Cyber Security Specialist

Avvale

Milano

Ibrido

EUR 39.000 - 50.000

Tempo pieno

37 ore fa
Candidati tra i primi
Generatore di candidature

Una candidatura apposita per questa offerta — un curriculum e una lettera di presentazione personalizzati, perfettamente in linea con l'annuncio.

Supera i filtri ATS

Vantaggi offerti da questo lavoro

Meal vouchers
Wellbeing initiatives (Wellhub)
Growth opportunities

Descrizione del lavoro

Avvale is seeking a mid-level Cyber Security Specialist to join our Security team in Italy. You will oversee security controls, support GRC processes, and coordinate with external service providers to maintain regulatory compliance and robust defence.

The ideal candidate has 3–5 years of relevant experience, strong knowledge of standards like ISO 27001 and NIST, and excellent communication skills. The role requires working from our headquarters 2–3 days per week, with opportunities for growth

Competenze

  • 3–5 years of experience in similar roles such as Security Analyst, SecOps Specialist, or GRC Analyst.
  • Solid technical foundation in security operations and governance, risk and compliance.
  • Strong familiarity with GDPR, PCI-DSS, HIPAA (or equivalent), ISO 27001, and NIST.

Mansioni

  • Oversee and monitor key security controls (XDR/EDR, Email Security Gateway, MDM, DNS Protection, DLP) and manage Level 2 activities.
  • Support policy, standard, and procedure definitions to ensure regulatory compliance.
  • Coordinate with MSSPs and internal teams; manage escalated alerts and assist in Incident Response remediation tracking.
  • Contribute to Vulnerability Management by analyzing scans and prioritizing risks, following penetration tests or threat hunts.
  • Assist in GRC and Third-Party Risk Management, reviewing policies and conducting supplier assessments.
  • Support audits and collect evidence for compliance assessments and customer security reviews.
  • Promote cybersecurity awareness through training, phishing simulations, and tracking participation.

Conoscenze

Security experience
GRC knowledge
SOC operations
Vulnerability management
Incident management
ITSM
Communication
English fluency

Descrizione del lavoro

Born in 2004 as Techedge, we have almost 20 years of expertise that enabled us to become what we are today: Avvale!

This path led us to be able to count on over 4,000 employees, present in 13 countries around the world.

What We Do

We help public and private companies to re-design their business models through the development of innovative and sustainable solutions, which have a positive impact not only on our customers but also on the world we live in!

Through circular economy models, made possible thanks to technological innovation.

What you will find

In Avvale we value our talents and your path with us will be full of:

  • Training & development as you can participate to training on the job, certifications, foreign languages classes and you will have a yearly budget to buy training courses;
  • Gender equality & inclusion, the obtaining of Pdr 125 is a proof of Avvale commitment to an inclusive and fair work environment!
  • Compensation & Benefits: In line with our commitment to transparency and people development, the gross annual salary (RAL) for this position ranges between €39,000,00 and €50,000,00 commensurate with experience and skills. The position is covered by the 'CCNL Commercio e Terziario' (National Collective Labor Agreement for Commerce and Service Sector), alongside a benefits package that includes meal vouchers, wellbeing initiatives (including Wellhub), and growth opportunities.
Role and responsibilities

We are looking for a mid-level Cyber Security Specialist to join our Security team. Reporting directly to the Security Manager, this role will be pivotal in governing the company's defence infrastructure and overseeing compliance and data protection processes.

The ideal candidate has a solid technical foundation and a pragmatic approach to supporting Governance, Risk & Compliance (GRC) processes. They will act as the operational liaison between the company, the external Security Service Providers and internal IT stakeholders, balancing technical operations with document and regulatory management.

  • Oversee and monitor key corporate security controls (XDR/EDR, Email Security Gateway, MDM, DNS Protection, DLP) and manage Level 2 activities through ITSM/Ticketing systems.
  • Support the Security Manager in defining, implementing, and monitoring security policies, standards, and procedures, ensuring compliance with frameworks and regulations such as ISO 27001, NIST, and GDPR.
  • Coordinate operational activities with MSSPs and internal stakeholders, manage escalated alerts, and support Incident Response activities, including remediation tracking.
  • Support Vulnerability Management activities by analysing scan results, prioritizing risks, and monitoring patching and remediation activities following Penetration Tests or Threat Hunting exercises.
  • Contribute to GRC and Third-Party Risk Management activities, including reviewing Security Policies and SOPs, assessing vendors, and monitoring supply chain security posture.
  • Support internal/external audits and assist in collecting the required documentation for compliance assessments and customer security reviews.
  • Promote cybersecurity awareness across the organization through training initiatives, phishing simulation campaigns, and tracking employee and contractor participation.
  • Support the Security Manager in drafting, reviewing, and continuously updating Security Policies and SOPs in line with major regulatory frameworks.
  • Monitor the organization’s supply chain security posture through Cyber Threat Intelligence and Security Rating platforms, supporting Vendor Assessments through supplier questionnaire analysis and initial Gap Analysis activities.
  • Support the completion of customer compliance questionnaires and assist in collecting evidence and documentation for internal and external audits.
  • Contribute to promoting a cybersecurity-aware culture across the organization through training initiatives and awareness programs.
  • 3-5 years of experience in similar roles such as Security Analyst, SecOps Specialist, or GRC Analyst, with a solid technical background.
  • Practical experience with SOC operations, Incident Management processes, and the Vulnerability Management lifecycle.
  • Good architectural understanding of modern security defenses for Endpoints, Email, Networks, and DLP technologies.
  • Strong familiarity with major security and privacy standards/frameworks, including GDPR, PCI-DSS, HIPAA (or equivalent), ISO 27001, and NIST.
  • Knowledge of IT Service Management (ITSM) processes.
  • Excellent communication skills, with the ability to effectively interact with external vendors and internal IT teams without direct hierarchical authority.
  • Strong analytical mindset, organizational autonomy, and accuracy in documentation and process management.
  • Fluent knowledge of the English language

The role requires working from our headquarters 2-3 days per week.

Come with us

You will have the opportunity to work and get in touch with international players who will allow you to increase your know-how in view of future challenges!

We do not consider applications without CV.

Avvale promotes equal opportunity. We enhance diversity and are committed to creating an inclusive environment in compliance with applicable non-discrimination and data protection laws.

Ottieni la revisione del curriculum gratis e riservata.
o trascina qui il file.
Similar jobs

Offerte di lavoro simili che vale la pena confrontare

Cyber Security Specialist
Cyber Security Specialist

Avvale • Turbigo

Ibrido
EUR 40.000 - 70.000
Flexibility in remote working
Training & development budget
Commitment to gender equality & inclusion
Content & Digital Design Specialist
Content & Digital Design Specialist

Avvale • Varese

In loco
EUR 65.000 - 67.000
Annual variable salary
Company car
Meal vouchers
+2
Cyber Security Specialist
Cyber Security Specialist

Linkedin • Lazio

In loco
EUR 48.000 - 56.000
8 days remote per month
Health insurance through Fondo Est
Car rental at preferential rates
Practice Manager – Team Infrastructure
Practice Manager – Team Infrastructure

Avvale • Milano

Ibrido
EUR 65.000 - 67.000
Annual variable salary
Company car
Meal vouchers
+1
Cyber Security Specialist
Cyber Security Specialist

Volkswagen Group Italia S.P.A. • Venezia

Ibrido
EUR 48.000 - 56.000
Health insurance
Cyber Security Specialist
Cyber Security Specialist

Volkswagen Group Italia S.p.A. • Verona

Ibrido
EUR 48.000 - 56.000
Remote work up to 8 days/mo
Bonuses based on performance
Cafeteria and meal options
+1
IT Project Manager (Mobile & CLoud)
IT Project Manager (Mobile & CLoud)

Avvale • Milano

Ibrido
EUR 31.000 - 35.000
Meal vouchers
Wellbeing initiatives
Growth opportunities
It Project Manager (Mobile & Cloud)
It Project Manager (Mobile & Cloud)

Avvale • Lazio

Ibrido
EUR 31.000 - 35.000
Meal vouchers
Wellbeing initiatives (Wellhub)
Growth opportunities
+1
Remote Cyber Security Specialist - GRC & Threat Response
Remote Cyber Security Specialist - GRC & Threat Response

Avvale • Turbigo

Ibrido
EUR 40.000 - 70.000
Flexibility in remote working
Training & development budget
Commitment to gender equality & inclusion
Odoo Specialist
Odoo Specialist

Avvale • Milano

In loco
EUR 50.000 - 70.000
Remote work flexibility
Training & development opportunities
Inclusive work environment