Define, review, and update information security policies, processes, and procedures to ensure alignment with business needs and industry best practices;
Ensure compliance with the company's Information Security Management System (ISMS) requirements;
Conduct regular information security risk assessments and support the implementation of risk mitigation measures in collaboration with relevant stakeholders;
Develop and deliver awareness and training programs on information security topics for all employees;
Ensure compliance with all applicable information security and data protection laws and regulations;
Collaborate with internal teams to ensure adherence to relevant security standards and regulatory frameworks;
Participate in security-related projects, contributing to the planning, execution, and monitoring of associated tasks;
Support security assessments of new services and software, ensuring alignment with internal security requirements;
Assist management in preparing regular reports for senior management and stakeholders on the status of information security activities.
Requirements
Bachelor's degree in Management, Engineering, or a related field;
Minimum of 5 years of consulting experience, preferably in information security, risk management, and compliance;
Solid knowledge of relevant security standards and frameworks, including ISO 27001, ISO 27002, ISO 27701, GDPR, DORA regulation, and the NIS2 Directive;
Information security certifications (e.g., CISSP, CISM, ISO 27001 Lead Implementer/Auditor) are highly valued;
Knowledge of cybersecurity;
Experience with security tools and technologies (e.g., SIEM) and risk management platforms (e.g., GRC and TPRM systems);
Strong English communication skills, both written and verbal;
Excellent verbal and written communication, interpersonal, and analytical skills;
Ability to work independently and effectively manage multiple tasks and priorities.
Benefits
Important: Our company does not sponsor work visas or residence permits for employment purposes.
All candidates must have the legal right to work in the country where the vacancy is located.
We only contact candidates who meet the requirements and match the profile sought by our clients.