Chief Information Security Officer

440 - 450 EUR/ dzień.B2B
C-Level / ManagerInne·B2B
#432753·Dodano 5 dni temu·1
Źródło: justjoin.it
Aplikuj teraz

Tech Stack / Keywords

IAMCloud Computing

Firma i stanowisko

We are seeking an experienced Chief Information Security Officer (CISO) to lead and oversee the information security strategy for a major European Institution operating under a Managed Services and Framework Contract environment.

Wymagania

Mandatory:

  • Master's degree or equivalent in Computer Science, Information Security, Cybersecurity, Engineering, or related discipline.
  • 10 to 20 years of professional experience in Information Security and Cybersecurity.
  • Proven experience in roles such as CISO, Deputy CISO, Head of Security, or Senior Information Security Management.
  • Strong knowledge of cybersecurity governance, risk management, and compliance.
  • Experience managing cybersecurity programs in large and complex organizations.
  • Excellent communication and stakeholder management skills.
  • Fluent English (written and spoken).
  • Citizenship of an EU Member State.

Preferred:

  • Experience with European Institutions, EU Agencies, NATO, international organizations, or government bodies.
  • Experience in Managed Services and Framework Contract environments.
  • Knowledge of NIS2, DORA, GDPR, ISO 27001, and other cybersecurity frameworks.
  • Experience securing cloud environments such as Microsoft Azure, AWS, or Google Cloud.

Certifications (highly desirable):

  • CISSP (Certified Information Systems Security Professional)
  • CISM (Certified Information Security Manager)
  • CRISC (Certified in Risk and Information Systems Control)
  • ISO 27001 Lead Implementer and Lead Auditor
  • CCSP (Certified Cloud Security Professional)
  • GIAC Certifications
  • TOGAF (considered an asset)

Required Skills:

  • Cybersecurity Governance
  • Information Security Management
  • Enterprise Risk Management
  • Security Architecture
  • Security Operations
  • Incident Response
  • Identity & Access Management (IAM)
  • Cloud Security
  • Compliance & Audit Management
  • Third-Party Risk Management
  • Business Continuity & Disaster Recovery
  • Leadership and Team Management
  • Executive Communication

Personal Competencies:

  • Strategic thinker with leadership capabilities.
  • Ability to influence senior executives and stakeholders.
  • Excellent decision-making and problem-solving skills.
  • Strong analytical mindset.
  • Ability to operate in multicultural and international environments.
  • Results-oriented and resilient under pressure.

Obowiązki

Cybersecurity Strategy & Governance:

  • Define, maintain, and execute the organization's cybersecurity strategy.
  • Develop and enforce security policies, standards, and procedures.
  • Establish security governance frameworks aligned with business objectives.
  • Advise senior management on cybersecurity risks and strategic decisions.
  • Promote a security-first culture.

Risk Management:

  • Lead enterprise-wide cybersecurity risk assessments.
  • Identify, evaluate, and mitigate security threats and vulnerabilities.
  • Maintain and report on the organization's risk posture.
  • Ensure risk treatment plans are implemented and monitored.

Compliance & Regulatory Requirements:

  • Ensure compliance with applicable European regulations, standards, and security frameworks.
  • Oversee security audits, assessments, and compliance reviews.
  • Support internal and external audit activities.
  • Monitor regulatory developments impacting cybersecurity and data protection.

Security Operations & Incident Management:

  • Oversee security monitoring, threat detection, and incident response activities.
  • Lead response to major cybersecurity incidents and crisis situations.
  • Ensure business continuity and disaster recovery capabilities.
  • Drive continuous improvement of security operations.

Security Architecture & Technology:

  • Provide strategic direction for secure architecture and infrastructure design.
  • Ensure adoption of Security by Design and Privacy by Design principles.
  • Oversee cloud security, network security, endpoint protection, IAM, and data security initiatives.
  • Review and approve security requirements for new projects and services.

Stakeholder & Vendor Management:

  • Act as primary cybersecurity advisor to executive leadership and stakeholders.
  • Collaborate with technology teams, service providers, and external partners.
  • Ensure supplier compliance with contractual cybersecurity obligations.
  • Participate in Framework Contract governance and security reviews.

Benefity

  • Rate: 450 EUR/MD
  • Long-term assignment with a leading European Institution.
  • Flexible work environment with occasional travel.
  • Opportunity to lead strategic cybersecurity initiatives.
  • International and multicultural environment.
  • Exposure to large-scale, mission-critical digital transformation programs.
  • Remote work location within the EU with occasional travel.
Elastyczne godziny

Inne informacje

Informujemy, że administratorem danych jest Shimi Sp. z o.o. z siedzibą w Warszawie, (dalej jako "administrator"). Masz prawo do żądania dostępu do swoich danych osobowych, ich sprostowania, usunięcia lub ograniczenia przetwarzania, prawo do wniesienia sprzeciwu wobec przetwarzania, a także prawo do przenoszenia danych oraz wniesienia skargi do organu nadzorczego. Dane osobowe przetwarzane będą w celu realizacji procesu rekrutacji. Podanie danych w zakresie wynikającym z ustawy z dnia 26 czerwca 1974 r. Kodeks pracy jest obowiązkowe. W pozostałym zakresie podanie danych jest dobrowolne. Odmowa podania danych obowiązkowych może skutkować brakiem możliwości przeprowadzenia procesu rekrutacji. Administrator przetwarza dane obowiązkowe na podstawie ciążącego na nim obowiązku prawnego, zaś w zakresie danych dodatkowych podstawą przetwarzania jest zgoda. Dane osobowe będą przetwarzane do czasu zakończenia postępowania rekrutacyjnego i przez okres możliwości dochodzenia ewentualnych roszczeń, a w przypadku wyrażenia zgody na udział w przyszłych postępowaniach rekrutacyjnych - do czasu wycofania tej zgody. Zgoda na przetwarzanie danych osobowych może zostać wycofana w dowolnym momencie. Odbiorcą danych jest serwis Just Join IT oraz inne podmioty, którym powierzyliśmy przetwarzanie danych w związku z rekrutacją.

SHIMI sp. z o.o.

SHIMI sp. z o.o.

64 aktywne oferty

Zobacz wszystkie oferty
Aplikuj teraz