Chief Information Security Officer

9240 - 9450 EUR/ mies.
C-Level / ManagerFull-time
#432305·Dodano 5 dni temu·1
Źródło: Shimi
Aplikuj teraz

Tech Stack / Keywords

SecurityCybersecurityArchitectureCloudMicrosoft AzureAWSGoogle Cloud

Firma i stanowisko

SHIMI Sp. z o.o. is hiring for a major European Institution under a Managed Services and Framework Contract environment.

Wymagania

Mandatory:

  • Master's degree or equivalent in Computer Science, Information Security, Cybersecurity, Engineering, or related discipline.
  • 10 to 20 years of professional experience in Information Security and Cybersecurity.
  • Proven experience in a CISO, Deputy CISO, Head of Security, or Senior Information Security Management role.
  • Strong knowledge of cybersecurity governance, risk management, and compliance.
  • Experience managing cybersecurity programs in large and complex organizations.
  • Excellent communication and stakeholder management skills.
  • Fluent English (written and spoken).
  • Citizenship of an EU Member State.

Preferred:

  • Experience working with European Institutions, EU Agencies, NATO, international organizations, or government bodies.
  • Experience in Managed Services and Framework Contract environments.
  • Knowledge of NIS2, DORA, GDPR, ISO 27001, and other cybersecurity frameworks.
  • Experience securing cloud environments such as Microsoft Azure, AWS, or Google Cloud.

Certifications:

  • CISSP (Certified Information Systems Security Professional)
  • CISM (Certified Information Security Manager)
  • CRISC (Certified in Risk and Information Systems Control)
  • ISO 27001 Lead Implementer
  • ISO 27001 Lead Auditor
  • CCSP (Certified Cloud Security Professional)
  • GIAC Certifications
  • TOGAF (considered an asset)

Required Skills:

  • Cybersecurity Governance
  • Information Security Management
  • Enterprise Risk Management
  • Security Architecture
  • Security Operations
  • Incident Response
  • Identity & Access Management (IAM)
  • Cloud Security
  • Compliance & Audit Management
  • Third-Party Risk Management
  • Business Continuity & Disaster Recovery
  • Leadership and Team Management
  • Executive Communication

Personal Competencies:

  • Strategic thinker with strong leadership capabilities.
  • Ability to influence senior executives and stakeholders.
  • Excellent decision-making and problem-solving skills.
  • Strong analytical mindset.
  • Ability to operate effectively in multicultural and international environments.
  • Results-oriented and resilient under pressure.

Obowiązki

Cybersecurity Strategy & Governance:

  • Define, maintain, and execute the organization's cybersecurity strategy.
  • Develop and enforce security policies, standards, and procedures.
  • Establish security governance frameworks aligned with business objectives.
  • Advise senior management on cybersecurity risks and strategic decisions.
  • Promote a security-first culture across the organization.

Risk Management:

  • Lead enterprise-wide cybersecurity risk assessments.
  • Identify, evaluate, and mitigate security threats and vulnerabilities.
  • Maintain and report on the organization's risk posture.
  • Ensure risk treatment plans are implemented and monitored.

Compliance & Regulatory Requirements:

  • Ensure compliance with applicable European regulations, standards, and security frameworks.
  • Oversee security audits, assessments, and compliance reviews.
  • Support internal and external audit activities.
  • Monitor regulatory developments impacting cybersecurity and data protection.

Security Operations & Incident Management:

  • Oversee security monitoring, threat detection, and incident response activities.
  • Lead the response to major cybersecurity incidents and crisis situations.
  • Ensure appropriate business continuity and disaster recovery capabilities.
  • Drive continuous improvement of security operations.

Security Architecture & Technology:

  • Provide strategic direction for secure architecture and infrastructure design.
  • Ensure the adoption of Security by Design and Privacy by Design principles.
  • Oversee cloud security, network security, endpoint protection, IAM, and data security initiatives.
  • Review and approve security requirements for new projects and services.

Stakeholder & Vendor Management:

  • Act as the primary cybersecurity advisor to executive leadership and stakeholders.
  • Collaborate with technology teams, service providers, and external partners.
  • Ensure suppliers comply with contractual cybersecurity obligations.
  • Participate in Framework Contract governance and security reviews.

Benefity

  • Rate: 450 EUR/MD
  • Long-term assignment with a leading European Institution.
  • Flexible work environment with occasional travel.
  • Opportunity to lead strategic cybersecurity initiatives.
  • International and multicultural environment.
  • Exposure to large-scale, mission-critical digital transformation programs.
  • Work location: Remote within the EU with occasional travel.

Inne informacje

  • Citizenship of an EU Member State required.
  • Remote work within the European Union only.
  • Occasional travel required for meetings and governance.
SHIMI sp. z o.o.

SHIMI sp. z o.o.

64 aktywne oferty

Zobacz wszystkie oferty
Aplikuj teraz