14 sep
|
Eurofins
|
Barcelona
14 sep
Eurofins
Barcelona
Overview
In this role you identify, assess and mitigate IT and cybersecurity risks across Eurofins’ European operations. You will conduct risk assessments for laboratories, regional infrastructure, and central IT, collaborating with IT, security and business teams. You’ll contribute to security and resilience initiatives, including phishing simulations and resilience exercises. Frequent travel across Europe is required as you shape risk-based improvements and report findings to leadership.
Responsabilidades
- Plan and perform IT and cybersecurity risk assessments across laboratories, regional infrastructure, and central IT services
- Evaluate technical and organizational controls in areas such as network security, IAM, endpoint security, vulnerability management, cloud, logging/monitoring, backup and IT resilience
- Identify weaknesses and assess potential business impact
- Challenge existing security implementations when needed
- Translate technical findings into clear business risks and pragmatic recommendations
- Produce high-quality reports and present results to technical and non-technical stakeholders
- Follow up on remediation actions and verify risk reduction
- Improve IT risk assessment methodologies
- Maintain strong relationships with IT, security and business stakeholders
Requisitos principales
- 3–7 years of relevant experience in cybersecurity, information security, IT risk, IT audit or related field
- Experience performing IT risk assessments, security assessments or IT audits
- Strong understanding of risk management and cybersecurity principles
- Broad technical understanding of networking, AD/Entra ID, IAM/MFA, endpoint security, vulnerability management, Windows/Linux, cloud security, SIEM, backup and disaster recovery
- Ability to understand technical architectures and discuss risks credibly with engineers
- Strong analytical skills to distinguish significant risks
- Excellent written and verbal English communication for technical and non-technical audiences
- Strong stakeholder management and negotiation skills
- Willingness to travel frequently across Europe
- Knowledge of NIS2, EU data protection and common cybersecurity frameworks is a plus
- Education: university degree in Computer Science, Cybersecurity, Information Systems, Engineering or equivalent; certifications such as CISSP, CISM, CISA, CRISC, ISO 27001 are advantageous
- independent
- technically curious
- pragmatic
- networking
- firewalls
- Active Directory / Entra ID
📌 Senior IT Risk Officer (Barcelona)
🏢 Eurofins
📍 Barcelona