drjobs Cybersecurity Risk Compliance Specialist fmdiv

Cybersecurity Risk Compliance Specialist fmdiv

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Ovar - Portugal

Monthly Salary drjobs

Not Disclosed

drjobs

Salary Not Disclosed

Vacancy

1 Vacancy

Job Description

The CISO office is growing and we are hiring a Cybersecurity Risk and Compliance Specialist. Being responsible for ensuring the organizations information systems and processes adhere to relevant cybersecurity frameworks regulatory requirements and internal policies. This role involves assessing managing and mitigating risks while fostering a culture of compliance and proactive security practices. The specialist will collaborate with crossfunctional teams to identify vulnerabilities design control measures and monitor the effectiveness of security programs. 

 

Your contribution to something big: 

Risk Assessment and Management 

  • Conduct cybersecurity risk assessments to identify potential threats vulnerabilities and impacts. 
  • Develop and implement risk mitigation strategies and recommend security controls. 
  • Maintain the organizations risk register and ensure risks are regularly reviewed and updated. 

Compliance and Regulatory Requirements 

  • Ensure adherence to industry standards (e.g. ISO 27001 NIST GDPR). 
  • Monitor regulatory changes and assess their impact on the organizations cybersecurity posture. 
  • Prepare and facilitate audits both internal and external and address any findings or gaps. 

Policy and Framework Development 

  • Develop and maintain cybersecurity policies procedures and guidelines. 
  • Ensure alignment of policies with legal regulatory and business requirements. 
  • Promote awareness of compliance obligations and best practices within the organization. 

Monitoring and Reporting 

  • Monitor and report on compliance with internal controls frameworks and regulatory standards. 
  • Develop dashboards and metrics to track key risk and compliance indicators (KRIs/KCIs). 

Vendor and ThirdParty Risk Management 

  • Assess and manage cybersecurity risks associated with thirdparty vendors and partners. 
  • Review and validate vendor security assessments certifications and contractual obligations. 

Incident Management and Response 

  • Support incident response efforts by ensuring compliance with policies and regulatory requirements. 
  • Document lessons learned and recommended updates to processes and controls. 

 


Qualifications :

What distinguishes you:

  • Experience: 5/10 years of experience in Cybersecurity Information Technology Risk Management or related field. 
  • Indepth knowledge of cybersecurity principles risk management practices and compliance frameworks. 

  • Strong analytical and problemsolving skills to assess risks and develop mitigation strategies. 

  • Familiarity with tools for compliance management risk assessment and security monitoring. 

  • Ability to work collaboratively in a team and adapt to a dynamic environment. 

  • Communication & Leadership: Excellent communication skills with the ability to collaborate effectively across technical business and executive teams. Strong leadership and mentoring capabilities in guiding junior resources and providing strategic direction. 

Desired Skills:

  • Certifications: Industry certifications such as CISSP CISM CRISC CISA or similar are highly desirable. 

  • Strong problemsolving skills and the ability to handle complex challenges in a dynamic environment. 

  • Experience with regulatory frameworks and standards such as ISO 27001 NIST GDPR. 

  • Knowledge of security tools such as SIEM vulnerability scanners and GRC platforms. 

  • Experience with thirdparty risk management and vendor assessments. 

  • Understanding of data privacy regulations and their application in a business context. 


Additional Information :

Hybrid model: 2 days at the office

Work #LikeABosch includes:

Flexible work conditions Hybrid work system Exchange with colleagues around the world Health insurance and medical office on site (nutrition psychology physiotherapy general clinic) Training opportunities (p.e. technical training foreign languages training) & certifications Access to great discounts in partnerships and Bosch products Sports and health related activities (gym) Free parking lot Canteen

Success stories dont just happen. They are made...

Make it happen! We are looking forward to your application!


Remote Work :

No


Employment Type :

Fulltime

Employment Type

Full-time

Company Industry

About Company

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.