30 jul
|
Drees u0026 Sommer España
|
España
30 jul
Drees u0026 Sommer España
España
The Information Security Coordinator for GRC is a seasoned professional with extensive expertise in Governance, Risk, and Compliance (GRC). They support yearly internal and external audit programmes, develop and maintain security governance frameworks, support the company's BCM framework, and ensure regulatory compliance.
¿Le gusta esta oportunidad? Asegúrese de inscribirse veloz, ya que se espera un gran volumen de solicitudes. Desplácese hacia abajo para leer la descripción completa del puesto.
Core Responsibilities Support the development and maintenance of cybersecurity governance, risk, and compliance frameworks in alignment with ISO/IEC 27001, 27701, 22301, TISAX, NIS2 and other relevant standards.
Conduct and drive internal security assessments and support external audits by preparing documentation, identifying non-conformities, and ensuring implementation of corrective actions.
Draft, maintain, and ensure the correct application of cybersecurity policies and procedures based on industry standards across business units.
Execute technical risk assessments and control effectiveness evaluations; support continuous improvement of risk treatment plans.
Assist in conducting and updating Business Impact Analyses (BIAs) to assess the impact of potential disruptions.
Help develop and maintain business continuity and disaster recovery plans, ensuring alignment with information security and risk management strategies.
Ensure adherence to data protection regulations (e.g., GDPR), IT security laws, and internal security guidelines.
Act as a cybersecurity expert in cross-functional projects, ensuring that new initiatives are aligned with cybersecurity requirements.
Maintain high-quality documentation for compliance purposes; support reporting to the cybersecurity steering committee or auditors.
Support the use of GRC tools, risk dashboards, and internal control platforms.
Qualifications Deep knowledge of international cybersecurity standards and frameworks (ISO/IEC 27001,
📌 GRC Information Security Coordinator (España)
🏢 Drees u0026 Sommer España
📍 España