Information Security

Il y a 5 heures

Arrondissement of BrusselsCapital, Brussels, Belgique Nviso Temps plein
ph3Information Security / Resilience (Senior) Manager (m/w/d) /h3 h3Who are we? /h3 pIt all starts with the mission: NVISO is here to protect European society from potentially devastating cyber attacks This means

we offer
cyber security services to private and governmental organizations to help them better prepare for, prevent, detect and respond to cyber security incidents. /p pAll of this is built on four fundamental values that define who we are: We are Proud, We Break Barriers, We Care and No BS /p h3What will you do? /h3 pYou have a strong interest in cyber security and believe the following to be applicable to you? /p pAs a bInformation Security Manager (m/w/d), located in Germany /b, you will lead our team of GRC or Incident Readiness consultants while actively contributing to client projects as well as contributing in pre-sales activities for strategic clients. Your role will be key in enhancing our clients’ cybersecurity posture by creating and driving security and resilience strategies and their programs throughout the company.

Key responsibilities
include, but are not limited to: /p ul liPerform technical account management duties for specific top-tier, strategic clients; /li liLeading and managing a team of GRC or Resilience consultants to deliver high-quality services to clients; /li liCollaborating closely with clients to understand their business objectives, their risks and their unique security requirements; /li liAssessing the security maturity or resilience maturity of clients (using of ISO, BSI or NIST standards) to identify gaps and areas for improvement; /li liDeveloping and implementing a fit-for-purpose security program (that aligns with industry standards) or help the customers to develop and implement resilience programs (BCM and DRP programs); /li liDriving the security program at clients, where you also act as the security champion, spreading the “gospel” on security; /li liConducting risk assessments, identifying potential vulnerabilities, and recommending risk mitigation strategies; /li liOverseeing and supporting with the implementation of the security program, including policies, procedures, and controls; /li liOr overseeing and supporting with the implementation of Business Continuity Management Systems and Disaster Recovery Programs; /li liProviding updates to management on the ‘state of security’ at their company; /li liHolding steering committees at the customer with relevant stakeholders to guide adapt the security program, where needed; /li liInvolve yourself actively in the sales process by creating and presenting Statements of Work, project plans, requirements definitions,… for projects running in your team. /li /ul h3Requirements /h3 ul libYou hold citizenship in one of the 32 NATO member states or the Austrian citizenship; /b /li liBachelor’s or Master’s degree in Business Administration, Information Security, or a related field; /li liProfessional certifications such as Certified Information Systems Auditor (CISA), Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), ISO27001 Implementer/Auditor or equivalent are strongly preferred; /li liProven experience in being a CISO and/or having successfully implemented ISO27k or BSI Grundschutz at clients. This covers, but not limited to: risk assessment, security roadmap creation, CISOaaS and policy development; /li liOr proven experience in being a resilience officer having successfully implemented a BCM or DRP program. /li liIn-depth knowledge of relevant industry standards and frameworks, such as ISO 27001, DORA, NIST, NIS-2, GDPR, etc.; /li liFamiliarity with risk management and assessment methodologies and their application to cybersecurity; /li liQuickly grasping the complexity and the business reasons for a company to perform security and adapting your communication style and the security program to make it fit for the client; /li liExcellent English and German written and verbal communication skills to effectively convey complex concepts to technical and non-technical stakeholders; /li liLeadership skills to manage a team and collaborate with clients and cross‑functional teams. /li /ul h3What do

we offer
/h3 pAt NVISO, we care. We are committed to offering you a highly competitive remuneration package including financial and non‑financial components: /p ul liWorking and learning from the best people in the European cyber security industry. We have multiple SANS Instructors working at NVISO, our staff has presented at popular hacking conferences (BlackHat, BruCON, OWASP, etc) and all of our technical staff can acquire deep technical security certifications (GSE, GXPN, GREM, GCFA, OSCP, etc); /li liGenerous training budget of 10.000 EUR + 10 man days for attending lectures rolling over 2 years; /li liBase salary range (depending on experience and skillset): 90.000 EUR p.a. – 130.000 EUR p.a.; /li liSupport for technical growth with Cloud trainings + certifica