Your role at OTOKO®
You help customers translate security risks into concrete decisions and measures. You structure requirements, assess existing safeguards and support implementation. In doing so, you connect organisational responsibilities with the technical capabilities of the relevant IT environment.
From security finding to action plan
A risk analysis must show which vulnerabilities actually endanger operations or data. You record systems, data flows and responsibilities and prioritise measures by impact and feasibility. You involve specialist teams for specific topics. An action plan includes owners, dependencies and verification criteria. Workshops distinguish existing evidence from open assumptions so that decisions have a transparent basis.
Your responsibilities
- Capture security requirements and assess existing infrastructure, applications and processes based on risk.
- Develop protection concepts with priorities, responsibilities and verifiable measures.
- Facilitate customer workshops and explain technical and organisational boundaries clearly.
- Support implementation teams, track unresolved risks and review evidence for agreed measures.
- Create risk and action registers with protection requirements, owners and completion criteria.
- Coordinate protection concepts and verify the effectiveness of agreed measures using concrete evidence.
What you bring
What matters is demonstrable experience that is relevant to the role. It may come from appropriate vocational training, a degree, professional practice or a well-founded career change. We will align the specific level of responsibility with your knowledge and experience.
- Experience in IT security or security-related technical consulting.
- Understanding of identity, networking, application security and transparent risk assessment.
- Ability to communicate complex matters precisely and appropriately for the audience.
Additional strengths
This knowledge is helpful, but you do not need to have all of it at once. In your application, describe where you have already gained practical experience and which areas you would like to explore in greater depth.
- Experience with security management, regulated customers or technical audits.
- Knowledge of incident readiness, business continuity or security architecture.
What matters in this role
You deliver concrete next steps with clear priorities. A recommendation must fit the customer's operations and explain its benefits clearly; certification or compliance outcomes are not guaranteed across the board.
Your workplace: Cologne or remote
This role can be based in Cologne or performed remotely. We will agree the specific form of collaboration, project requirements and any necessary customer appointments before you start.
Your employment
This role is offered as permanent employment on a full-time or part-time basis. We will agree the responsibilities, working hours, start date and compensation to suit the role and your level of experience.
Your application
Show us in your application which experience or interests you bring to this role. A CV and relevant project examples, certificates or work samples will help us assess your professional background. Please do not send confidential customer data, credentials or protected source code.
Tell us your preferred working model, your possible start date and whether you would like to work full-time or part-time.
If you have questions about the role, contact our recruitment team at hr@otoko.com. Inclusion in the applicant pool is voluntary and takes place only with separate consent; it is not a prerequisite for reviewing your application.
