De belangrijkste informatie in één oogopslagType dienstverband | Voltijd |
---|
Soort contract | Ongelimiteerd |
---|
Werkmodel | Kantoor aan huis niet mogelijk |
---|
Bedrijf | Uniper |
---|
Taak-ID | 87971 |
---|
Contact us | Lina Zafari |
---|
Your responsibilities We are seeking a highly skilled Information Security Assurance Analyst to join our 2nd line Group Information Security team. This role focuses on security requirements and assurance activities while requiring a deep understanding of modern IT and cloud technologies, enterprise architecture, and security architecture. The ideal candidate will have a strong technical background and experience in defining security requirements and performing assurance activities for information assets such as applications, systems, processes, networks, etc. - Serve as a Subject Matter Expert (SME) on Uniper’s information security assurance, governance, and associated critical processes, industry requirements, and security best practices.
- Create and evaluate security requirements and assessments for information assets such as applications, systems, networks, and other technology assets.
- Conduct assurance reviews and assessments of modern IT and cloud infrastructure, enterprise architecture, and security architecture.
- Define and ensure implementation of information security requirements across technologies, departments, and data assets.
- Engage in preparation for and participation in external and internal audits (e.g., ISO 27001, NIS2, KRITIS, DORA). Maintain awareness and knowledge of current changes within legal, regulatory, and technology environments.
- Support overall validation of adherence to ISMS policies and standards through control evaluation, ensuring compliance through assessment, remediation, and escalation.
- Provide technical guidance and support to stakeholders on risk management and mitigation strategies.
- Stay updated on emerging technologies and industry best practices related to AI, cloud and security architecture.
Your profile - Completed degree in information security, business information technology, computer science, business administration, or a similar field/qualification.
- Minimum of 3-5 years of experience in technical security, assurance, risk management, or security compliance roles.
- Profound knowledge of information security industry standards and regulatory requirements, e.g., ISO/IEC 27001/62443, NIST CSF, NIS 2, DORA, KRITIS.
- Strong understanding of IT and cloud technologies (e.g., MS Azure) and enterprise security architecture.
- In-depth knowledge of security architecture principles and practices.
- Relevant professional qualifications/certifications, e.g., CISSP, CISM.
- Excellent communication and interpersonal skills.
- Proactive mindset to anticipate and address potential security issues before they become critical.
- Effective project management (waterfall and agile) skills to oversee the implementation of security initiatives.
- Fluency in written and spoken English; German is a plus.
|