Description
The role is responsible for interpreting IT risk, cybersecurity, regulatory, and mapping requirements; developing and maintaining information security policies, standards, and guidelines; conducting technology risk assessments; managing risk acceptance; coordinating with internal and external audit stakeholders; and monitoring security KPIs, KRIs, compliance metrics, and governance dashboards. The position requires a bachelor's or master's degree in a relevant field, at least five years of IT experience focused on information security or IT audit, knowledge of ISO 27001, PCI DSS, and IT security controls, and strong communication and collaboration skills.
