Ict Information Security Compliance Analyst - €40.000 - €70.000 A Year (Firenze)

Ict Information Security Compliance Analyst - €40.000 - €70.000 A Year (Firenze)

14 set
|
Ascom
|
Firenze

14 set

Ascom

Firenze

ICT Information Security Compliance AnalystAscom Firenze EUR 40.000 - 70.000About the RoleICT Information Security Compliance Analyst is a position within the ICT group. The main purpose of this position is to ensure that Ascom constantly maintains a high security posture in digital environments to build innovative solutions in healthcare, while protecting these against cyber threats. This position requires understanding and taking steps to mitigate risks and ensure the secure operation of the systems, servers, and network connections.ResponsibilitiesCompliance & GovernanceMonitor adherence to internal security policies, industry standards, and regulatory frameworks (e.G., GDPR, ISO 27001, NIS2, NIST).Support internal and external audits, certification processes, and periodic compliance reviews.Develop, maintain, and update compliance documentation, audit evidence, and control registers.Collaborate with cross‑functional teams to ensure proper implementation of security protocols and requirements.Ensuring security updates are in place across all systems, performing security checks and troubleshooting activities.Establish and maintain documentation standards to ensure traceability, quality, and serviceability of delivered security solutions.Participate in the detection, analysis, and response to security incidents.Contain, mitigate, and resolve security events efficiently.Monitor network environments to identify suspicious activities, anomalies, or early signs of compromise.Document incident activities and ensure compliance obligations are met during investigations.Communicate system status, planned interventions, downtime,



and relevant changes to stakeholders in a clear and timely manner.Identify security and compliance risks, recommending corrective measures and mitigation strategies.Support risk assessments, vulnerability management, and periodic evaluations of security controls.Research emerging threats and the mitigations that can provide protection.Proactively collaborate with business units to address security issues and strengthen architectures in hybrid and multi‑cloud environments.Analyse network systems and infrastructure to ensure secure configurations and adherence to best practices.Support third‑party risk assessments and maintain compliance documentation repositories.Promote information security awareness across the organization through training and engagement initiatives.Ensuring recurrent and periodic reviews are in place in testing accuracy and applicability of information security trainings against emerging threats.ReportingPrepare structured reports on security posture, compliance status, and incident response findings for management, auditors, and regulatory bodies.Provide regular updates on security posture, improvements, and outstanding risk items.Ensure documentation standards to preserve the traceability and serviceability of delivered security solutions.QualificationsBachelor’s or Master’s degree in Computer Science, Cybersecurity, Computer Engineering, Information Security,



or a related field.In the absence of a relevant degree, an additional 5 years of proven experience may be considered.Professional Experience3-5+ years of experience in Information Security, with a focus on risk management, governance, and compliance.Experience in ICT infrastructure, security controls, and enterprise technology environments.Exposure to incident response processes, security operations, and associated tools.Technical KnowledgeStrong understanding of Information Security Management Systems (ISMS) and control frameworks such as: ISO 27001NIST Cybersecurity FrameworkNIS 2 DirectiveGDPR requirementsExperience reviewing and interpreting security scan results and remediating vulnerabilities.Familiarity with enterprise architectures, including: Network and system architectureEnterprise directory servicesIntegration architectureIdentity and Access Management (IAM)Familiarity with: Security monitoring practicesBasic forensic techniquesCloud security controls and hybrid‑environment security architecturesSIEM toolsRegulatory & Risk KnowledgeDemonstrated understanding of data privacy laws and regulatory requirements.Broad awareness of business‑impacting security threats, detection methods, and risk assessment methodologies.Security Principles & Best PracticesSolid understanding of security principles, cybersecurity lifecycle, and security software management best practices.Preferred SkillsCertifications (Preferred)CISM, CISA, CISSPCompTIA Security+GIAC GCIH (or similar incident response certifications)Equal Opportunity StatementAscom is committed to diversity and inclusivity in the workplace.#J-18808-Ljbffr

📌 Ict Information Security Compliance Analyst - €40.000 - €70.000 A Year (Firenze)
🏢 Ascom
📍 Firenze

Candidati a questo annuncio

Mostra le tue capacità professionali all'azienda, compila il form e lascia un tocco personale nella lettera di presentazione, aiuterà il recruiter nella scelta del candidato.

Iscriviti a questa job alert:

Ricevi via email le nuove offerte di lavoro per: ict information security compliance analyst - €40.000 - €70.000 a year (firenze) / firenze

Iscriviti a questa job alert:

Ricevi via email le nuove offerte di lavoro per: ict information security compliance analyst - €40.000 - €70.000 a year (firenze) / firenze