Do you want to make an impact and be part of a dynamic organization that is constantly pushing the limits of technology? Do you want to contribute to Risk & Business Assurance of Prodrive Technologies? Then you might be the new Prodriver to join our team.
About The Role
As Enterprise Security Officer, you support the development and continuous improvement of the company-wide security framework across cyber, physical, and people security domains. You act as a subject‑matter expert in security governance, translating external regulations and standards (e.g., ISO 27001, NIS2, ABRO/defense requirements) into practical policies, control frameworks, and implementation guidance for the organization. Working closely with Product Teams, Business Process Owners, IT Security, Facility/Physical Security, and HR, you help embed security controls into business processes and ensure a consistent and auditable approach across the organization. You are positioned within the Risk & Business Assurance function as part of the second line of responsibility. In this role, you focus on governance, frameworks, and oversight, while supporting and challenging the first line in the effective implementation of security controls.
Key Responsibilities
Enterprise security framework & governance
- Support the development and continuous improvement of the Enterprise Security Framework, covering Cyber Security, Physical Security, and People Security
- Develop and maintain security policies, standards, and control frameworks aligned with applicable regulations and business requirements
- Translate regulatory requirements (e.g., defense, critical infrastructure, customer‑specific) into structured and implementable control sets and templates
- Contribute to the integration of security within the broader Risk & Business Assurance and Management System landscape
Regulatory Compliance & Assurance
- Identify, interpret, and monitor applicable security regulations and standards (e.g., ISO 27001, NIS2, defense frameworks such as ABRO)
- Support organizational readiness for external audits, certifications, and customer security assessments
- Help define and maintain security assurance mechanisms, including internal audits, control testing, and compliance monitoring
- Prepare reporting on security posture, risks, and compliance status, and support communication to Management Team and governance bodies
Security in high‑sensitive programs
- Ensure security requirements for defense and high‑sensitivity projects are defined and implemented (e.g., project‑specific security plans)
- Translate enterprise security into project‑level controls and templates
- Interface with external authorities and customers on security compliance when required
Business Integration & Process Deployment
- Partner with Business Process Owners to embed security controls into end‑to‑end business processes (R&D, manufacturing, service, supply chain)
- Drive adoption and consistent implementation of security policies and controls across the organization
- Translate enterprise‑level security requirements into operational procedures and work instructions
- Ensure security‑by‑design principles are integrated into new initiatives, products, and projects
What We Offer
- A performance‑based salary that grows with your results
- 33 days of leave per year (including public holidays) to support a healthy work‑life balance
- Pension plan and travel allowance for on‑site working days
- Focus on personal development with a tailored growth plan
- Wide career advancement opportunities across various technical roles and projects
- A young, entrepreneurial, and innovative company culture
- Flexible working hours in a 24/7 environment, with free lunch or dinner on‑site
- iPhone, laptop, and other necessary tools to help you perform your work optimally
- Free sports facilities on campus to help you stay healthy and fit.
What You Bring
- Master’s or Bachelor’s degree in a relevant field such as: Information Security / Cyber Security, Security Management, Risk Management, or Business Administration
- 4+ years of experience in information security, enterprise security, GRC or risk management
- Good understanding of security frameworks such as ABDO/ABRO, CCMS, or equivalent, ISO27001
- Experience in industries such as high tech, semicon, defense/security critical infrastructure and/or regulated manufacturing environments is preferred
- Additional certifications are strongly preferred, such as ISO 27001 Lead Implementer / Lead Auditor, CISM, or equivalent security certification
- A security screening may be part of the application process.
About Prodrive Technologies
We are dedicated to creating meaningful technologies that make the world work. We want to contribute to innovations that tackle major challenges in society, such as improving the quality of medical imaging. Besides, our technologies contribute to reducing the global dependency on fossil fuels and minimizing human exposure to air pollution. In other words, we create meaningful technologies that make the world work.