01 ott
|
Lifted, an Upwork Company™
|
Bardi
01 ott
Lifted, an Upwork Company™
Bardi
ph3Cybersecurity Governance, Risk Compliance (GRC) Consultant /h3ulliContract /li /ulpAn enterprise technology client is seeking an experienced bInformation Security Professional /b to support the protection of COET srl's information systems and data from cybersecurity threats. /ppThe selected consultant will work closely with the Hitachi Energy Cybersecurity team to identify, assess, monitor, and report cybersecurity risks across the COET organization. /ppThis is a temporary, tempo parziale consulting opportunity based in Italy /ppThis opportunity is ideal for an experienced Information Security professional with knowledge of bcybersecurity governance, risk management, compliance, and incident response /b. /ppWhat You'll Do: /pulliConduct cybersecurity risk assessments for COET srl. /liliAnalyze threats, vulnerabilities, control effectiveness, and residual risks. /liliMaintain and update cybersecurity risk registers. /liliTrack risk mitigation and remediation activities through completion. /liliRecommend ways to improve the efficiency, consistency, and effectiveness of Information Security operations. /liliDevelop and monitor cybersecurity policies, standards, and control requirements. /liliReview risk assessments, mitigation plans, exceptions, and risk acceptance requests. /liliSupport cybersecurity governance forums and reporting activities. /liliAssist with internal and external cybersecurity audits. /liliCoordinate evidence collection and remediation tracking. /liliAssess compliance with Hitachi Energy cybersecurity standards and applicable country regulations, including NIS2. /liliSupport control assessments and gap analyses. /liliPrepare materials for management and governance reviews. /liliEscalate significant cybersecurity risks and emerging trends.
/liliCollaborate with IT, Product Security, IAM, Legal, Procurement, Privacy, and business teams. /liliProvide guidance on cybersecurity risk management processes and requirements. /liliPromote cybersecurity awareness and risk-informed decision-making. /li /ulpQualifications /ppNice to Haves: /pulliExperience in Information Security governance, risk management, compliance, and incident response. /liliKnowledge of common cybersecurity frameworks and regulations, such as NIST, NIS2, ISO *****, and GDPR. /liliCISSP, CISM, or an equivalent certification is desirable. /liliFluency in both Italian and English. /liliStrong communication and stakeholder management skills. /liliAbility to work independently and collaborate with cybersecurity and business teams. /liliCybersecurity risk assessments and updated risk registers. /liliRisk mitigation and remediation tracking. /liliCybersecurity policies, standards, and control requirements. /liliAudit evidence, control assessments, and gap analysis support. /liliGovernance review materials and cybersecurity reporting. /li /ulpLocation Requirement /pulliOn-site presence at COET premises in bSan Donato Milanese, Italy /b, at least b3 times per month /b. /liullibCategory: /b Information Security Compliance /lilibDuration: /b September 14, **** to September 14, **** /liliThe client is still evaluating the appropriate engagement structure. The selected talent may ultimately be engaged through an Employer of Record (EOR) arrangement rather than as an Independent Contractor. /liliCandidates should be comfortable proceeding under either engagement structure. If EOR is selected, additional onboarding requirements and timelines may apply before the engagement begins. /li /ul /ul /p #J-*****-Ljbffr
📌 Cybersecurity Governance, Risk & Compliance (Grc) Consultant (Bardi)
🏢 Lifted, an Upwork Company™
📍 Bardi