Track This Job
Add this job to your tracking list to:
- Monitor application status and updates
- Change status (Applied, Interview, Offer, etc.)
- Add personal notes and comments
- Set reminders for follow-ups
- Track your entire application journey
Save This Job
Add this job to your saved collection to:
- Access easily from your saved jobs dashboard
- Review job details later without searching again
- Compare with other saved opportunities
- Keep a collection of interesting positions
- Receive notifications about saved jobs before they expire
AI-Powered Job Summary
Get a concise overview of key job requirements, responsibilities, and qualifications in seconds.
Pro Tip: Use this feature to quickly decide if a job matches your skills before reading the full description.
Job Title: Information Security GRC Specialist - Cybersecurity Specialist
Duration: 6-12 Months Contract (possible extension)
Location: Warsaw, Poland or Vienna, Austria
Work Mode: Hybrid (3 days onsite in a week)
Key skill
- Solid experience with implementing risk framework based on iso27k
- presenting risk and collecting risks
- experience with security awareness training
- technical risk assessments and implementing security controls across engineering and business departments (previous experience as an internal Information Security Officer/expert in organization).
- good experience in cybersecurity, particularly in risk management, compliance, and the implementation of security tools.
- ISO 27001 Compliance: Ensure adherence to international security standards and implement new controls.
- SOC2 Compliance: Manage compliance with SOC2 requirements and expand our Internal Control Framework.
- Compliance & Standards Implementation: Ensure alignment with frameworks such as ISO 27001, SOC 2, and the NIST Cybersecurity Framework, supporting continuous compliance.
- Collaboration & Teamwork: Work closely with colleagues and leadership to achieve audit and security objectives.
- Continuous Improvement: Stay informed on evolving threats, regulations, and best practices to enhance audit and compliance processes.
- Project Management Contribution: Support and coordinate various security-related projects with an emphasis on audit preparedness.
Responsibilities:
- Lead technology and security compliance programs that meet industry standards, regulatory requirements, and organizational objectives.
- Lead technical assessment activities to identify, evaluate, and prioritize information security risks across the organization, including threats, vulnerabilities, and potential impacts to information and technology assets.
- Develop and drive implementation of effective risk management strategies to mitigate identified risks, ensuring alignment with industry best practices and regulatory requirements.
- Develop comprehensive metrics and dashboards to communicate the status of information security risks to stakeholders and leadership.
- Analyze security data to identify trends, vulnerabilities, and areas for improvement.
- Collaborate with internal and external auditors to facilitate security audits and assessments.
- Collaborate across the organization to ensure the integration of risk management practices into organizational processes and projects.
- Stay current with industry trends, emerging threats, and best practices for information security and risk management.
- Provide expert technical guidance and support in developing and maintaining information security policies, standards, and procedures.
- Implement enterprise-wide risk management frameworks that aligns with industry standards (e.g. ISO27001, NIST, etc).
Reach @ [email protected]
Key Skills
Ranked by relevanceReady to apply?
Join Apprize Technology Solutions and take your career to the next level!
Application takes less than 5 minutes