This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
Join a leading company as a Senior Information Security GRC Specialist, where you will oversee the information security program, focusing on governance, risk management, compliance, and policy management. You will lead risk assessments, develop security policies, and foster a culture of security awareness. Strong knowledge of NCA regulations and security frameworks is essential.
Job Responsibility:
Leads risk assessments and gap analyses to identify vulnerabilities and recommends risk mitigation strategies
Develops and maintains security policies, standards, and procedures
Collaborates with legal and compliance teams to ensure adherence to regulatory requirements
Provides guidance and support to junior GRC team members
Assists in the creation and delivery of security awareness and training programs
Participates in security incident response activities as needed
Contributes to the continuous improvement of the information security program
Assists in policy management and refinement
Performs any other related task as required
Closing gabs on key findings during internal audits and evidence validation
Requirements:
Strong knowledge and experience with NCA regulations
Strong experience in Essential Cybersecurity Controls (ECC)
Advanced understanding of information security frameworks and standards
Advanced proficiency in conducting risk assessments, analyzing security controls, and policy management
Excellent communication and interpersonal skills for collaborating with various stakeholders
Strong project management skills for handling security initiatives
Advanced familiarity with legal and compliance aspects related to information security
Bachelor’s degree or equivalent in Information Technology or Computer Science degree or related field
Security certifications such as CISA, CRISC, COBIT, IIA or equivalent preferred
Certifications such as Lead audit/Implementer - ISO 27001, SOC TSP preferred
Advanced experience in information security, including GRC-related roles
Advanced experience in leading risk assessments, compliance efforts, security awareness initiatives, and policy management
What we offer:
Flexible, hybrid working model
Access to various wellness initiatives and health benefits tailored to individual needs
Competitive leave policies
Competitive salary plus a bonus or commission plan
Access to unrestricted courses, learning programs and professional certifications