Handle customer requests related to information security
Evaluate third parties (vendors, suppliers, etc.) to ensure their compliance with CRX Markets' security requirements
Improve supplier security checks during the procurement process
Collaborate with internal teams to address security and compliance gaps and remediate issues
Participate in compliance certifications, including external audits and internal self-assessments
Develop and maintain security compliance documentation
Implement and monitor security compliance in accordance with ISO 27001, regulatory standards, and best practices
Execute a comprehensive risk management program with assessments based on ISO 27001, NIST RMF, and industry standards
Provide guidance to remediate identified risks and ensure ongoing compliance
Your Profile
Degree in Business studies, Computer science, or a related field
3+ years of professional experience in IT governance, compliance, and strategy development, ideally in the financial sector
Strong IT engineering background and proven experience in security compliance and process automation
Knowledge of various security and privacy standards and regulations (SOC 2, ISO 27001, NIS 2, DORA, etc.)
Analytical and problem solving skills, as well as a results-oriented approach
Excellent communication skills and a proactive and transparent working style
Fluent in English with good writing and speaking skills
Bonus points for experience with security compliance audits, certifications, web/network/infrastructure security, security and compliance tools, Microsoft 365 Security Center, Compliance Center and Defender for Cloud Apps