This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
Our new Security, Governance, Risk and Compliance Manager would be responsible for ensuring effective frameworks, policies, governance, and risk management are in place to protect the integrity and confidentiality of information within our award-winning cloud-based software. The role is key to developing and maintaining internal control framework and will guide the evolution of our control mechanisms and governance processes and will help maintain a suitable security posture.
Job Responsibility:
Driving major change initiatives to facilitate the design and implementation of appropriate control mechanisms, security initiatives and governance processes to pragmatically reduce risk
Developing, managing and reviewing the risk and security metrics and governance frameworks, standard operating procedures and other quality management documents
Conducting and hosting internal and external audits to ensure compliance is adhered to
Review the Talos360 processes to ensure they add value and contribute to mitigating risks
Overall responsibility for the information, security and management system to maintain ISO27001 compliance and deliver improvements
Supporting internal teams with GDPR compliance and improvements
Defining internal policies and procedures and working with different internal teams to implement
To build effective, supportive relationships with key stakeholders to facilitate and develop the company and regulatory culture
Requirements:
Previous experience in the review or risk, security and governance frameworks
Comfortable building relationships with stakeholders across multiple teams and levels within the business, defining internal policies and procedures
Understanding of Infosec best practice and cybersecurity essentials and an understanding of vulnerability operations such as scanning, and remediation
Experience working with relevant regulations, standards, and requirements (ISO27001, GDPR, DSP Toolkit and Cyber Essentials+)
Ideally experienced with Microsoft Azure or similar
Previous experience within a similar role within a SAAS would be advantageous
Nice to have:
Ideally experienced with Microsoft Azure or similar
Previous experience within a similar role within a SAAS would be advantageous
What we offer:
hybrid working style (3 days from our office and 2 days from home per week)
many social and business events held throughout the business year