Description
The role is a senior information-security management position responsible for interpreting IT risk, cybersecurity, regulatory, and mapping requirements; developing and maintaining information-security policies, standards, and guidelines; conducting technology risk assessments; managing risk acceptance; coordinating with internal and external audit; and monitoring security KPIs, KRIs, compliance metrics, and governance dashboards. The position requires a bachelor's or master's degree in a relevant field, at least five years of IT experience focused on information security or IT audit, knowledge of ISO 27001, PCI DSS, and IT security controls, strong communication and collaboration skills, and extensive experience implementing and managing enterprise-level identity and access management solutions.
