Работа Taxonomist
14 нови обяви за работа
-
Job Description As a member of the Corporate Infrastructure and Security - Risk & Assessments team, the IT Security Engineer II is responsible for: Providing key input and assistance in the development and implementation of a global cybersecurity r...
-
Cloud Network & Security Engineer DSK Bank is one of the leading banks in Bulgaria, with a great IT team of more than 350 IT talents, experiencing professional growth and development every day. Now we are the biggest and fastest growing player on t...
-
About Akkodis: Akkodis is a global digital engineering consulting company that enables companies to advance in their digital transformation. Our 50,000 tech experts across 30 countries combine best-in-class technologies and cross industry knowledge ...
-
IT Security Strategic Development and Architecture Expert, Sofia DSK Bank is part of OTP Group – one of the leading banking groups in Central and Eastern Europe. Our amazing company is following an ambitious journey, which requires bright and mot...
-
About BULWORK: Bulwork, Bulgaria's first IT Recruitment agency, brings 25 years of excellence and industry expertise. The company has built a strong reputation for delivering high-quality services to both clients and candidates. We value each candid...
-
About Akkodis: Akkodis is a global digital engineering consulting company that enables companies to advance in their digital transformation. Our 50,000 tech experts across 30 countries combine best-in-class technologies and cross industry knowledge ...
-
HEAD OF IT SECURITY OPERATIONS About BULWORK: Bulwork is Bulgaria’s first recruitment agency specializing in IT and FinTech, backed by 25 years of market excellence. The company has earned a solid reputation for excellence in serving both clients...
-
Cloud Network & Security Engineer DSK Bank is one of the leading banks in Bulgaria, with a great IT team of more than 350 IT talents, experiencing professional growth and development every day. Now we are the biggest and fastest growing player on t...
-
3,790 лв - 4,100 лв / месец (нето) от работодател
UpSkill is a recruitment agency ready to go the extra mile to help candidates find the best possible job opportunity. Our team of experts is well-versed and experienced in consulting and providing long-term HR support. We believe that being friendly...
-
RecruityTalent is a Recruitment agency with focus of IT, supporting startups and enterprises in Bulgaria, EMEA and LATAM by connecting them with top talent. About the Role We are looking for an experienced Lead Security Engineer. What You’ll Do ...
-
We are looking for a proactive and curious individual to join us as a Junior Expert in IT Service and Security Operations. This entry-level position offers an excellent opportunity to build hands-on experience across system monitoring and security op...
-
We are seeking a capable and motivated IT Service and Security Operations Expert to join our cross-functional operations team. This position sits at the intersection of system reliability and first-line event handling, contributing to the effective o...
-
Company Description Devexperts has been working for nearly two decades consulting and developing for the financial industry. We solve complex technological challenges facing the most well-respected financial institutions worldwide. By becoming a pa...
-
We are looking for a proactive and curious individual to join us as a Junior Expert in IT Service and Security Operations. This entry-level position offers an excellent opportunity to build hands-on experience across system monitoring and security op...
Какво е това?
Това е изчисление на Yox за приблизителната работна заплата за тази позиция. Посочената стойност не е потвърдена от работодателя и може да се различава с реалната стойност на предлаганото възнаграждение.
Как се смята?
Изчислена Заплата е приблизителната стойност на възнаграждение за конкретната позиция на базата на данни от стотици хиляди обявени заплати по професия за последните 2 години. В Yox се предоставя и информация за заплатите от служители, която също е част от изчислението.
Защо тази информация е полезна?
Можеш да разбереш приблизителната заплата за тази позиция. Можеш и да филтрираш списъкът с обявите за работа по размер на работната заплата.
Пълно описание
- Providing key input and assistance in the development and implementation of a global cybersecurity risk management program
- Maintaining and executing the risk management policy throughout the entire risk lifecycle
- Executing various risk analysis processes within the team including intake and analysis of reported risks, risk measurement, risk response, and ensuring teams are properly managing plans to reduce risk
- Execute third party security assessments and analyze identified risks to help with strategic decisions around third party management
- Ensure consistency of security practice and standards across the organization
- Conduct Information Security assessments including and documenting controls, identifying potential gaps and or inconsistencies and making sound recommendations for improvement and/or mitigation
- Collaborate on the technical definitions and oversee implementation of security controls and requirements for systems, infrastructure and solutions
Candidates should have good research, writing, and presenting skills, desire to solve complex problems, and the drive to complete assignments on-time with minimal oversight. This position will be part of a team that will be responsible for driving visibility and have understanding of information security risk management to contribute and influence strategic decision making across the enterprise.
Key Responsibilities:
- Carry out information security risk assessments on technology solutions in line with the company risk management program
- Conduct third-party risk management activities including vendor/supplier assessments and risk analysis.
- Intake and analysis of identified cyber security issues and risks from a variety of sources including security assessments, compliance checks, automated vulnerability systems, and other internally or externally reported risks.
- Complete analyses and reports to develop a comprehensive view of risk across the company.
- Assist and track for accurate risk measurement and response activities, provide necessary information and analysis to help business leaders prioritize risks
- Review and track action plans developed by risk owners and ensure plans are completed appropriately.
- Perform ad-hoc risk analysis as assigned.
- Perform other duties as assigned.
Minimum Requirements/Qualifications:
- 3+ years’ experience in risk analysis, information risk management, , data privacy, information technology, or equivalent with exposure to cybersecurity and/or information security risk.
- Bachelor’s Degree in Risk Management, Information Assurance, Information Security, Cybersecurity, IT, Data Privacy or similar area or equivalent work experience.
- Experience with risk analysis.
- Ability to explain complex risk management topics to a broad audience
- General understanding of cybersecurity technologies and controls with the ability to bridge the gap between governance and technical concepts
- Excellent writing skills, with experience as a writer or technical editor is considered a plus
- Demonstrated ability to complete work with minimal direction and self-identify tasks
- Excellent written and verbal communication skills with experience presenting to senior leadership
- Strong interpersonal, organizational, and excellent documentation skills
- Excellent customer service skills
- Relevant certifications such as CRISC, CISSP or CISA are considered a plus
- Understanding of various risk management frameworks such as the NIST Risk Management Framework or Center for Internet Security Risk Assessment Methodology will be considered plus.
Non-Negotiable Hiring Criteria:
- Customer service mindset
- Strong attention to detail, organizational skills, time management
- Excellent verbal and written communication skills
- The ability to interact professionally with a diverse group: executives, managers, and subject matter experts.
- Ability to take direction and independently work through projects as required
What we offer:
- Learning and development programme, ensuring you reach your potential
- Extensive benefits package based around the health and well- being of our employees
- Competitive salary
- Flexible working culture with work- life balance and possibility for remote working
- Collaborative and friendly environment
- Global exposure and opportunity to work on international assignments
Our 4i Values: Integrity – Innovation – Intensity – Involvement If you resonate with our 4i values above, and ultimately wish to accelerate the delivery of safe and effective therapeutics for some of the world’s most urgent health needs, submit your application – we’d love to hear from you!
Средна заплата за сектора
5,140 лв / месец (изчислена от Yox)
Средна работна заплата за града изчислена от YOX
2,500 лв / месец
12,500 лв / месец
Мнения и оценки от служители
Инженер, сигурност на икт
Инженерите по сигурността на ИКТ предлагат и внедряват решения за контрол на достъпа до данни и програми и осигуряват защитата на мисията и бизнес процесите на организацията. Инженерите по сигурността на ИКТ са пазачите на информационния вход в дадена организация или на даден продукт, като отговарят за защитата и сигурността на свързаните системи. Те отговарят за мрежата и системите от гледна точка на сигурността и проектират, планират и осъществяват архитектурата за информационна сигурност на системата, включително еталонни модели, архитектури на сегментите и решенията и политики и процедури за сигурност. Те актуализират и осъвременяват системите за сигурност в отговор на свързани със сигурността инциденти. Инженерите по сигурността на ИКТ си сътрудничат с екипа по сигурността при идентифицирането, валидирането и налагането на изисквания и участват в подбора на цели, валидирането, синхронизирането и изпълнението на кибердействия. Те си сътрудничат с други проектанти, оператори и/или анализатори, за да предоставят анализ след събитието.
Необходими основни умения
- управление на съответствието по отношение на сигурността на ИТ
- извършване на анализ на риска
- информираност за най-новите решения за информационни системи
- предоставяне на консултации относно ИКТ
- извършване на анализ на данни
- отстраняване на проблеми
Необходими основни знания
- стратегия за информационна сигурност
- информационна архитектура
- стандарти за сигурност на ИКТ
- новопоявяващи се технологии
- вектори на атака
- мерки за противодействие на кибератаки
Финален преглед
Увери се, че информацията е точна и ако всичко е наред натисни „Изпрати“ и твоята кандидатура отива незабавно за преглед в .
При интерес от работодателя очаквайте връзка на посочените от вас контакти.