4 дня назад
Senior ICT Specialist, Security (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Senior ICT Specialist, Security (Cybersecurity): Operating and advancing Qt Group’s corporate security controls, ISO/IEC 27001 ISMS, cloud security, and regulatory compliance with an accent on endpoint and identity protection, vulnerability management, incident response, and audit readiness. Focus on securing AWS, Microsoft, and Google cloud environments, translating CRA and NIS2 requirements into action, and coordinating with IT, R&D, Legal, vendors, and auditors.
Location: Hybrid position based in Espoo or Oulu, Finland
Company
develops software frameworks and development tools used to build products across automotive, healthcare, manufacturing, embedded, and other industries.
What you will do
- Operate core security controls covering endpoint protection, identity and access management, SIEM, and related tooling.
- Lead vulnerability management and support security incident response, including post-incident reviews.
- Maintain and advance the ISO/IEC 27001 ISMS, including policies, risk assessments, and the Statement of Applicability.
- Secure AWS, Microsoft, and Google cloud environments and act as the security liaison for key IT vendors.
- Track CRA, NIS2, CMMC Level 2, GDPR, and ISO/IEC 42001 changes and translate them into practical actions with Legal and the DPO.
- Support security questions, customer security questionnaires, and security awareness activities across Group.
Requirements
- 5–8 years of hands-on information or cybersecurity experience, ideally in corporate IT or a multi-site technology company.
- Relevant degree or equivalent practical experience.
- Proven experience in at least two areas: security operations, ISMS/ISO 27001, cloud security, vulnerability and incident management, or vendor security.
- Hands-on experience with Entra ID, endpoint security, firewalls, VPN/SASE, AWS, Microsoft 365, Defender, Purview, and Intune.
- Working knowledge of ISO/IEC 27001, NIST CSF, CIS Controls, and GDPR.
- Clear written and spoken English is required.
Nice to have
- Familiarity with CRA, NIS2, CMMC Level 2, or ISO/IEC 42001.
- CISSP, CISM, CISA, OSCP, or Microsoft SC-series certification.
- Finnish language skills.
Culture & Benefits
- Hybrid working options and flexible hours.
- Mental health resources and physical wellness programs tailored to local needs.
- Hands-on learning, mentorship, and international collaboration opportunities.
- Inclusive environment that values different perspectives and collaboration.
- Locally relevant compensation and benefits packages that are regularly reviewed.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →