NoFluffJobs Stacjonarnie Mid

Cybersecurity Officer

AVENGA (Agencja Pracy, nr KRAZ: 8448)

⚲ Wrocław

24 360 - 28 560 PLN (B2B)

Wymagania

  • ISO
  • NIS2

Opis stanowiska

O projekcie:
The Senior Cybersecurity Standards & Procedures Officer is responsible for driving the development, implementation, and continuous improvement of the organization’s cybersecurity governance framework. The role supports the global implementation and certification of the Information Security Management System (ISMS), ensuring alignment with ISO 27001, DORA, CRA, NIS2, and other relevant regulatory and risk management frameworks.

Wymagania:
The successful candidate will possess strong expertise in cybersecurity governance, risk and compliance (GRC), excellent communication and stakeholder management skills, and the ability to influence senior leaders in a complex global environment; certification ISO27001 Lead Implementer / Lead Auditor needed, NIS2.

Required qualifications:
- ISO/IEC 27001 Lead Implementer and/or Lead Auditor certification.- Strong knowledge of ISO/IEC 27001 requirements.

Codzienne zadania:
- Translating regulatory and framework requirements into actionable cybersecurity standards, procedures, and controls.
- Performing regulatory and framework requirement mapping, as well as gap assessments.
- Coordinating cybersecurity governance activities across the organization.
- Driving stakeholder engagement and collaboration across business and technology functions.
- Acting as a trusted advisor on cybersecurity governance, compliance, risk management, and control effectiveness.
- Supporting audit readiness, certification activities, and continuous compliance initiatives.

🔍 Dekoder Ogłoszenia

🔴
driving the development, implementation, and continuous improvement of the organization’s cybersecurity governance framework
Oczekuje się, że kandydat samodzielnie zainicjuje i poprowadzi procesy tworzenia i udoskonalania polityk bezpieczeństwa, co może oznaczać dużą odpowiedzialność i potrzebę proaktywności.
🔴
ability to influence senior leaders in a complex global environment
Może oznaczać, że będziesz musiał przekonywać osoby na wysokich stanowiskach do swoich racji, co bywa trudne i wymaga umiejętności dyplomatycznych.
🟡
Translating regulatory and framework requirements into actionable cybersecurity standards, procedures, and controls.
Oznacza to, że będziesz musiał interpretować skomplikowane przepisy i przekładać je na praktyczne, zrozumiałe dla wszystkich działania, co może być czasochłonne.
🟡
Driving stakeholder engagement and collaboration across business and technology functions.
Będziesz musiał aktywnie angażować różne działy firmy, co może wymagać wielu spotkań i negocjacji, aby osiągnąć wspólny cel.
🟢
Acting as a trusted advisor on cybersecurity governance, compliance, risk management, and control effectiveness.
Oczekuje się, że będziesz ekspertem, który udziela rad i rekomendacji w szerokim zakresie tematów związanych z bezpieczeństwem IT.