This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
You are the technical architect and auditor of our data sovereignty. At Isar Aerospace, protecting our "Crown Jewels" from personal employee data to regulated rocket propulsion schematics is mission-critical. We are looking for a Data Protection & Export Control Engineer who bridges the gap between our Legal Team and external DPO, the Works Council, and our IT operations. You are not a lawyer, but you work in close partnership with our Data Protection Office (DPO) and Legal team, taking their regulatory requirements and translating them into precise technical configurations for our IT systems. They define the "what" (Regulations). you define the "how" (Technical Solutions).
Job Responsibility:
Translate Legal to Technical: Partner with our external DPO and Legal team to digest complex regulations (GDPR, Export Control/ITAR). Translate their written policies into hard technical specifications for IT
Audit & Solution Design: Act as the technical auditor for our enterprise systems. When you identify a gap, you provide with the exact technical configuration required to close it
Legacy Data Remediation: Lead the technical discovery and cleanup of legacy data repositories (e.g., old file servers), defining the migration, labelling, or deletion strategies for IT to execute
Secure the Engineering Stack: Extend data protection controls beyond Office documents to our core engineering environments (PLM, CAD, Git). Design solutions to protect rocket schematics without breaking the engineers' workflow
Partner with the Works Council: Serve as the technical voice in Works Council consultations. You will demonstrate how our security tools (like DLP or Insider Risk) are configured to respect employee privacy while ensuring security
Lifecycle Management Architect: Design and implement automated retention and deletion policies to ensure we don't hold data liability longer than necessary
Lead Data Protection Impact Assessments (DPIAs): Own the technical side of the DPIA process. You will assess new tools and processes, identify privacy risks and define mandatory technical mitigations before go-live
Enforce Export Control Boundaries: Design the technical segregation architectures required by BAFA and ITAR. You will define the access control models that IT implements to ensure restricted technical data never crosses a non-compliant border
Conduct Technical Audits: Act as the technical auditor. You will inspect the configurations applied by IT in our enterprise systems (Microsoft Purview, Netskope, Jira, etc.) to verify they match your specifications
Requirements:
5+ years in Cybersecurity, IT Audit, or Compliance Engineering, with a specific focus on Data Protection
Navigating Ambiguity: find creative technical solutions when a regulation conflicts with a business goal
Technical Audit Expertise: can audit configurations in Microsoft 365, SharePoint, and SaaS tools to prove compliance
DPIA Mastery: Proven experience conducting Data Protection Impact Assessments (DPIAs) for complex technical systems
Deep Microsoft Purview Knowledge: understand the capabilities and limitations of the Microsoft compliance stack
Export Control Fluency: Familiarity with the technical implications of Export Control regimes (German BAFA, US ITAR/EAR)
Language: Fluent English is mandatory
German is a strong plus for reading local regulations
Nice to have:
SASE Knowledge: Understanding of how SASE platforms (e.g., Netskope, Zscaler etc.) enforce data protection at the network edge
Certifications: CIPP/E or CIPM (Privacy) combined with technical audit certs like CISA or Microsoft SC-400
Digital Rights Management (DRM): Experience implementing technical rights management (e.g., Seclore, Microsoft RMS)
What we offer:
Employee Participation Program: Share in our success through our virtual company share program
30 days of vacation: Enjoy the days off to relax and recharge
Company pension plan: Secure your future with our company pension plan, featuring a 20% employer contribution after the probation period
Subsidised lunch: Stay energised with delicious, subsidised lunches every day
Public transport ticket: Commute with ease using a fully financed Deutschlandticket
Sport Clubs membership: Stay fit with our sponsored sports club memberships (EGYM Wellpass)
Individual learning allowance: Grow your skills with an individual learning budget granted after the probation period
Childcare allowance: Receive a childcare allowance for your non-school-age children