15 sep
|
Eurofins
|
Barcelona
15 sep
Eurofins
Barcelona
Overview In this role you identify, assess and mitigate IT and cybersecurity risks across Eurofins' European operations. You will conduct risk assessments for laboratories, regional infrastructure, and central IT, collaborating with IT, security and business teams. You'll contribute to security and resilience initiatives, including phishing simulations and resilience exercises. Frequent travel across Europe is required as you shape risk-based improvements and report findings to leadership.
Responsabilidades Plan and perform IT and cybersecurity risk assessments across laboratories, regional infrastructure, and central IT services
Evaluate technical and organizational controls in areas such as network security, IAM, endpoint security, vulnerability management, cloud, logging/monitoring, backup and IT resilience
Identify weaknesses and assess potential business impact
Challenge existing security implementations when needed
Translate technical findings into clear business risks and pragmatic recommendations
Produce high-quality reports and present results to technical and non-technical stakeholders
Follow up on remediation actions and verify risk reduction
Improve IT risk assessment methodologies
Maintain strong relationships with IT, security and business stakeholders
Requisitos principales 3–7 years of relevant experience in cybersecurity, information security, IT risk, IT audit or related field
Experience performing IT risk assessments, security assessments or IT audits
Strong understanding of risk management and cybersecurity principles
Broad technical understanding of networking, AD/Entra ID, IAM/MFA, endpoint security, vulnerability management, Windows/Linux, cloud security, SIEM, backup and disaster recovery
Ability to understand technical architectures and discuss risks credibly with engineers
Strong analytical skills to distinguish significant risks
Excellent written and verbal English communication for technical and non-technical audiences
Strong stakeholder management and negotiation skills
Willingness to travel frequently across Europe
Knowledge of NIS2, EU data protection and common cybersecurity frameworks is a plus
Education: university degree in Computer Science, Cybersecurity, Information Systems, Engineering or equivalent; certifications such as CISSP, CISM, CISA, CRISC, ISO 27001 are advantageous independent technically curious pragmatic networking firewalls
Active Directory / Entra ID
📌 Senior IT Risk Officer (Barcelona)
🏢 Eurofins
📍 Barcelona