Consultant Cybersecurity Governance (ISMS) (m/f/d)
Core
Define, maintain, and continuously improve rules, procedures, and processes in the Information Security Management System (ISMS) to manage cyber risks and ensure regulatory compliance.
Role type
Cybersecurity Governance Consultant (ISMS)
Builds
An efficient and effective regulatory system for cybersecurity and the IT Service framework for cyber risk management.
Domain
Cybersecurity Governance / Information Security Management Systems
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
ISMS lifecycle management, regulatory landscape evolution, rule adherence measurement, cybersecurity assessment, policy authority enforcement, security exception processing, cyber risk assessment, risk prioritization, IT service framework development, mitigation effectiveness evaluation, stakeholder management, process management, project management, analytical skills.
Preferred skills
CISM certification, knowledge of ISO27001, NIST, NIS2 standards.
Technologies
ISO27001, NIST, NIS2
Responsibilities
Define, maintain, and continuously improve ISMS rules and processes; Manage and evolve the cybersecurity regulatory landscape; Implement and execute rule adherence measurement processes; Execute Cybersecurity Assessments; Exercise policy authority on cybersecurity; Assess and process security exceptions; Conduct cyber risk assessments and prioritize risks; Further develop the IT Service framework for cyber risk management; Actively track cyber risks and evaluate mitigation effectiveness; Support the management of the external security posture.
Seniority
Mid-Senior, hands-on IC