We are looking for an Information Security Consultant to join our dynamic team. In this role you will play a crucial part in developing and implementing security strategies conducting risk assessments and ensuring compliance with industry standards.
Role Overview:
- Develop and maintain information security policies and procedures aligned with business needs and industry best practices.
- Ensure compliance with IT Management System (ITMS) requirements.
- Develop and maintain the information security risk framework to assess monitor and review information security risks for the organization.
- Maintain risk treatment strategies and work with risk owners to manage their lifecycle.
- Manage and implement an information security audit program ensuring the management of nonconformities and improvement opportunities identified during audits.
- Manage identified vulnerabilities policy violations or nonconformities discovered during audits.
- Lead and manage the investigation and response to security incidents to ensure timely and effective containment eradication and recovery actions.
- Document incident details actions taken and contribute to postincident reports for continuous improvement.
- Develop and implement security training and awareness programs for employees on best practices policies and security guidelines.
- Collaborate with different groups to promote a securityconscious culture.
- Implement and provide regular security reports to top management and other stakeholders offering insights into the status of information security metrics.
Qualifications :
- Background in Information Technology.
- Experience in an Information security role
- Background in Information Security Risks processes and in IT/Information Security Audit.
- Ability to deliver security education and awareness training sessions and material.
- Excellent written/verbal communications skills and organisational skills.
- Knowledge of information security standards and regulations such as ISO 27001 ISO 27002 ISO 27701 ISAE 3402 GDPR DORA and NIS2.
- Cybersecurity knowledge.
- Good level of English
Remote Work :
No
Employment Type :
Fulltime