23 ago
|
Saunders Scott
|
Ispra
23 ago
Saunders Scott
Ispra
CYBERSECURITY LEGAL & PRIVACY ADVISOR | Ispra, Italy
ABOUT THE ROLE
We're recruiting a Junior Cybersecurity Legal and Privacy Advisor for a 4-year engagement (880 working days) supporting compliance and information security governance across a large international research organisation.
KEY RESPONSIBILITIES
- Define compliance requirements for information-system controls in close collaboration with system owners and managers
- Prepare templates covering security processes, controls, and technical solutions
- Support elaboration of Business Impact Assessments, Risk Assessments, Security Plans, Secure System Architecture Designs, and Implementation Plans
- Manage remediation activities: track non-conformities, assign corrective actions, verify closure within agreed timeframes
- Develop and maintain security baselines for systems and services
- Coordinate and review risk assessments against defined compliance criteria
- Report compliance status, highlighting gaps and remediation progress
- Interact with system owners, IT service providers, and relevant stakeholders to ensure consistent interpretation and application of security policies
QUALIFICATIONS REQUIRED
Knowledge & Experience:
- Good knowledge of the ISO 27000 family of standards
- Good knowledge of EC Security Policies and European Commission Risk-management methodology
- Good experience in the security domain: development and review of security methodologies, Business Impact Assessments, Risk Assessments,
Secure System Architecture Design
- Ability to review draft Security Plans and related material efficiently
- Ability to apply high-quality standards in documentation, template creation, and guidance material
- Capability to write clear, structured technical documents
- Analysis and problem-solving skills
- Ability to cope with fast-changing technologies in cloud services, AI-driven applications, and digital services
Communication & Soft Skills:
- Very good communication skills with technical and non-technical audiences
- Ability to give business and technical presentations
- Ability to participate in multilingual, multicultural meetings
- Ability to integrate in international/multicultural environment
- Rapid self-starting capability and experience working in teams
- Ability to establish trusting relationships with counterparts in partnering organisations
- Excellent team player
- English C1 (written and verbal)
- High degree of discretion and integrity
Education
- Minimum Level 5 EQF (2 years post-secondary education or equivalent)
Advantageous
- Relevant certifications: CGRC, CRISC, CISA, CISSP, CISM
WORKING CONDITIONS
- Location: Ispra, Italy (on-site)
- Limited remote work may be authorised for tasks not requiring on-site presence; must be able to reach Ispra within 2 hours
- Start date: 07/09/2026
- Contract: Time & Means, phased execution
- IT equipment provided
📌 Cybersecurity Compliance Advisor (Ispra)
🏢 Saunders Scott
📍 Ispra