Chief Information Security Officer
9240 - 9450 EUR/ mies.
C-Level / ManagerFull-time
#432305·Dodano 5 dni temu·1
Źródło: ShimiTech Stack / Keywords
SecurityCybersecurityArchitectureCloudMicrosoft AzureAWSGoogle Cloud
Firma i stanowisko
SHIMI Sp. z o.o. is hiring for a major European Institution under a Managed Services and Framework Contract environment.
Wymagania
Mandatory:
- Master's degree or equivalent in Computer Science, Information Security, Cybersecurity, Engineering, or related discipline.
- 10 to 20 years of professional experience in Information Security and Cybersecurity.
- Proven experience in a CISO, Deputy CISO, Head of Security, or Senior Information Security Management role.
- Strong knowledge of cybersecurity governance, risk management, and compliance.
- Experience managing cybersecurity programs in large and complex organizations.
- Excellent communication and stakeholder management skills.
- Fluent English (written and spoken).
- Citizenship of an EU Member State.
Preferred:
- Experience working with European Institutions, EU Agencies, NATO, international organizations, or government bodies.
- Experience in Managed Services and Framework Contract environments.
- Knowledge of NIS2, DORA, GDPR, ISO 27001, and other cybersecurity frameworks.
- Experience securing cloud environments such as Microsoft Azure, AWS, or Google Cloud.
Certifications:
- CISSP (Certified Information Systems Security Professional)
- CISM (Certified Information Security Manager)
- CRISC (Certified in Risk and Information Systems Control)
- ISO 27001 Lead Implementer
- ISO 27001 Lead Auditor
- CCSP (Certified Cloud Security Professional)
- GIAC Certifications
- TOGAF (considered an asset)
Required Skills:
- Cybersecurity Governance
- Information Security Management
- Enterprise Risk Management
- Security Architecture
- Security Operations
- Incident Response
- Identity & Access Management (IAM)
- Cloud Security
- Compliance & Audit Management
- Third-Party Risk Management
- Business Continuity & Disaster Recovery
- Leadership and Team Management
- Executive Communication
Personal Competencies:
- Strategic thinker with strong leadership capabilities.
- Ability to influence senior executives and stakeholders.
- Excellent decision-making and problem-solving skills.
- Strong analytical mindset.
- Ability to operate effectively in multicultural and international environments.
- Results-oriented and resilient under pressure.
Obowiązki
Cybersecurity Strategy & Governance:
- Define, maintain, and execute the organization's cybersecurity strategy.
- Develop and enforce security policies, standards, and procedures.
- Establish security governance frameworks aligned with business objectives.
- Advise senior management on cybersecurity risks and strategic decisions.
- Promote a security-first culture across the organization.
Risk Management:
- Lead enterprise-wide cybersecurity risk assessments.
- Identify, evaluate, and mitigate security threats and vulnerabilities.
- Maintain and report on the organization's risk posture.
- Ensure risk treatment plans are implemented and monitored.
Compliance & Regulatory Requirements:
- Ensure compliance with applicable European regulations, standards, and security frameworks.
- Oversee security audits, assessments, and compliance reviews.
- Support internal and external audit activities.
- Monitor regulatory developments impacting cybersecurity and data protection.
Security Operations & Incident Management:
- Oversee security monitoring, threat detection, and incident response activities.
- Lead the response to major cybersecurity incidents and crisis situations.
- Ensure appropriate business continuity and disaster recovery capabilities.
- Drive continuous improvement of security operations.
Security Architecture & Technology:
- Provide strategic direction for secure architecture and infrastructure design.
- Ensure the adoption of Security by Design and Privacy by Design principles.
- Oversee cloud security, network security, endpoint protection, IAM, and data security initiatives.
- Review and approve security requirements for new projects and services.
Stakeholder & Vendor Management:
- Act as the primary cybersecurity advisor to executive leadership and stakeholders.
- Collaborate with technology teams, service providers, and external partners.
- Ensure suppliers comply with contractual cybersecurity obligations.
- Participate in Framework Contract governance and security reviews.
Benefity
- Rate: 450 EUR/MD
- Long-term assignment with a leading European Institution.
- Flexible work environment with occasional travel.
- Opportunity to lead strategic cybersecurity initiatives.
- International and multicultural environment.
- Exposure to large-scale, mission-critical digital transformation programs.
- Work location: Remote within the EU with occasional travel.
Inne informacje
- Citizenship of an EU Member State required.
- Remote work within the European Union only.
- Occasional travel required for meetings and governance.
SHIMI sp. z o.o.
64 aktywne oferty