Information Security and Compliance Officer
hace 2 semanas
**Company Description**
We are in Business for People, empowering people in service organizations with innovative Enterprise and
Business software solutions. We’ve innovated and taken a new approach to delivering ERP that works for
people. Self-driving, adaptive and intuitive software that is changing the way people work. Our solutions
empower people and deliver a better people experience so people can spend time on meaningful high value
work they live for.
Read more on our website about how we transform work and how people feel about it, so our customers
and their people can thrive.
The purpose of the Information Security and Compliance Officer is to maintain effective risk management through the Information Security Management System and ensure ongoing certification by maintaining information security policies, conducting internal audits, providing training and reviewing information security arrangements
The **Information Security and Compliance Officer** will work with the CISO and other Team members in expanding the existing ISMS and Quality Framework. The role holder will participate in the management of and ensure all actions are completed to maintain certification to ISO 27001 / ISO2017 / SOC1 / SOC2 / C5 and also ISO9001. Role holder will liaise closely with SMEs who are globally geographically spread and participate in the monthly ISMS committee meetings.
**Responsibilities**:
- Liaison with related functions (particularly IT, Cloud Operations, R&D, Product Development) plus senior and middle managers throughout the organization as necessary, on information security matters such as secure processes, emerging security risks and controls.
- Lead on Penetration Testing oversight and technical reviews of various technologies and solutions across Unit4.
- Participate in the implementation, operation, support and maintenance of the Information Security Management System based on the ISO/IEC 27000 series standards, including maintaining our certifications against ISO/IEC 27001, 27017, SOC1 and SOC2 as well as expansion as needed.
- Participate in the preparation and the implementation of necessary information security policies, standards, procedures and guidelines, in conjunction with the Security Committee to get appropriate approvals and feedback.
- Support the operation of related compliance monitoring and improvement activities to ensure compliance with both internal security policies etc. and working with the Legal teams to ensure that applicable laws and regulations are met.
- Support departments and help manage projects for implementation of information security management system.
- Support information security awareness, training and educational activities.
- support information security risk assessments and implement appropriate controls.
**Desirable Experience**
- Working knowledge of the Information Security elements of EU DORA, EBA, NIS2, C5 and other relevant regulations to a global SaaS company.
- Experience of organizing and carrying out Internal Information Security Audits with the primary aim of identifying Information Security Risks.
- Maintenance, support and development of an ISMS which is compliant with ISO 27001 / ISO2017 / SOC1 / SOC2 / C5.
- Experienced in completing security risk assessments and tracking remediation efforts.
- Broad technical understanding of Information Technology and SDLC with sufficient knowledge to be able to audit processes and procedures and work with technical personnel.
- Understanding and experience managing / overseeing the Penetration Testing process with technical stakeholders and Penetration Testing companies.
- Good understanding of generic end to end business processes (ideally for a SaaS company).
- Experience of working in a fast paced international company.
- Fantastic English speaking communication skills: ability to articulate & simplify security concepts.
- Good awareness of handling cultural differences when working with international colleagues.
- Must be able to work autonomously to ensure that role requirements are met.
- Experience of ISO9001 Quality standard is also desirable.
**Qualifications** Mandatory**
- 5+ years of professional experience in IT or audit related roles.
**Desirable**
- 2+ years demonstrable experience of a certified ISMS.
- CISSP / CISA / CISM / CRISC etc. certifications are valued - but not essential.
**Additional Information**
Join Unit4 and be part of one of the most exciting journeys in the cloud ERP software space. We’re a fast-paced, high-growth, people-centric company, delivering enterprise software for a great people experience, and offering our own people a host of benefits and development opportunities. Grow with us.
**At Unit4, we offer**:
- a culture built on trust - giving you the freedom and autonomy to be successful,
- balance - with our uncapped time off policy, remote working opportunities and Global Wellbeing Days
when the whole company can switch off and prioritize well-being,
- talented
-
Security Officer
hace 2 semanas
Granada, España NRF A tiempo completoStep into a pivotal role at NRF as Security Officer, where you'll lead the charge in defending our digital frontier. This dynamic position fuses strategic vision with hands-on action to shape a secure, resilient IT landscape. **NRF IS A SPORTS AND DIGITAL COMPANY.**: We are a dynamic sports company that organizes exciting challenges throughout the year,...
-
Technical and Security Systems
hace 2 semanas
Granada, España Kyndryl A tiempo completoWho We Are At Kyndryl, we design, build, manage and modernize the mission-critical technology systems that the world depends on every day. So why work at Kyndryl? We are always moving forward – always pushing ourselves to go further in our efforts to build a more equitable, inclusive world for our employees, our customers and our communities. The Role Role...
-
Security Risk Management, Senior Associate
hace 2 semanas
Granada, España Alight A tiempo completo#LI-Remote SAP Security specialist is responsible for designing and creating SAP Security authorizations and roles for different projects especially for non-consenting clients with GDPR compliance restrictions. - Provide expertise and guidance on SAP Roles, configuration and perform process review. Provide support for core modules in SAP; ECC6, BI/BW, SAP...
-
Technical and Security Systems
hace 2 semanas
Granada, España Kyndryl A tiempo completo**Who We Are** At Kyndryl, we design, build, manage and modernize the mission-critical technology systems that the world depends on every day. So why work at Kyndryl? We are always moving forward - always pushing ourselves to go further in our efforts to build a more equitable, inclusive world for our employees, our customers and our communities. **The...
-
HR Officer
hace 1 semana
Granada, Granada, España BOROLEO A tiempo completoLocation:Granada, Spain (Hybrid)Contract:Temporary (Maternity Cover) with astrong possibility of extensionHours:Full-timeAre you an ambitious HR professional looking to launch your career at a top-tier international company?We are looking for a driven and knowledgeableHR Officerto join our dynamic team inGranada. Initially, this position is to cover a...
-
HR Officer
hace 1 semana
Granada, España BOROLEO A tiempo completoLocation:Granada, Spain (Hybrid)Contract:Temporary (Maternity Cover) with astrong possibility of extensionHours:Full-time Are you an ambitious HR professional looking to launch your career at a top-tier international company?We are looking for a driven and knowledgeableHR Officerto join our dynamic team inGranada. Initially, this position is to cover a...
-
Chief Financial Officer
hace 2 semanas
Granada, España JR Spain A tiempo completoA leading insurance company is looking for a Chief Financial Officer (CFO) ready to guide the financial future and help shape our next stage of growth. As a key member of the leadership team, you will report directly to our Co-CEOs and will be instrumental in ensuring long-term sustainability and scalability, all while staying true to our mission. This is a...
-
Chief Financial Officer
hace 2 semanas
Granada, España JR Spain A tiempo completoA leading insurance company is looking for a Chief Financial Officer (CFO) ready to guide the financial future and help shape our next stage of growth. As a key member of the leadership team, you will report directly to our Co-CEOs and will be instrumental in ensuring long-term sustainability and scalability, all while staying true to our mission. This is a...
-
Security Risk Management, Associate
hace 3 días
Granada, España Alight A tiempo completo**Our story** At Alight, we believe a company’s success starts with its people. At our core, we Champion People, help our colleagues Grow with Purpose and true to our name we encourage colleagues to “Be Alight.” **Our Values**: **Champion People **- be empathetic and help create a place where everyone belongs. **Grow with purpose - **Be inspired by...
-
AWS/Security Networking Engineer
hace 1 semana
Granada, España AgileEngine A tiempo completoJoin us and receive a $2,500 signing bonus AgileEngine is an Inc. 5000 company that creates award-winning software for Fortune 500 brands and trailblazing startups across 17+ industries. We rank among the leaders in areas like application development and AI/ML, and our people-first culture has earned us multiple Best Place to Work awards. WHY JOIN US If...