GRC Security Expert (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
GRC Security Expert (Cybersecurity): Defining and implementing organizational information security processes to ensure regulatory and contractual compliance with an accent on ISMS audits and risk management. Focus on managing ISO/IEC 27001 and PCI DSS certifications, conducting gap analyses, and coordinating external security audits.
Location: Latsia, Cyprus
Company
is a leading technology company in the gambling industry, delivering business intelligence-driven software, content, and platform technology globally.
What you will do
- Establish and implement organizational information security processes to meet business, regulatory, and legislative obligations.
- Manage internal and external ISMS audit processes and monitor the effectiveness of controls and corrective actions.
- Perform gap analysis and compliance monitoring for ISO/IEC 27001, PCI DSS, and other security audits.
- Identify and monitor information security risks and recommend appropriate mitigation measures.
- Develop and coordinate a comprehensive organizational information security awareness training program.
- Manage security requirements and due diligence for third-party products and service providers.
Requirements
- Proven experience (3+ years) in the security governance, risk, and compliance (GRC) domain.
- Experience leading PCI DSS and ISO 27001:2022 certification and surveillance audits.
- Bachelor’s Degree in Information Security, Cybersecurity, Computer Science, or equivalent experience.
- Professional certification such as CISSP, CISM, or ISO 27001 Lead Implementer/Auditor.
- Very good written and spoken English.
- Strong management skills with the ability to lead people and delegate tasks effectively.
Nice to have
- Prior experience working within a SaaS or Online Gambling organization.
- Technical background in IT infrastructure, networks, databases, or software development.
Culture & Benefits
- Inclusive working environment with a global scope.
- Continuous learning and development opportunities.
- Focus on mental well-being and an active lifestyle.
- Engaging company events and a culture that values initiative.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →