NoFluffJobs Stacjonarnie Senior

Senior Cybersecurity Standards & Procedures Officer

Ework Group

⚲ Wrocław

23 520 - 26 880 PLN (B2B)

Wymagania

  • Security
  • GRC
  • ISO

Opis stanowiska

O projekcie:
The Senior Cybersecurity Standards & Procedures Officer is responsible for driving the development, implementation, and continuous improvement of the organization’s cybersecurity governance framework. The role supports global Information Security Management System (ISMS) implementation and certification activities, ensuring alignment with ISO 27001, DORA, CRA, NIS2, and other relevant regulatory and risk management frameworks.
The role serves as a trusted advisor on cybersecurity compliance, risk management, and control effectiveness, supporting audit readiness and certification efforts.

Wymagania:
- strong expertise in cybersecurity governance, risk and compliance (GRC)- excellent communication and stakeholder management skills- the ability to influence senior leaders in a complex global environment.- certification ISO27001 Lead Implementer / Lead Auditor needed- ISO 27005 nice to have

Codzienne zadania:
- include translating regulatory and framework requirements into actionable standards, procedures, and controls
- performing requirement mapping and gap assessments
- coordinating governance activities
- driving stakeholder engagement across business and technology functions

🔍 Dekoder Ogłoszenia

🔴
trusted advisor on cybersecurity compliance, risk management, and control effectiveness
Będziesz musiał przekonywać innych do swoich racji, nawet jeśli nie mają one bezpośredniego przełożenia na ich codzienne zadania.
🔴
the ability to influence senior leaders in a complex global environment
Oczekuje się, że będziesz potrafił przekonać zarząd do swoich pomysłów, nawet jeśli nie masz formalnej władzy decyzyjnej.
🔴
driving stakeholder engagement across business and technology functions
Będziesz musiał aktywnie angażować ludzi z różnych działów, co może oznaczać wiele spotkań i negocjacji.
🟡
continuous improvement of the organization’s cybersecurity governance framework
Praca będzie polegać na ciągłym doskonaleniu istniejących procesów, a nie tylko na ich tworzeniu od podstaw.
🟡
supporting audit readiness and certification efforts
Część pracy będzie polegać na przygotowaniu firmy do audytów i procesów certyfikacyjnych, co może być czasochłonne.