Cybersecurity Governance Specialist (f/m/d) - Software Development (Agile)
Core
Design, implement, and run a cybersecurity governance program for software development, integrating security controls into the SDLC and Agile ceremonies.
Role type
Cybersecurity Governance Specialist (Software Development)
Builds
Security governance frameworks, policies, and compliance processes for software development teams.
Domain
Cybersecurity Governance, Software Development Lifecycle (SDLC), Energy Grid Software
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Cybersecurity governance, GRC, Security architecture, Agile/Scrum delivery, Application security, SDLC knowledge, Regulatory standards translation, Risk assessment, OT/ICS familiarity
Preferred skills
Master's degree in CS/Cybersecurity, CISSP/CISM/ISO 27001 Lead Implementer/Auditor certifications, EU Cyber Resilience Act (CRA) experience, SBOM/VEX lifecycle knowledge
Technologies
ISO/IEC 27001, IEC 62443, CRA, SBOM, VEX
Responsibilities
Design and maintain cybersecurity governance frameworks aligned with ISO/IEC 27001, IEC 62443, and CRA; Integrate security checkpoints into engineering lifecycle (architecture reviews, quality gates); Author and maintain cybersecurity policies and standards; Own governance decisions on risk acceptance and conditional approvals; Perform risk assessments for software/application systems; Deliver and maintain governance KPIs/KRIs and report on program effectiveness.
Seniority
Senior, hands-on IC