dedication to customers – all to make the skies and spaces we touch smarter, safer and more amazing than ever. Our site in Heidelberg has the following core competencies: • Avionics Systems • On-board electronics for land vehicles • Products for the aerospace industry Role Overview - Information System Security Officer – ISSO We are seeking a highly experienced and strategic Information System Security Officer to lead our cyber and regulatory compliance programs across RTX business units for sites located in Germany.   The primary work location is Heidelberg. This role is critical for ensuring the cyber posture of the sites and for establishing the guidelines and actions needed to protect the company's Information Systems against cyber threats, responds to digital compliance risks, and fosters a company-wide culture of cybersecurity. The successful candidate will provide technical leadership, oversee multi-site governance and risk management, and ensure alignment between RTX ES Cybersecurity services (including IT and OT) with Business functions to safeguard critical assets, applications, systems, and data. The candidature is expected to follow a hybrid work model, balancing remote and on-site presence based on business needs, key meetings, critical milestones, team collaboration needs, audits or incident response requirements. What will you do Governance: Ensure the management and local cyber governance of the Information Systems within the sites under ISSO scope. Ensure adherence to global and regional/local regulatory requirements and applicable frameworks (ISO 27001, 27005, NIST SP800-171 etc.). Maintain the Information Security Management System (ISMS) or equivalent governance model. Define, implement, coordinate, manage and monitor activities related to the Part-IS regulation (acting as Aviation Safety ISMS Manager). Drive internal and external audits, certifications, and compliance readiness across multiple sites. Continuous monitoring of emerging regulations and standards, ensuring proactive & compliance and risk management. Ensure relationship and interface with cyber stakeholders in relation with site ecosystem including security authorities, customers & partners. Define, derive and maintain security policies, procedures and guidance for Restricted and Classified IS located on site (if any) and ensure their implementation with the support of DT team. Ensure accreditation activities on Restricted and Classified networks (when applicable). Develop and execute an annual security awareness plan to reduce business compliance risks, cyber operational risks and to foster a cyber culture within the sites. Cyber Risk Management: Manage cyber risks (identification, evaluation and treatment) according to applicable enterprise-wide cyber risk program and regulations including but not limited to Part-IS and NIS2. As part of the risk management, the ISSO will perform/lead risk assessment for the sites and associated risk treatment plans with the support of DT Int’l Operations and RTX Global GRC teams. Oversee implementation of security controls (technical, administrative, physical) for applications, infrastructure, Cloud, and OT systems under ISSO scope. Ensure secure enablement of new technologies and digital transformation programs. Compliance: Ensure compliance with applicable security requirements for the sites (internal policies, applicable regulations and customer frameworks). Ensure compliance with applicable security requirements for the third parties engaged with the sites (internal policies, applicable regulations and customer frameworks).

Listing verified 3h ago. Applications go through the company's official careers site.

← Back to Yoinka

Principal Specialist, Cyber security & Risk Management (m/f/d) at RTX (Raytheon), DE-BW-HEIDELBERG-036-751 ~ Grenzhofer Weg 36 ~ BLDG 751 | Yoinka