Information Security and Compliance Officer

jobs-near-me.org

Company Description

We are in Business for People, empowering people in service organizations with innovative Enterprise and 

Business software solutions. We’ve innovated and taken a new approach to delivering ERP that works for 

people. Self-driving, adaptive and intuitive software that is changing the way people work. Our solutions 

empower people and deliver a better people experience so people can spend time on meaningful high value 

work they live for.

Read more on our website about how we transform work and how people feel about it, so our customers 

and their people can thrive.

Job Description

The purpose of the Information Security and Compliance Officer is to maintain effective risk management through the Information Security Management System and ensure ongoing certification by maintaining information security policies, conducting internal audits, providing training and reviewing information security arrangements

The Information Security and Compliance Officer will work with the CISO and other Team members in expanding the existing ISMS and Quality Framework. The role holder will participate in the management of and ensure all actions are completed to maintain certification to ISO 27001 / ISO2017 / SOC1 / SOC2 / C5 and also ISO9001. Role holder will liaise closely with SMEs who are globally geographically spread and participate in the monthly ISMS committee meetings. 

Role is remote (from Portugal, Poland or Spain).

Job Responsibilities: 

  • Liaison with related functions (particularly IT, Cloud Operations, R&D, Product Development) plus senior and middle managers throughout the organization as necessary, on information security matters such as secure processes, emerging security risks and controls.
  • Lead on Penetration Testing oversight and technical reviews of various technologies and solutions across Unit4.
  • Participate in the implementation, operation, support and maintenance of the Information Security Management System based on the ISO/IEC 27000 series standards, including maintaining our certifications against ISO/IEC 27001, 27017, SOC1 and SOC2 as well as expansion as needed.
  • Participate in the preparation and the implementation of necessary information security policies, standards, procedures and guidelines, in conjunction with the Security Committee to get appropriate approvals and feedback.
  • Support the operation of related compliance monitoring and improvement activities to ensure compliance with both internal security policies etc. and working with the Legal teams to ensure that applicable laws and regulations are met.
  • Support departments and help manage projects for implementation of information security management system.
  • Support information security awareness, training and educational activities.
  • support information security risk assessments and implement appropriate controls.

Desirable Experience 

  • Working knowledge of the Information Security elements of EU DORA, EBA, NIS2, C5 and other relevant regulations to a global SaaS company.
  • Experience of organizing and carrying out Internal Information Security Audits with the primary aim of identifying Information Security Risks.
  • Maintenance, support and development of an ISMS which is compliant with ISO 27001 / ISO2017 / SOC1 / SOC2 / C5.
  • Experienced in completing security risk assessments and tracking remediation efforts.
  • Broad technical understanding of Information Technology and SDLC with sufficient knowledge to be able to audit processes and procedures and work with technical personnel.
  • Understanding and experience managing / overseeing the Penetration Testing process with technical stakeholders and Penetration Testing companies.
  • Good understanding of generic end to end business processes (ideally for a SaaS company).
  • Experience of working in a fast paced international company.
  • Fantastic English speaking communication skills: ability to articulate & simplify security concepts.
  • Good awareness of handling cultural differences when working with international colleagues.
  • Must be able to work autonomously to ensure that role requirements are met.
  • Experience of ISO9001 Quality standard is also desirable.

Qualifications

Mandatory

  • around 5 years of professional experience in IT or audit related roles.

Desirable

  • 2+ years demonstrable experience of a certified ISMS.
  • Ideally Graduate Level with a Batchelor in a computer science or security related subject.
  • CISSP / CISA / CISM / CRISC etc. certifications are valued – but not essential.

Additional Information

Join Unit4 and be part of one of the most exciting journeys in the cloud ERP software space. We’re a fast-paced, high-growth, people-centric company, delivering enterprise software for a great people experience, and offering our own people a host of benefits and development opportunities. Grow with us.

At Unit4, we offer:

  • a culture built on trust – giving you the freedom and autonomy to be successful,
  • balance – with our uncapped time off policy, remote working opportunities and Global Wellbeing Days

when the whole company can switch off and prioritize well-being,

  • talented colleagues, role models and mentors – work, learn and be inspired by some of the best talent

in the software industry,

  • a commitment to sustainability – with initiatives such as our Act4Good program, a way for everyone at

Unit4 to come together and engage in actions that benefit society and the planet,

  • a safe and inclusive working environment – supported by our Employee Resource Groups, which are

open to all and include Women at Unit4, Pride at Unit4, Mental Health and Access at Unit4, and 

People of Color at Unit4. 

Read Full Description

Apply
To help us track our recruitment effort, please indicate in your cover/motivation letter where (jobs-near-me.org) you saw this job posting.

Share

Senior Interior Designer – Healthcare

Job title: Senior Interior Designer - Healthcare Company Arcadis Job description Job Description:Arcadis is the…

22 minutes ago

Senior Digital Learning Manager

Job title: Senior Digital Learning Manager Company University of Sunderland Job description Are you enthusiastic…

35 minutes ago

Contract Logistics Production System Engineer

Job title: Contract Logistics Production System Engineer Company Kuehne+Nagel Job description Contract Logistics Production System…

1 hour ago

Senior DevSecOps Architect

Job title: Senior DevSecOps Architect Company Computacenter Job description Location: UK - London, UK -…

2 hours ago

Delivery Leadership Consultant/Senior Consultant

jobs-near-me.org Who You’ll Work With Our Business Advisory Services teams help organizations of all kinds…

2 hours ago

Cost Manager – MEP – Mumbai

jobs-near-me.org Company Description Who is Turner & Townsend? All over the world people are using…

2 hours ago
For Apply Button. Please use Non-Amp Version

This website uses cookies.