Information Security & Compliance Consultant
Brak informacji o wynagrodzeniu
SeniorFull-time·Umowa zlecenia·B2B
#314335·Dodano około miesiąc temu·46
Źródło: nofluffjobs.com🚫Oferta wygasła. Ta oferta pracy nie jest już aktywna i rekrutacja została zakończona.
Tech Stack / Keywords
SecurityAuditsrisk managementISOAuditQuality assuranceNISTGXP
Firma i stanowisko
We operate in the IT sector. We support international companies from regulated industries including banking, finance, insurance, and pharmaceuticals. We provide comprehensive quality assurance and implement modern HR platforms for employee management.
Wymagania
- Experience conducting InfoSec, IT compliance, or quality audits
- Background in pharma/medtech/life science; GxP knowledge is a plus
- Strong understanding of ISO 27001 and risk frameworks (e.g., NIST)
- Skilled in reviewing SOC 2 reports, ISO certifications, and security test reports
- Able to plan and execute audits independently
- Excellent communication and documentation skills in English
Obowiązki
- Perform information security assessments of key suppliers (CROs, CMOs, XaaS, Managed Services, etc.)
- Check compliance with Sobi’s requirements and relevant standards (ISO 27001, SOC 2, GxP)
- Review security documentation (certificates, pen tests, audits)
- Engage with suppliers to clarify controls and remediation plans
- Document risks and recommended actions in the third‑party risk process
- Plan and conduct supplier audits (postal, remote, onsite) together with InfoSec, Compliance, and Quality
- Prepare agendas, checklists, and control tests
- Assess adherence to contractual and industry requirements
- Produce audit reports, risk ratings, and CAPAs; follow up on remediation
- Perform internal reviews of security controls, processes, and documentation
- Support ISO 27001 and GxP readiness reviews
- Report findings and recommend improvements
- Contribute to ISMS maintenance and updates
- Help update SOPs, templates, and control documentation
- Support continuous improvement of audit methods and tools
Oferta
- Benefits package including private medical care, sports card, and group insurance
- Free English lessons with a dedicated teacher
- Access to an extensive training library covering both soft and technical skills
- Sports activities outside of work
- Team-building events, competitions, and challenges
Opieka zdrowotna
Karta sportowa
Ubezpieczenie
Kursy językowe
Dofinansowanie szkoleń
Spotkania integracyjne
Inne informacje
Contract type: Contract of Mandate / B2B. Workplace: Remote. Workload: Full-time, April - December 2026.
eConsulting
23 aktywne oferty