CrawlJobs Logo

Cyber Security Compliance Specialist

India, Pune Employment contract · Job Posted June 02, 2026
Apply Position
Job Link Share

Job Description

We are seeking a Cyber Security Compliance Specialist to drive and sustain compliance with CHARM security controls across the Cyber organisational landscape. The role focuses on ensuring adherence to Vodafone Security Baseline requirements across IT, cloud, and network environments, while supporting audit readiness and strengthening cyber control effectiveness. The individual will work closely with Cyber Security, Technology, and Architecture stakeholders to manage risks, track remediation, and continuously improve compliance maturity within the CHARM framework.

Job Responsibility

  • Ensure adherence to Vodafone’s Cyber Security Baseline requirements and CHARM control framework
  • Drive lifecycle compliance for security controls such as hardening, patching, and vulnerability management across IT, cloud, and network domains
  • Perform and support periodic control assessments, operational effectiveness reviews, and evidence validation activities
  • Contribute to internal and external audits (e.g. Internal Audit, Group Cyber Assurance), including evidence preparation and remediation tracking
  • Provide governance oversight and security input for systems under development or undergoing significant change
  • Maintain, analyse, and present compliance dashboards, metrics, and trends to enable risk-based decisions
  • Participate in cyber risk assessments, including identification, analysis, and mitigation tracking
  • Collaborate with stakeholders including Technology, Architecture, Service Owners, and Local Markets to address control gaps and risks
  • Support continuous improvement of compliance processes, including standardisation and automation initiatives

Requirements

  • Experienced in Information Security Governance, Risk, and Compliance within a large or multi-market environment
  • Knowledgeable in security governance frameworks and compliance lifecycle management
  • Skilled in supporting audits, assurance reviews, and regulatory compliance activities
  • Comfortable coordinating with diverse stakeholders across Technology, Architecture, and Operations
  • Familiar with IT service management concepts and frameworks such as ITIL
  • Possess working knowledge of infrastructure, operating systems (Windows, Unix/Linux), middleware, and cloud environments from a governance perspective
  • Able to translate high-level security requirements into practical compliance actions
  • Highly organised with strong attention to detail and the ability to manage multiple priorities
  • Confident communicator with strong written and verbal English skills
  • Professionally qualified with certifications such as CISM or equivalent, ISO27001 training, and proficiency in Microsoft Office (including advanced Excel) and Microsoft Power Platform tools

What we offer

  • Opportunity to work within a global cyber security and compliance ecosystem
  • Exposure to large-scale, multi-market technology environments
  • Involvement in high-impact audit and assurance programmes
  • Collaborative working environment with cross-functional stakeholders
  • Continuous learning and professional development in cyber security governance and compliance practices

Looking for more opportunities?

Search for other job offers that match your skills and interests.

Similar Jobs for

Cyber Security Compliance Specialist

8 matching positions

Cyber Security Specialist

Security is a strategic pillar for us. Our modern, distributed architecture dema...
Location
Location
Italy , Milan
Salary
Salary:
Not provided
livestory.nyc Logo
Live Story
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Proven experience in cloud security (AWS/Azure/GCP), IAM/SSO, SIEM, WAF, endpoint security
  • Strong understanding of threat modelling, vulnerabilities (e.g., OWASP Top 10), MITRE ATT&CK
  • Experience with compliance frameworks and certification processes
  • Hands‑on problem solver, able to translate technical issues into business risks and vice versa
  • Excellent communication skills and teamwork orientation
  • English fluency
  • Italian is a plus
Job Responsibility
Job Responsibility
  • Monitor and manage the attack surface: applications, infrastructure, APIs
  • Perform vulnerability assessments, penetration testing, risk analysis and remediation
  • Define, implement and maintain security policies, procedures and controls (e.g., ISO 27001, SOC2, GDPR)
  • Collaborate with engineering, product and legal teams to ensure compliance and risk mitigation
  • Manage incident response: alerting, logging, encryption, forensic analysis
  • Drive continuous improvement of our security posture and culture
  • Fulltime
Read More
Arrow Right

Information Assurance Specialist

The Information Assurance/Security Engineer will provide security engineering an...
Location
Location
United States , Bethesda
Salary
Salary:
Not provided
anavationllc.com Logo
AnaVation
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Active TS/SCI Clearance with CI Polygraph
  • Bachelor’s degree in Network Engineering, Computer Science or related technical field plus 5-7 years of Cyber Security/Operations support
  • DoD 8140 IAT Level II Certification (CCNA-Security, CySA+, CND, Security+)
  • Documenting network schemas and cyber operation tool solutions
  • Knowledgeable regarding compliance with: ICD 503, FISMA, OMB, NIST, and DoD (8150.01 March 12, 2014) [Risk Management Framework and Cyber Network Defense…], and other mandated security regulations and standards
  • Knowledge and experience with managing and monitoring compliance with Privileged User Access (PUA), Data Transfer Access (DTA), and Removable Media Custodian (RMC) privileges, forms, and signatures
  • Support to vulnerability management, patching, information assurance and/or ATO process for Classified DoD or IC environments
  • Demonstrated documentation writing for security plans, tests, and reports
  • Must demonstrate strong teamwork, communication (both verbal and written), and presentation skills
  • Must demonstrate strong initiative to accept new technical challenges in complex security engineering assignments
Job Responsibility
Job Responsibility
  • Provide security engineering and information assurance support to the Government’s Assessment and Authorization (A&A) process to maintain Authority to Operate (ATO) and Authority to Connect (ATC) for mission applications and services
  • Designs, develops, monitors and documents security controls, security testing, security reporting, and plan of actions and milestones (POA&Ms) throughout systems and application lifecycles in support of mission systems
  • Provides security engineering design inputs, security design reviews, and security best practices as part of technical and change requests
  • Configures and validates secure systems, physical controls, and tests security products and systems to detect security weaknesses
  • Maintains XACTA security records for supported systems
What we offer
What we offer
  • Generous cost sharing for medical insurance for the employee and dependents
  • 100% company paid dental insurance for employees and dependents
  • 100% company paid long-term and short term disability insurance
  • 100% company paid vision insurance for employees and dependents
  • 401k plan with generous match and 100% immediate vesting
  • Competitive Pay
  • Generous paid leave and holiday package
  • Tuition and training reimbursement
  • Life and AD&D Insurance
  • Fulltime
Read More
Arrow Right

Cyber Security Specialist (GRC)

As a Cyber Security Specialist, you will be integrated into the Portugal Cyber S...
Location
Location
Portugal , Lisboa
Salary
Salary:
Not provided
vodafone.com Logo
Vodafone
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Degree, professional qualification or relevant experience in Technology Security
  • Experience in cyber security risk management, governance and control frameworks
  • Experience supporting risk registers, control assessments, audits or assurance activities
  • Knowledge of information security and risk management standards (ex: ISO/IEC 27001, NIST, COBIT)
  • Strong understanding of cyber security threats and ability to assess business and operational impact
  • Experience working with policies, standards, controls and compliance requirements
  • Strong communication skills, with the ability to explain cyber risks and control gaps in clear business language
  • Ability to work effectively across technical and non‑technical stakeholders, balancing security, risk and business needs
  • Fluency in the English language
Job Responsibility
Job Responsibility
  • Integrated into the Portugal Cyber Security Governance, Risk & Control function, with responsibility for ensuring that cyber security risks are identified, assessed, governed and managed within Vodafone’s risk tolerance
  • Contributing to the three main areas: Cyber Risk Management, Security Governance and Control Assurance
  • Act as a Cyber GRC Subject Matter Expert to enable technical and business teams to operate Vodafone products and services in a secure and compliant manner, with strong focus on cyber risk, policy adherence and control effectiveness
  • Ensuring that cyber security risks are properly identified, assessed, governed and managed, that security controls are effectively implemented and evidenced, and that all governance processes supporting those controls are in place, in line with Vodafone Group cyber security strategy and local market technology and business priorities
  • Follow up on risks, controls and remediation actions throughout their lifecycle, ensuring proper understanding of cyber security requirements, analysing, classifying and prioritising cyber risks according to business context, and supporting informed risk decisions
  • Report to the Cyber Security GRC Team Lead in Portugal and be an active part of the local market Cyber Security team, supporting effective collaboration with local structures such as Network, Digital & IT, Secure by Design, Cyber Defence, Corporate Security, Privacy, Legal, Risk and Compliance, among others
What we offer
What we offer
  • Hybrid Work Model - Flexible hybrid work model with 8-10 in-office days per month, managed by team leaders
  • Vodafone Products and Services - Employees get a mobile phone, free communication plan, data card, and various discounts on services and products
  • Recognition - Recognition programs for innovative, creative, high-potential employees and exemplary behaviors
  • Health and Well-being - Well-being Program offers nutrition and psychological consultations, webinars, workshops, and discounts on various services and products
  • Learning - Access to Communities of Practice and a customizable digital training platform with high-quality content (namely Harvard Business Publishing and Skillsoft)
  • Local and International Mobility - Internal recruitment with local and international rotation opportunities across departments and roles
Read More
Arrow Right

TPRM Specialist

A highly motivated and hands-on professional to join the Supply Chain Security (...
Location
Location
Netherlands , Amsterdam
Salary
Salary:
Not provided
levy-professionals.com Logo
Levy Professionals
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Knowledge and experience with setting up projects & deliverables within supply chain security / Third-Party Risk Management (TPRM)
  • Proven experience in executing information security risk assessments
  • Knowledgeable on one or more areas such as security processes, technology architectures, network security, application security, and vulnerability management
  • Experience with the ServiceNow TPRM module is a significant advantage
  • HBO or University degree
  • Excellent stakeholder management skills
  • A strong ability to translate technical risks into business risks and vice versa
  • Hands-on, self-organised, willing to finish and deliver (execution power)
  • Service-oriented professional who enjoys taking on an internal consultancy role
  • The working language within the team is English
Job Responsibility
Job Responsibility
  • Govern and manage IT vendor relationships concerning performance on the security aspects of underlying contractual obligations
  • Execute Vendor Security Risk Assessments and perform necessary follow-up actions, focusing on material risks
  • Ensure that information security risks are identified and managed effectively throughout all stages of the relationship with external vendors
  • Review the applicability and quality level of assurance reports issued by third parties
  • Manage the IT security-related part of vendor contracts, working closely with 2nd line functions such as legal, compliance, and procurement on contractual changes
  • Actively stay up-to-date with emerging cyber security trends, risk, and threat developments, and share this knowledge to help integrate them into the assessment program
  • Help solve security-related questions, take initiative, and escalate in time if needed
  • Signal improvements related to the way of working inside the team and contribute to improving the excellence of the service offering
  • Work according to the DevOps & Agile methodology, improving Supply Chain Security services based on user stories
  • Occasionally investigate and resolve incidents as they occur
Read More
Arrow Right

Senior Information Technology Specialist

Barbaricum is currently seeking a proficient Senior Information Technology Speci...
Location
Location
United States , Fort Belvoir
Salary
Salary:
Not provided
barbaricum.com Logo
Barbaricum
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Active DoD Secret Clearance
  • Bachelor’s degree and 10 years of relevant experience
Job Responsibility
Job Responsibility
  • Support the resolution of IT and system problems, to recommend solutions to higher level IT specialists and management, and to meet assignments as estimated and scheduled
  • Provides technical advice to IT and other professionals and the client
  • Support backup and disaster recovery, cyber security, monitoring, auditing, and compliance, troubleshooting and resolving end user support issues, and delivery of technology solutions
  • Provide verification of operational status of government computer systems and related third party interfaces and comply with Federal regulations, policies, codes, and security and safety standards
  • Experience supporting and managing cloud instance by utilizing elastic cloud computing for resourcing needs
Read More
Arrow Right

Cyber Security & Privacy Compliance Leader

We are looking for a collaborative and proactive colleague who is passionate abo...
Location
Location
Denmark , Taastrup
Salary
Salary:
Not provided
https://www.ikea.com Logo
IKEA
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Minimum 2 years of experience working with data protection or cybersecurity compliance
  • GDPR and relevant EU Data Privacy regulations
  • Best practices within Information Security and Cyber Security
  • The principles of Privacy by Design
  • Strong English communication skills
  • A proactive, service-minded and solution-oriented approach
  • Flexibility and openness to new tasks and responsibilities
Job Responsibility
Job Responsibility
  • Leading and providing continuous oversight and challenges of Ingka’s Cyber Security & Privacy framework incl. Manage and report data breaches and address data subject requests
  • Identifying gaps in goals, strategy, and implementation, including deviations in timelines and delivery
  • Reviewing, mapping, and challenging the Cyber Security & Privacy framework to ensure compliance with laws, regulations and internal requirements
  • Providing regular, independent reporting to Management on progress, risks and required follow-up actions
  • Prioritizing and coordinating the work of Cyber Security & Privacy Compliance Specialists to ensure alignment with Digital strategies
  • Securing and guiding the organization for training and awareness in information security-related tasks
  • Liaising with Internal Audit, external experts and industry bodies to benchmark and strengthen Ingka’s Cyber Security and Privacy work
  • Work actively with Ingka Group matrix and external authorities to provide regular and independent reporting and oversight
What we offer
What we offer
  • Pension
  • Health insurance
  • Massage
  • Canteen
  • Staff discount
  • Partner discount club
  • Annual gift and bonus
  • Fulltime
Read More
Arrow Right

Managing Consultant - Digital Trust and Cyber Security

We are seeking a highly accomplished Managing Consultant to join our Digital Tru...
Location
Location
United Kingdom , London
Salary
Salary:
Not provided
paconsulting.com Logo
PA Consulting
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Extensive experience in cyber security, some of which in a leadership role, ideally gained within a consulting organisation or a consulting style role
  • Proven track record of leading large-scale cyber security projects and engagements
  • Deep understanding of cyber security principles, technologies, and best practices
  • Strong business acumen with the ability to align cyber security strategies with organizational goals
  • Excellent client management skills, with a demonstrated ability to build and maintain executive-level relationships
  • Exceptional communication and presentation skills, with the ability to articulate complex technical concepts to non-technical stakeholders
  • Proven leadership and team management skills, with a commitment to fostering a positive and inclusive work environment
Job Responsibility
Job Responsibility
  • Shape and lead the firm’s Digital Trust & Cyber Security strategy, ensuring alignment with financial services sector needs
  • Provide expert guidance on specialist areas such as identity & access management (IAM), zero-trust architectures, cloud security, and data privacy frameworks, payment systems, fraud detection, digital banking security, and third-party/vendor risk management
  • Advise financial institutions on regulatory compliance (e.g., FCA/PRA, relevant regulations, ISO 27001, NIST, CSF, Data Privacy regulation)
  • Act as a thought leader, contributing to industry forums, white papers, and public discussions on digital security, cyber risks, and operational resilience
  • Leverage an extensive C-suite network to drive business development and build long-term client relationships
  • Identify and secure new business opportunities, positioning the firm as a trusted advisor in digital trust, cyber security, and resilience consulting
  • Develop and execute go-to-market strategies, ensuring revenue growth and client retention in the financial sector
  • Lead high-profile client engagements, from origination to execution, ensuring measurable impact and business outcomes
  • Advise clients in areas such as identity & access management (IAM), zero-trust architectures, cloud security, data privacy frameworks, fraud detection, digital banking security, and third-party/vendor risk management
  • Support financial institutions in achieving compliance with evolving regulations, enhancing operational resilience and cyber incident response capabilities
What we offer
What we offer
  • Health and lifestyle perks accompanying private healthcare for you and your family
  • 25 days annual leave (plus a bonus half day on Christmas Eve) with the opportunity to buy 5 additional days
  • Generous company pension scheme
  • Opportunity to get involved with community and charity-based initiatives
  • Annual performance-based bonus
  • PA share ownership
  • Tax efficient benefits (cycle to work, give as you earn)
  • Fulltime
Read More
Arrow Right

Senior Cyber GRC Specialist

As a Senior Cyber Security Specialist, you will be responsible for driving Gover...
Location
Location
Greece , Athens
Salary
Salary:
Not provided
vodafone.com Logo
Vodafone
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's and/ or Master's degree in Computer Science, Information Security, or a related field
  • Proven experience (typically 5+ years) in cyber security
  • Strong aptitude for staying updated with the latest cybersecurity trends and best practices
  • Effective communication skills to articulate complex technical concepts to both technical and non-technical stakeholders
  • Familiarity with relevant regulations and industry standards (i.e. ISO27001, NIST SP 800-53)
  • Capable of working collaboratively with cross-functional teams to implement and maintain robust cybersecurity measures
  • In-depth knowledge of cyber security principles, standards, and frameworks
Job Responsibility
Job Responsibility
  • Ensure Vodafone Greece complies with Group’s cyber security control framework
  • Support proper execution of the local cyber security processes
  • Support ISO 27001 certification compliance activities
  • Ensure cyber security control KPIs and relevant risk remediation actions are met
  • Support Group and Local Cyber Security Regulatory compliance activities
What we offer
What we offer
  • Award-winning work environment -certified #1 Top Employer in Greece
  • Competitive pay, bonus & remuneration package
  • Private Health & Medical Insurance
  • Hybrid way of working: a blend of remote and office-based working, including the option to work from abroad
  • Unlimited access to learning resources and trainings
  • Vodafone Parental Leave: 16 weeks of fully paid parental leave to all employees regardless of gender, sexual orientation or length of service
  • Spirit of Vodafone Day: one day each quarter dedicated to your personal development
  • Extra days off: Vodafone Day, Family Day, Volunteering Day
  • Office amenities (subject to the office location): such as restaurant, beauty corner, gym and parking
  • Special employee offers and discounts
  • Fulltime
Read More
Arrow Right