Description
The Data & Risk Management Specialist will own Everience’s cyber risk management framework, including risk identification, assessment, treatment, monitoring, mitigation, reporting, and regulatory alignment under NIS2, ISO 27001, ISO 27005, and NIST. The role coordinates with IT, infrastructure, cloud, engineering, risk, legal, compliance, and internal audit teams; manages risk registers, KPIs/KRIs, remediation plans, audit evidence, and governance reporting; and contributes to resilience, crisis management, and regulatory adaptation activities. It requires at least five years of experience in IT risk, cyber risk, or information security governance, strong risk-management experience in large organizations, knowledge of risk assessment methodologies, GRC-tool experience, and strong analytical, writing, and communication skills.
