1 день назад
Information Security Specialist (Junior-Mid)
2 200 - 3 950€
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Information Security Specialist (Junior-Mid) (ISO 27001/SaaS security): Supporting information security management, audits, risk assessments, and security awareness in a SaaS/tech environment with an accent on ISMS maintenance, compliance evidence, and practical risk mitigation. Focus on coordinating audits, documenting vulnerabilities, tracking corrective actions, and preparing security training and phishing simulations.
Location: Vilnius, Lithuania; hybrid workplace
Salary: €2,200–€3,950 gross per month; a different salary may be discussed based on skills and competencies.
Company
operates a SaaS/technology environment where the Information Security team supports security and compliance across the company, its people, and its products.
What you will do
- Maintain and improve the Information Security Management System in line with ISO/IEC 27001 and internal security policies.
- Support internal and external security audits by coordinating timelines, gathering evidence, and tracking findings through closure.
- Contribute to risk assessments by documenting vulnerabilities, assessing risks, and proposing mitigation measures.
- Organize security and compliance reviews across teams and follow up on corrective actions.
- Prepare onboarding and security awareness materials, maintain training content, and help run phishing simulations.
- Keep security documentation, processes, and follow-up actions accurate and up to date while working with different teams.
Requirements
- Some experience or exposure to information security, compliance, IT audit, risk management, or a related area; recent graduates and career switchers are welcome.
- Basic understanding of information security concepts and interest in ISO/IEC 27001.
- Strong organizational skills, attention to detail, and reliability in managing documentation, evidence, and follow-up actions.
- Clear communication skills and a proactive, curious approach to learning and problem-solving.
- Fluent English required for security documentation, tools, audits, and collaboration across the organization.
Nice to have
- Degree in cybersecurity, IT, law, risk management, or a related field.
- Exposure to ISO 27001, SOC 2, GDPR, NIS2, or CRA through studies, internships, projects, or self-learning.
- Basic familiarity with cloud concepts, especially AWS or GCP, or tools such as Jira and Confluence.
- Experience in a SaaS, fintech, or technology environment.
Culture & Benefits
- 40+ internal learning options, external conferences, mentorship, and year-round knowledge-sharing.
- Private health insurance, psychotherapy, on-site well-being consultants, 24/7 gym access, and a wellness app.
- Team events, an overseas workation, and quarterly team-building budgets.
- Bonus vacation days, paid life-moment days off, barista coffee, and the tools needed for the role.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →