Information Security Officer

Qualco

Town of Greece (NY)

Hybrid

USD 120,000 - 170,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Private health insurance
Flexible working model
Onsite gym
Career development tools
Annual bonus programs
Wellbeing programs

Job summary

Quento Technologies S.A., the ICT arm of the Qualco Group, seeks an Information Security Officer to lead the ISMS, align with ISO 27001 and NIS2, and drive governance across the enterprise.

You will implement technical controls, conduct risk assessments, manage incident response, and oversee data protection and GDPR compliance. Collaborating with IT and business stakeholders, you will promote security by design and deliver awareness programs to reduce risk and boost cyber resilience.

Qualifications

  • University degree in Information Security, Computer Science, Engineering, or a related field; Master’s preferred.
  • At least 5 years of information security experience (GRC and technical controls).
  • Experience in firewall administration and security hardening.
  • Experience with Microsoft 365 Security & Compliance Center (Purview, Priva, Defender).
  • Experience with Azure security technologies (Defender for Cloud, Azure Sentinel, RBAC).
  • Knowledge of ISO/IEC 27001, NIST CSF, GDPR, ISO/IEC 27701.
  • Familiarity with SIEM, EDR, DLP, IAM concepts.
  • Strong communication skills; capable of translating risk to business impact.
  • English and Greek proficiency.

Responsibilities

  • Maintain and improve ISMS aligned to ISO 27001 and NIS2.
  • Draft and update security policies and procedures.
  • Oversee implementation of security controls (firewalls, M365, Azure).
  • Conduct risk assessments and define mitigations.
  • Participate in incident response and post-mortems.
  • Support SIEM, IAM, DLP, and security operations.
  • Collaborate on data protection and GDPR compliance.
  • Lead security awareness and training sessions.
  • Monitor security metrics and drive cyber resilience.

Skills

GRC expertise
Policy drafting
Security risk assessment
Firewall administration
Microsoft 365 Security Suite
Azure security
ISO/IEC 27001 knowledge
SIEM/EDR/DLP/IAM
Communication skills
Security awareness training

Education

Master's degree in Information Security
Bachelor's degree in Information Security / CS / Engineering
ISO 27001 Lead Auditor / Lead Implementer
Microsoft Certified: Security, Compliance, and Identity Fundamentals
Microsoft Certified: Cybersecurity Architect Expert
CISA
CISM

Tools

Purview
Priva
Defender for Endpoint/Identity
Azure Defender
Azure Sentinel
RBAC
SIEM

Job description

At Quento Technologies S.A., the ICT arm of the Qualco Group, we deliver comprehensive and innovative solutions across AI, Digital Engineering, Cloud, and Cybersecurity, helping businesses accelerate digital transformation. With a presence in Greece, Luxembourg, and Belgium, and backed by the expertise of the Qualco Group, we combine deep technical knowledge with strategic partnerships to support business growth.

A Day in the Life of an Information Security Officer
  • Maintain, assess, and continuously improve the Information Security Management System (ISMS) in alignment with ISO 27001, NIS2, and other regulatory/compliance requirements;
  • Draft, review, and update security policies, standards, procedures, and guidelines to support governance and operational consistency;
  • Oversee and support the implementation of technical security controls, including firewalls, Microsoft 365 security suite (Purview, Priva, Defender), and Azure Security Center;
  • Coordinate and conduct information security risk assessments, define mitigation strategies, and monitor the execution of corrective actions across business and technical areas;
  • Actively participate in incident response processes, including triage, investigation, remediation coordination, and post-mortem reporting;
  • Contribute to the implementation and optimization of security operations including SIEM, identity and access management (IAM), and data loss prevention (DLP) mechanisms;
  • Collaborate with IT and business stakeholders to ensure compliance with data protection and privacy regulations, including GDPR;
  • Conduct or validate Business Impact Analyses (BIA) to define recovery priorities and dependencies;
  • Support third‑party risk management processes, including vendor assessments and contractual security reviews;
  • Promote a security‑by‑design approach in projects, applications, and systems development lifecycles;
  • Deliver targeted security awareness and training sessions to business and IT users;
  • Monitor and report on key security metrics, supporting the continuous improvement of the organization's cyber resilience;
  • Keep abreast of emerging threats, vulnerabilities, and evolving regulatory frameworks, recommending appropriate adjustments to policies and controls;
  • Ensuring that all activities and duties are carried out in full compliance with regulatory requirements and supporting the continued implementation of the Group Anti‑Bribery and Corruption Policy.
Requirements
  • University degree in Information Security, Computer Science, Engineering, or a related field. A Master's degree in Information Security is highly desirable;
  • At least 5 years of experience in information security, including both GRC and technical security control implementation;
  • Solid experience in Firewall administration and security hardening;
  • Solid experience in Microsoft 365 Security & Compliance Center, including Purview, Priva, and Defender for Endpoint/Identity;
  • Solid experience in Azure security technologies, such as Microsoft Defender for Cloud, Azure Sentinel, and role‑based access control (RBAC);
  • Proven knowledge of ISO/IEC 27001, NIST CSF, and data privacy standards (e.g., GDPR, ISO/IEC 27701);
  • Familiarity with SIEM, EDR, DLP, and IAM tools and concepts;
  • Strong communication skills, with the ability to translate technical risks into business impact;
  • Experience in conducting security awareness campaigns and user training;
  • Excellent command of Greek and English, both written and spoken.
Additional Qualification, Knowledge and Skills
  • Must have at least one of the following certifications:
    • ISO 27001 Lead Auditor / Lead Implementer;
    • Microsoft Certified: Security, Compliance, and Identity Fundamentals;
    • Microsoft Certified: Cybersecurity Architect Expert;
    • Certified Information Systems Auditor (CISA);
    • Certified Information Security Manager (CISM).
Nice to Have
  • Microsoft Certified: Azure Security Engineer Associate;
  • Microsoft Certified: Information Protection Administrator Associate;
  • Certified Information Systems Security Professional (CISSP);
  • Certified Data Privacy Solutions Engineer (CDPSE);
  • CompTIA Security+ or CySA+
Benefits
Your Life @ Qualco Group

As a #Qmember, you will live out every day in a truly human‑centered culture, based on mutual respect, trust, and cooperation. Your performance and commitment to our shared goals will be recognized, and there will be great opportunities to ensure your career growth. Find out more about #LifeatQualco qualco.group/life_at_qualco_group

Join the #Qteam and enjoy
  • Competitive compensation, ticket restaurant card, and annual bonus programs
  • Cutting‑edge IT equipment, mobile, and data plan
  • Modern facilities, free coffee and beverages, and indoor parking
  • Private health insurance, onsite occupational doctor, and workplace counselor
  • Flexible working model
  • Onsite gym, wellness facilities, and ping pong room
  • Career and talent development tools
  • Mentoring, coaching, personalized annual learning and development plan
  • Employee referral bonus, regular wellbeing, ESG, and volunteering activities

Your race, gender identity and expression, age ethnicity or disability make no difference in Qualco Group. We want to attract, develop, promote, and retain the best people based only on their ability and behavior.

Disclaimer: Qualco Group collects and processes personal data in accordance with the EU General Data Protection Regulation (GDPR). We are bound to use the information provided within your job application for recruitment purposes only and not to share these with any third parties. For more details on the processing of your personal data during the Recruitment procedure, please be informed in the Recruitment Notice, before the submission of your application.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior DevOps Engineer (Azure)
Senior DevOps Engineer (Azure)

Qualco Group • Kentucky

Hybrid
USD 110,000 - 150,000
Competitive compensation
Annual bonus programs
Modern facilities
+5
Compliance Manager
Compliance Manager

Qualco • Town of Greece (NY)

On-site
USD 110,000 - 170,000
Competitive compensation
Ticket restaurant card
Annual bonus programs
+4
Forward Deployed Engineer
Forward Deployed Engineer

Qualco Group • Kentucky

On-site
USD 150,000 - 210,000
Annual bonus
Private health insurance
Hybrid/remote benefits
+1
CyberSecurity L&M Service Specialist
CyberSecurity L&M Service Specialist

Qualco Group • Warsaw (IN)

On-site
USD 49,000 - 70,000
Client Engagement Lead - Energy & Enterprise Sector
Client Engagement Lead - Energy & Enterprise Sector

Qualco Group • Kentucky

On-site
USD 90,000 - 150,000
Competitive compensation
Annual bonus programs
Modern facilities
+5
Data Center Technician
Data Center Technician

Qualco Group • Warsaw (IN)

On-site
USD 16,000 - 24,000
Senior Information Security Leader
Senior Information Security Leader

Qualco • Town of Greece (NY)

Hybrid
USD 120,000 - 170,000
Private health insurance
Flexible working model
Onsite gym
+3
Chief Information Security Officer
Chief Information Security Officer

NVISO • Belgique (MO)

On-site
USD 120,000 - 160,000
Flexible working hours
32 days of holidays
Personal coaching
+1
Engineering Manager, Information Security
Engineering Manager, Information Security

Qualia • Austin (TX)

Hybrid
USD 180,000 - 230,000
Health plans
401k
Commuter benefits
+6
Senior GRC Analyst at Quantexa New York, NY
Senior GRC Analyst at Quantexa New York, NY

Quantexa • New York (NY)

On-site
USD 100,000 - 180,000
Competitive salary
Company bonus
401(k) match up to 5%
+2