¡Activa las notificaciones laborales por email!

Salesforce Data Architect

Ahlstrom

Lugo

Presencial

EUR 40.000 - 60.000

Jornada completa

Hace 4 días
Sé de los primeros/as/es en solicitar esta vacante

Mejora tus posibilidades de llegar a la entrevista

Elabora un currículum adaptado a la vacante para tener más posibilidades de triunfar.

Descripción de la vacante

A leading company in the industry seeks an Information Security Specialist to enhance their Information Security Management System. The role involves compliance assessments, managing security risks, and implementing controls based on ISO 27001. Ideal candidates will have extensive experience and knowledge in security protocols, alongside excellent communication skills.

Formación

  • 5+ years of experience in Information Security roles.
  • Solid knowledge of security standards ISO 27001, SOC2, and NIST-800.
  • Familiarity with cloud security and end-point protection.

Responsabilidades

  • Implement and improve Information Security Management System (ISMS) based on ISO27001.
  • Evaluate compliance status and plan actions for security frameworks.
  • Identify and minimize risks related to information security.

Conocimientos

Risk Assessment
Compliance Management
Security Controls Evaluation
Client Requirements Analysis
Technical Controls Knowledge
Communication
Problem Solving

Educación

Bachelor's degree in Computer Science
ISO 27001 Certification
CISSP
CISM

Descripción del empleo

This position is intended to be involved in the implementation and improvement of administrative and technical controls of the company's Information Security Management System. This person should understand the risk assessment process to detect new threats, contribute in the action plan development and promote the progress of control implementation and evolution. The position will cover compliance activities, third parties risk assessments, management of clients requirements, internal awareness and technical controls evaluation.

Key accountabilities :

  • Contribute with the implementation of the global ISMS (based on ISO27001) over the region.
  • Evaluate the compliance status of processes and technology implementations and plan actions to align to the security framework.
  • Identify risk related to information security in the technical environment, the relationships with third parties or any component of the company's context.
  • Understand about technical and administrative controls in the different areas : networking, operations, access management, SSDLC, cloud security, end-point protection, physical security, third party risk assessment, organization security and legal compliance.
  • Act as a point of contact for third parties questions regarding information security.
  • Analyze clients requirements regarding information security and evaluate their accuracy. Follow up the actions needed to comply with those requirements.
  • Identify security threats and risks over processes, conducts, technology and context which may affect the information confidentiality, integrity or availability.
  • Assist in the definition and construction of security measures to lower the risks identified.
  • Solve low complex issues independently with minimum supervision and escalate more complex issues to accurate staff.
  • Contribute in the development of awareness material and the process of delivery and measurement.
  • Perform routine activities to ensure compliance with security frameworks and legislation.
  • Investigate on technologies that could improve the security baseline and the compliance (e.g. DLP, end-point protection, network security, security and vulnerabilities assessment).

Minimum Qualifications :

  • Bachelor's degree in Computer Science, Computer or Systems Engineering or equivalent.
  • Minimum of 5 years of experience in related positions.
  • Solid knowledge of security on networking, cloud, infrastructure configuration, end-point protection and SDLC.
  • Knowledge of the standards ISO 27001 / 2, SOC2, NIST-800.

Qualities :

  • Good communication and social skills.
  • Ability to confidently present findings to those with either a technical or non-technical background.
  • Self-directed, resourceful, and a critical thinker with attention-to-detail and proactive problem-solving skills.
  • Ability to self-organize and plan activities with commitment towards results.
  • Ready to learn new contents both from others or self-learned.
  • Looking forward to self-improvement and suggesting improvements to processes or activities.

Preferred Qualifications :

  • 2 years of experience in Security Risk Management, Information Security, Security controls or Security / IT Audit.
  • Information Security Certification (e.g. CISSP, Comptia Sec, CISM, CRISC, etc).

J-18808-Ljbffr

Consigue la evaluación confidencial y gratuita de tu currículum.
o arrastra un archivo en formato PDF, DOC, DOCX, ODT o PAGES de hasta 5 MB.