Назад
Company hidden
1 час назад

Security Governance Manager (Cybersecurity)

83 000 - 100 000
Формат работы
remote (только Europe)/hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
France/Spain/Canada +1 еще
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Security Governance Manager (Cybersecurity): Owning the security governance and risk posture for a health-tech platform with an accent on ISO 27001, DORA, and HDS compliance. Focus on building automated audit engines, managing security risk cartography, and bridging regulatory requirements with operational engineering practices.

Location: Must be legally eligible to work from France, Belgium, or Spain

Compensation: €83,000 – €100,000 per year

Company

hirify.global is a leading health-tech company integrating insurance, prevention, and care into a single user experience, serving over 1 million members across Europe.

What you will do

  • Own and operate the ISO 27001 Information Security Management System (ISMS).
  • Translate complex regulatory requirements (DORA, HDS, NIS2, RGPD) into technical and operational security controls.
  • Lead security risk cartography using EBIOS RM and integrate it into company-wide risk frameworks.
  • Manage security audit programmes and coordinate with internal and external certification bodies.
  • Oversee third-party risk by conducting vendor security assessments and defining contractual security requirements.
  • Govern ICT incident classification and provide security substance for regulatory reporting.

Requirements

  • Must be legally eligible to work from France, Belgium, or Spain.
  • Proven experience leading full ISO 27001 certification or recertification cycles.
  • Deep understanding of health sector regulatory frameworks (ANS, CERT Santé) and sensitive health data handling.
  • Ability to translate risk into business language for board-level briefings.
  • Experience with GRC tooling (e.g., CISO Assistant, ServiceNow GRC, Archer) and cloud governance.
  • Proficiency in scripting (e.g., Python) to automate compliance evidence collection and control testing.

Culture & Benefits

  • Remote work flexibility with a strong emphasis on in-person collaboration.
  • Attractive equity package in addition to a competitive base salary.
  • Opportunity to influence company-wide risk decisions and shape security culture for 800+ employees.
  • Work in a highly collaborative environment alongside Legal, Engineering, and Product teams.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →