Актуальные заказы по Information Security Management System

Инженер по информационной безопасности

Удаленно
Full-time

Проект компании, специализирующейся в поисковом продвижении компаний - лидеров рынка.


Обязанности:

  • Аудит инфраструктуры клиентов и используемых сервисов ИБ, анализ полученной информации, подготовка отчетов.
  • Составление плана работ, архитектуры работы сервисов и взаимодействия.
  • Развертывание и настройка продуктов стека Microsoft Security\Compliance, интеграция с инфраструктурой.
  • Оказание консультационной поддержки по сервисам информационной безопасности и помощь в настройке (правил, политик, конфигураций и т.д.)


Требования:

  • Опыт участия в проектах на базе сервисов безопасности компании Microsoft.
  • Знание локальной инфраструктуры Microsoft, в первую очередь AD, SCCM, CA, RMS.
  • Знание и практический опыт интеграции и настройки сервисов из пакета Microsoft 365 c локальной инфраструктурой.
  • Способность свободно вести переговоры и работать с русскоговорящими и англоговорящими заказчиками, знание языка не ниже уровня B2.
  • Знание и практический опыт по настройке, управлению и поддержке стека Microsoft Security\Compliance:
  1. Обязательно знание: Microsoft 365 Defender (Defender for Endpoint, Defender for Office, Defender for Identity, Defender for Cloud Apps); Microsoft Entra.
  2. Желательно знание: Microsoft Defender for Cloud; Microsoft Sentinel; Microsoft Intune; Microsoft Purview.


Обязательно наличие сертификатов: Microsoft 365 Certified: Security Administrator Associate.

Желательно наличие сертификатов: Microsoft Security Operations Analyst; Microsoft Identity and Access Administrator; Microsoft Information Protection Administrator.

Network Engineer

Офис
Full-time
Постоянная работа

As a Network Engineer, you enjoy a variety of challenges and are willing to guide your colleagues in developing their network and information security skills. You are focused on protecting our systems, data, and network against security risks and threats, playing a crucial role in implementing effective solutions to secure our information and infrastructure. You think in a solution-oriented manner and thrive as a team player, collaborating effectively with colleagues.


Your most common tasks include:

  • Managing KPN in network administration
  • Continuously working and brainstorming to optimize the network
  • Monitoring network activities and systems to detect and respond to potential security breaches
  • Responding to security incidents and coordinating recovery and preventive measures
  • Participating in all projects related to the network
  • Maintaining certificates of the portals
  • Collaborating with the System Engineer and providing training as a backup
  • Working alongside the Chief Information Security Officer


Your Qualifications

  • You hold a HBO or WO degree.
  • You have at least two years of work experience, preferably as an IT System Engineer.
  • You have demonstrated experience and expertise in the field of information security.
  • You are familiar with relevant security standards and frameworks.
  • You are CCNA certified and have a basic understanding of MCSE.
  • You have the ability to prioritize effectively and proactively take action.
  • You are a team player with a strong willingness to assist your colleagues.
  • You have good spoken and written communication skills in both Dutch and English.



A local person living in NL with no needs of relocation. The office is in Utrecht.

The mode of working is 60% in the office, rest from home.



Security GRC (Governance, Risk and Compliance) Specialist

Офис
Удаленно
Full-time
Постоянная работа

Looking for Security GRC (Governance, Risk and Compliance) Specialist.


Job Overview:

The person in this role will be in charge of identifying, reviewing and managing the security Governance, Risk and Compliance internal programs and initiatives, working closely with the Operation Security and Application Security Teams, as well as various internal IT teams.

Additionally, support the IT Security team in on-demand activities by being a facilitator in Initiatives with other IT Teams.


Requirements:

  • 5+ years of relevant experience working in the IT security industry, including 2+ years in GRC, IT Audit, IT risk management, IT Security and/or similar compliance functions.
  • Strong skills in IT Security risk management.
  • Demonstrated experience in data governance framework setup and management activities in an enterprise environment.
  • Experience in the development of company security policies and risk, security or audit frameworks (e.g. ISO 27001, NIST, COSO).
  • Excellent communication skills in both technical and non-technical ways.
  • Fluent in English and in Russian: written, verbal, listening.
  • Attained a Bachelor’s degree in Information Systems, Engineering and related area (5+ years).
  • Attained Сybersecurity certifications such as CISSP, CRISK, Security+, etc is a plus.
  • Experience working as a Program Manager is a plus.
  • Experience working in Fintech, online businesses is a plus.
  • Results-oriented, commitment focused and team player.


What Will You Do:

  • Continue developing, implement and manage the organization IT Security Risk Management framework.
  • Identify, manage and help reduce the IT Security risk across the organization, conduct risk assessment and gap analysis reviews related to information security risk matters.
  • Design, develop, implement and maintain a data governance framework across the company.
  • Manage compliance initiatives.
  • Develop, update, document and implement security policies and controls.
  • Ensure up-to-date and effective Information Security policies, standards and guidelines are in place to address requirements from internal and external.
  • Produce and manage relevant documentation and presentations, including Executive Reports.
  • Conduct internal security assessments/reviews.
  • Support and coordinate internal efforts to support IT compliance assessments and external security audits.
  • Coordinate inputs and craft accurate and effective responses to inquiries on information security matters coming from regulators, auditors, etc.
  • Support company-wide security training and awareness programs to meet training goals.
  • Help in the Implementation of Security tools.
  • Lead/Support Scrum ceremonies such as Refinement, Planning, Retrospectives, and Daily meetings.


Relocation to Montenegro.

Chief Information Officer

Full-time

A Swiss and EU based FinTech Company with a Mission to bridge cryptocurrencies into traditional financial systems, to enable everyone to utilize the benefits of crypto as an integral asset class in financial management.


Position

Company is searching for an experienced and dedicated CIO (Chief Information Officer) to lead and manage IT Development team (40+ people) and processes. A successful CIO should have in-depth knowledge of the current and up-and-coming trends in the FinTech and Crypto/DLT industry. 

To be successful, you will be highly analytical, and professional, and possess excellent organizational skills. This is the possibility of being a part of an amazing project, working with a highly experienced team and cutting-edge technology.

 

The ideal CIO should engage in the pursuit of company’s international expansion, leading the development of the internal technology strategy for the Company and advising to the business on all matters related to the interface between the IT development department and the rest of the business.


Job Responsibilities

  • Develop goals and strategies to ensure the IT development department:
  1. delivers features planned in the product roadmap
  2. has all security tools, measures, and processes in place;
  3. runs smoothly and effectively.
  • Direct and establish IT-related projects.
  • Monitor changes in the technology sector to discover ways the company can improve and develop.
  • Supervise the networks and computer systems in the company to ensure optimal performance.
  • Plan and direct the implementation of new IT systems.
  • Provide leadership to IT specialists and other staff within the company.
  • Create and adapt technological platforms to improve the client experience.
  • Troubleshoot data-related issues and establish regular maintenance.
  • Auditing existing IT infrastructure and assessing for any security risks
  • Continuously assessing security vulnerabilities, assessing risks and implementing prevention measures and mitigating controls.
  • Developing policies around security incidents and creating an Emergency Response Team to act as and when a security breach is looming or has happened.
  • Monitoring of personal performance of engineers.
  • Leading the hiring process within the department. 


Requirements

  • Experience related to the FinTech industry (Retail Digital Banking, Crypto, Blockchain, Online trading with financial assets);
  • 10+ years of technology experience with at least 5 years in a senior executive role in a combination of IT, information security, and risk management roles;
  • A strong strategic and business mindset;
  • Excellent organizational and leadership skills;
  • Outstanding communication and interpersonal abilities;
  • BSc/BA in computer science, engineering or relevant field; 
  • Solid business knowledge that ties the technology vision to company’s mission, performance, and financial goals;
  • Specific experience in Agile (scaled) software development or other best development practices;
  • Demonstrated ability to interpret technology and market trends;
  • Development of applications for the global market;
  • Software quality management;
  • Ability to work and lead in a fast-changing dynamic environment;
  • Excellent interpersonal, written, and verbal communication skills;
  • Experience with global/international operations;
  • Innovative thinking and leadership with an ability to lead and motivate cross-functional, agile, and interdisciplinary teams;
  • Experience with contract and vendor negotiations and management including managed services;
  • Demonstrated ability to develop achievable and inspiring technology objectives and roadmaps;
  • Demonstrated ability to focus organizations on these objectives and roadmaps;
  • Demonstrated ability to collaborate effectively with non-technology oriented employees and partners;
  • Strong analytical skills;
  • Proven experience with the corporate stack of programming languages and technologies, incl: node.js, react/react native, c#, .net.
  • Fluent in English.