Employer Active
Job Alert
You will be updated with latest job alerts via emailJob Alert
You will be updated with latest job alerts via emailThe Security Governance Specialist is an essential member of the Information Security Governance Risk and Compliance team responsible for supporting and maintaining Docplanners information security framework. This role is pivotal in ensuring that security efforts align with business objectives and comply with relevant regulations and industry standards.
Key Responsibilities
Policy and Procedure Development
Develop and maintain information security policies procedures and standards in alignment with industry best practices regulatory requirements and organisational goals.
Assess the policy framework in support of continuous improvement and suggest positive changes where appropriate.
Security Governance Framework
Monitor the performance of the security governance framework.
Define and report on suitable and meaningful metrics.
Compliance Management
Assist in identifying and understanding regulatory requirements and standards relevant to the organisation.
Liaise with local entities and subject matter experts to assist with compliance requirements from customers investors or legislators.
Assist in the planning and execution of internal and external audits
Security Awareness
Contribute to the development of security awareness programs and training materials.
Collaborate with the Security Awareness and Training Specialist to educate employees about security policies and best practices.
Documentation and Reporting
Maintain the repository of security policies procedures and standards.
Prepare and distribute reports on compliance status governance efforts and security metrics to management.
Security Risk Management
Assist in the identification assessment and reporting of risks across the organisation.
Monitor the compliance of risk management activities
Liaise with the Head of Risk and Compliance and other key stakeholders
Continuous Improvement
Stay informed about emerging security threats regulations and best practices.
Propose and implement improvements to the security governance framework based on industry trends and organisational needs.
Qualifications :
ISO 27001 Lead Auditor or Implementor certification is desirable but not essential
Experience taking part in internal and or external audits
13 years of experience in information security governance
Significant risk management experience
Knowledge of relevant security standards and frameworks (e.g. ISO 27001 SOC 2).
Experience of Security Governance tooling
Understanding of regulatory requirements such as GDPR
Excellent communication and collaboration skills with the ability to work across various departments.
Strong analytical and problemsolving skills.
Detailoriented with a commitment to maintaining accuracy in documentation.
Ability to adapt to a dynamic and fastpaced environment.
Selfstarter and free thinker
Additional Information :
Lets talk money
True flexibility and worklife balance
Health comes first
Keep growing with us
We promote and embrace equal opportunities in our hiring process and also every day at work. When you apply for our roles you receive equal treatment regardless of age disabilities gender reassignment marital or civil partner status pregnancy or parental status race colour nationality ethnic or national origin religion or belief sex sexual orientation or any other dimension of human difference. If you require additional support in your recruitment process we kindly encourage you to let us know. Behind those words youre reading theres a person (hi!) who already helped a candidate by adapting the interviews and now were lucky to have this person with us. So even if youve never asked for it before may this serve as a sign that now you can do so. We can only truly be equal if we adapt to each other.
We believe all humans in all their beautiful diversity should have equal rights dignity and respect. Period. Mariusz Gralewski CEO
Remote Work :
Yes
Employment Type :
Fulltime
Remote