Perfil buscado (Hombre/Mujer)
The following list of tasks applies to this reference profile. This list is not exhaustive and may
evolve in time, also depending on the type of assignment:
• Contribute to the development of the Organization cyber defense and information security strategies.
• Drafting information security policies, standards and guidelines.
• Define, design and maintain a sound information security management system (ISMS).
• Manage security processes and ensure the production of ISMS records required to get or maintain certification.
• Manage procedures to classify information and assets.
• Perform risks assessments and analysis to identify threats, categorise assets, and rate system vulnerabilities so that they can implement effective controls.
• Contribute to integration of IT security during the complete project lifecycle for the development of IT services and systems/products/solutions (security by design model).
• Draft security plans and security operating procedures.
• Integrate security technical controls into systems, solutions and services.
• Manage information security risks and system certification/accreditation.
• Identify threats and assess the effectiveness of existing controls to face those threats.
• Inform and raise awareness.
• Ensure the promotion of the IT security charter.
• Inspect and ensure that principles and rules for information security are applied.
• Provide guidance on information security.
• Elaborate plans, prepare and document releases and maintenance activities (such as patches and software
upgrades) which are required to keep system running at optimized security condition.
• Assess the compliance of deliverables related to identity and access management for projects and activities, which shall take place in the context of the Operational Security Acceptance and Security Testing processes.
• Attractive compensation package and career path|International environment
As part of your job, you´ll be expected to develop, document, implement, transform and improve policies and procedures as a part of the Cybersecurity strategy of the organization. The expected skills for Senior Information Security Consultants are:
• Curious and creative thinkers.
• Deeply interested in the latest security frameworks, methodologies and best practicies (NIST desirable).
• Good communications skills.
• Responsability, integrity and good presence are equally important.
At least 2 certification among:
• CISSP (Certified Information Systems Security Professional)
• CISA (Certified Information Systems Auditor)
• CISM (Certified Information Security Manager)
• GSNA (GIAC Certified Systems and Network Auditor)
• GCCC (GIAC Certified Critical Controls)
• CAP ((ISC)2 Certified Authorization Professional)
• CRISC (ISACA Certified in Risk and Information Systems Control) or an equivalent certification recognized internationally.
At least 1 certification among:
• CISSP-ISSMP ((ISC)2 Certified Information Systems Security Management Professional)
• GIAC Certified ISO-27000 Specialist or an equivalent certification recognized internationally
Spanish multinational in the ICT sector, with more than 30 years, witch presence in more than 25 countries and with more than 5,000 employees.
• Attractive compensation package
• International project
Regístrate como candidato en Tecnoempleo.com y vincula tu CV a las ofertas de empleo.
Crea tu cuenta gratis