This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
In support of Fugro's digitalization journey and nature of its business, as a Geo-data company, there is a need to improve the Information Security posture. The regional Information Security Lead will cover both operational and governance aspects of Information Security. The individual will work on key projects and initiatives and collaborates closely with stakeholders across all functions to manage Information Security risks. The lead has a healthy degree of business acumen and will acquire a good understanding on key assets and processes. Together with stakeholders risks are evaluated and reduced to acceptable levels. In essence, the analyst will help the various teams to achieve organizational objectives while not compromising the security posture.
Job Responsibility:
Collaborates with stakeholders to address and identify high-risk areas and support business-critical projects and key initiatives
Works with Project Managers, Business Analysts, architecture, compliance, and support team to ensure Fugro Information Security standards are being followed
Responsible for information security posture and assurance for MEI, and where applicable Global
Influences to achieve positive change to the Information Security posture through regular engagement and collaboration
Actively shares knowledge and insights to increase Information Security awareness throughout the region
Collaborates with the Security Operations Center and to respond to and manage priority incidents
Actively works with the Security Operating Center to remediate regional vulnerabilities and develop possible use cases
Requirements:
Bachelor or Masters Information Security, Information Technology or relevant professional experience
3-8 years of experience. Ideal candidates would have work experience in both Security Operations and Governance, Risk and Compliance
Relevant Information Security certifications are seen as a plus, but not required
Nice to have:
ISO27001 implementation, operation and management, security control audits and assessments
Understanding of relevant legal & compliance aspects, such as GDPR
Experience on working with external and internal auditors