Cyber Security Expert (m/f/d) (Computer Scientist)

TÜV Informationstechnik GmbHEssen, Essen, RuhrEURESpublished 09/01/2026
Must-have:SecurityRemote
Machine translation — original language: German.Show original

About the Company This position is advertised for TÜV Informationstechnik GmbH in full-time or part-time (min. 24h/week)

TÜV Informationstechnik (TÜVIT) stands for 100 percent IT security. It is part of our DNA - and has been since 1995. IT security is not a trend or a hype for TÜVIT, but rather the mission to which all our employees are dedicated. Our experience and expertise are completely focused on security in information technology. Over 50 percent of DAX 30 companies and numerous international firms already benefit from TÜVIT-certified security. Because trust in the security of IT products is a major competitive advantage.

You are part of our Cyber Security & Reaction Service team and support national as well as international customers in the professional handling of IT security and compliance incidents - independently, structured, and effectively. You take over the incident handling of security incidents (DFIR-Case) in critical situations: from the independent analysis and reconstruction of complex attacks along the Kill Chain to the derivation of robust measures for containment and hardening. You develop and evaluate detection and response concepts (SIEM, EDR/XDR, SOAR), conduct security, compromise, and incident readiness assessments, and specifically close security gaps in processes and technologies. You perform penetration tests as well as adversary operations (Red/Purple Teaming, Threat Emulation according to MITRE ATT&CK) to simulate real attacker tactics and measurably improve detection & response capabilities. You act as a technical consultant and project lead, working closely with SOC, IT, and management teams on the customer side, contributing your expertise to the further development of services, concepts, and legally admissible expert reports, and presenting results appropriately for the target audience - from technical deep dives to executive summaries.

Completed university degree in the STEM field with a focus on IT security/Digital Forensics or a comparable field with several years of relevant practical experience Sound knowledge of network technologies and operating systems as well as several years of practical experience in Digital Forensics & Incident Response (DFIR) and adjacent security disciplines (e.g., Threat Hunting, SIEM, SOC/CSIRT, EDR/XDR, Red/Purple Teaming) as well as a good understanding of attack and defense models such as MITRE ATT&CK or Kill Chain Demonstrable professional qualification in the DFIR environment, e.g., as a BSI-certified incident expert, supplemented by recognized certifications such as GCFE, GNFA, GCIH, or comparable qualifications Independent, structured, and responsible way of working with high team and customer orientation, enjoyment of collaboration and knowledge transfer, as well as a confident manner - even in time-critical deployment situations Strong, analytical way of thinking and the ability to prepare complex technical facts and communicate them appropriately to different hierarchical levels Very good English skills in speaking and writing as well as the willingness to undertake national and international business trips as part of customer projects and DFIR deployments

A secure workplace in a dedicated team with flat hierarchies 30 days of vacation + Dec 24th and 31st off, flexible working hours of 38.5 hours/week (full-time) or at least 24 hours/week (part-time) as well as the possibility of home office Attractive and high-quality work equipment E-charging stations for vehicles Group-wide onboarding event, individual and subject-specific training, possibility to participate in renowned conferences and access to virtual learning platforms Support from our family service - childcare, care topics, tutoring offers, and much more Extensive additional benefits...

Home office: Scope: By arrangement

Contact person

Listed by the employer in the job posting — for questions and your application.

  • Dummy