GRC Manager
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
GRC Manager (Cybersecurity): Leading the Information Security Assurance & Governance function with an accent on risk management, vendor assessments, and regulatory compliance. Focus on driving ISO 27001, SOC 2, and PCI-DSS audits while developing security policies and awareness programs within a global e-commerce environment.
Location: Hybrid role based in Riga, Latvia.
Salary: €4,000 – €5,000 gross per month.
Company
is a global leader in on-demand commerce, powering custom product creation for creators and brands worldwide.
What you will do
- Facilitate third-party vendor onboarding and annual security assessments.
- Develop and maintain comprehensive information security policies and procedures.
- Conduct risk assessments and track remediation plans to ensure timely closure.
- Drive internal and external audits for standards like ISO 27001, SOC 2, and PCI-DSS.
- Develop and deliver cybersecurity, governance, and compliance training programs.
Requirements
- 5+ years of experience in cybersecurity, vendor management, risk management, or IT audit.
- Proven track record in implementing ISO 27001, SOC 2, or PCI-DSS frameworks.
- Strong ability to develop internal security policies and procedures.
- Excellent communication skills for engaging with both technical and non-technical stakeholders.
- Fixed-term contract commitment until April 30, 2028.
Nice to have
- Certifications such as CISSP, CISM, CISA, or PECB ISO 27001 Lead Implementer/Auditor.
- CompTIA Security+ certification.
Culture & Benefits
- Hybrid work model with flexibility to combine remote and office days.
- Flexible working hours with late start options.
- Private health insurance and additional paid well-being days.
- Free healthy lunches provided at the Riga office.
- Access to mentorship, internal meetups, and professional learning opportunities.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →