This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
We are seeking a Cyber Security Risk & Compliance Specialist to ensure robust cyber governance and embed security into business operations. This role involves implementing Vodafone’s security control framework, managing cyber risks, and driving compliance across global teams. You will collaborate closely with internal stakeholders and technology teams to support audits, risk assessments, and strategic security initiatives.
Job Responsibility:
Drive and support the design and execution of the compliance programme at strategic, tactical, and operational levels
Ensure adherence to Vodafone’s Cyber Security Baseline Requirements and internal standards
Perform control assessments, audits, and security testing to validate effectiveness throughout the year
Review internal control procedures for systems under development or enhancement
Provide input to improve security compliance aligned with Vodafone’s strategic programmes
Participate in risk assessment activities, including data discovery and analysis
Support delivery plans, document requirements, and coordinate with risk management functions
Prepare reports for stakeholders and assist with internal and external audits
Follow up on findings from assessments and ensure corrective actions are implemented
Act as an advocate for cyber security compliance and awareness programmes
Maintain up-to-date knowledge of security technologies and frameworks
Requirements:
Bachelor’s degree required
Master’s degree preferred
Professional certifications: ISO27001 LA/LI, CISA, CISM, SOX (mandatory)
Additional certifications such as CRISC, GDPR, COBIT, PCI-DSS, TISAX, DevSecOps are advantageous
Strong communication and stakeholder management skills, with experience presenting to senior leadership
Ability to analyse data, identify risks, and propose solutions proactively
Skilled in managing multiple tasks and conversations autonomously
Understanding of security architecture frameworks and technologies
Reputation for integrity, cultural sensitivity, and collaborative problem-solving
Nice to have:
Additional certifications such as CRISC, GDPR, COBIT, PCI-DSS, TISAX, DevSecOps are advantageous
What we offer:
Opportunity to work on global cyber security initiatives impacting multiple markets
Exposure to cutting-edge security frameworks and compliance programmes
Collaborative environment with international teams and senior stakeholders
Continuous learning and development through certifications and training