Chief Information Security Officer
Tech Stack / Keywords
Firma i stanowisko
We are seeking an experienced Chief Information Security Officer (CISO) to lead and oversee the information security strategy for a major European Institution operating under a Managed Services and Framework Contract environment.
Wymagania
Mandatory:
- Master's degree or equivalent in Computer Science, Information Security, Cybersecurity, Engineering, or related discipline.
- 10 to 20 years of professional experience in Information Security and Cybersecurity.
- Proven experience in roles such as CISO, Deputy CISO, Head of Security, or Senior Information Security Management.
- Strong knowledge of cybersecurity governance, risk management, and compliance.
- Experience managing cybersecurity programs in large and complex organizations.
- Excellent communication and stakeholder management skills.
- Fluent English (written and spoken).
- Citizenship of an EU Member State.
Preferred:
- Experience with European Institutions, EU Agencies, NATO, international organizations, or government bodies.
- Experience in Managed Services and Framework Contract environments.
- Knowledge of NIS2, DORA, GDPR, ISO 27001, and other cybersecurity frameworks.
- Experience securing cloud environments such as Microsoft Azure, AWS, or Google Cloud.
Certifications (highly desirable):
- CISSP (Certified Information Systems Security Professional)
- CISM (Certified Information Security Manager)
- CRISC (Certified in Risk and Information Systems Control)
- ISO 27001 Lead Implementer and Lead Auditor
- CCSP (Certified Cloud Security Professional)
- GIAC Certifications
- TOGAF (considered an asset)
Required Skills:
- Cybersecurity Governance
- Information Security Management
- Enterprise Risk Management
- Security Architecture
- Security Operations
- Incident Response
- Identity & Access Management (IAM)
- Cloud Security
- Compliance & Audit Management
- Third-Party Risk Management
- Business Continuity & Disaster Recovery
- Leadership and Team Management
- Executive Communication
Personal Competencies:
- Strategic thinker with leadership capabilities.
- Ability to influence senior executives and stakeholders.
- Excellent decision-making and problem-solving skills.
- Strong analytical mindset.
- Ability to operate in multicultural and international environments.
- Results-oriented and resilient under pressure.
Obowiązki
Cybersecurity Strategy & Governance:
- Define, maintain, and execute the organization's cybersecurity strategy.
- Develop and enforce security policies, standards, and procedures.
- Establish security governance frameworks aligned with business objectives.
- Advise senior management on cybersecurity risks and strategic decisions.
- Promote a security-first culture.
Risk Management:
- Lead enterprise-wide cybersecurity risk assessments.
- Identify, evaluate, and mitigate security threats and vulnerabilities.
- Maintain and report on the organization's risk posture.
- Ensure risk treatment plans are implemented and monitored.
Compliance & Regulatory Requirements:
- Ensure compliance with applicable European regulations, standards, and security frameworks.
- Oversee security audits, assessments, and compliance reviews.
- Support internal and external audit activities.
- Monitor regulatory developments impacting cybersecurity and data protection.
Security Operations & Incident Management:
- Oversee security monitoring, threat detection, and incident response activities.
- Lead response to major cybersecurity incidents and crisis situations.
- Ensure business continuity and disaster recovery capabilities.
- Drive continuous improvement of security operations.
Security Architecture & Technology:
- Provide strategic direction for secure architecture and infrastructure design.
- Ensure adoption of Security by Design and Privacy by Design principles.
- Oversee cloud security, network security, endpoint protection, IAM, and data security initiatives.
- Review and approve security requirements for new projects and services.
Stakeholder & Vendor Management:
- Act as primary cybersecurity advisor to executive leadership and stakeholders.
- Collaborate with technology teams, service providers, and external partners.
- Ensure supplier compliance with contractual cybersecurity obligations.
- Participate in Framework Contract governance and security reviews.
Benefity
- Rate: 450 EUR/MD
- Long-term assignment with a leading European Institution.
- Flexible work environment with occasional travel.
- Opportunity to lead strategic cybersecurity initiatives.
- International and multicultural environment.
- Exposure to large-scale, mission-critical digital transformation programs.
- Remote work location within the EU with occasional travel.
Inne informacje
Informujemy, że administratorem danych jest Shimi Sp. z o.o. z siedzibą w Warszawie, (dalej jako "administrator"). Masz prawo do żądania dostępu do swoich danych osobowych, ich sprostowania, usunięcia lub ograniczenia przetwarzania, prawo do wniesienia sprzeciwu wobec przetwarzania, a także prawo do przenoszenia danych oraz wniesienia skargi do organu nadzorczego. Dane osobowe przetwarzane będą w celu realizacji procesu rekrutacji. Podanie danych w zakresie wynikającym z ustawy z dnia 26 czerwca 1974 r. Kodeks pracy jest obowiązkowe. W pozostałym zakresie podanie danych jest dobrowolne. Odmowa podania danych obowiązkowych może skutkować brakiem możliwości przeprowadzenia procesu rekrutacji. Administrator przetwarza dane obowiązkowe na podstawie ciążącego na nim obowiązku prawnego, zaś w zakresie danych dodatkowych podstawą przetwarzania jest zgoda. Dane osobowe będą przetwarzane do czasu zakończenia postępowania rekrutacyjnego i przez okres możliwości dochodzenia ewentualnych roszczeń, a w przypadku wyrażenia zgody na udział w przyszłych postępowaniach rekrutacyjnych - do czasu wycofania tej zgody. Zgoda na przetwarzanie danych osobowych może zostać wycofana w dowolnym momencie. Odbiorcą danych jest serwis Just Join IT oraz inne podmioty, którym powierzyliśmy przetwarzanie danych w związku z rekrutacją.
SHIMI sp. z o.o.
64 aktywne oferty