Information Security Director leading the strategic vision in cybersecurity for Bragg. Managing risk and compliance in a fast-paced international environment from Ljubljana.
Responsibilities
Develop, implement, and maintain the company-wide information security strategy, vision, and roadmap.
Lead the identification, analysis, and evaluation of security risks, approving risk treatment plans and mitigation strategies.
Report on the organization's security posture and risk assessment findings to executive management.
Establish, manage, and optimize the information security budget, allocating resources effectively for key security initiatives.
Ensure and maintain compliance with major legal (e.g., GDPR) and regulatory frameworks (e.g., ISO 27001, SOC2).
Oversee the execution of security awareness programs, fostering and promoting a "security-first" culture throughout the organization.
Lead the strategic response to major security incidents and breaches, focusing on effective crisis communication and minimizing business impact.
Govern the security approval process for new tools and vendors, and provide strategic input into the change management policy.
Lead and coordinate internal and external security audits, ensuring all requirements are met and non-conformities are addressed.
Stay up to date with the latest security threats, evaluate emerging security strategies, and maintain industry leadership.
Requirements
8+ years of experience in information security, with at least 3-5 years in a security leadership or strategic role.
Deep knowledge and practical experience in developing strategies and governing frameworks like ISO 27001 and SOC.
Proven experience in developing security strategy, managing enterprise risk, and security budget management.
Hands-on experience in leading complex security incident response and crisis management.
Exceptional communication and presentation skills, with the ability to articulate complex security risks to non-technical executive stakeholders.
A proactive and strategic mindset and the ability to lead a team or work independently as needed.
Self-driven, energetic, and hands-on, with a "can do, get it done" mindset.
Strong ability to prioritize and manage several strategic initiatives simultaneously.
Bonus points if you hold security certifications (e.g., CISSP, CISM, CISA).
You have experience working in big enterprise environments and software development industry.
Benefits
Competitive compensation (based on your experience).
Hybrid work model.
30 days annual leave.
Educational learning opportunities to support each employee's professional growth journey.
Sports activities, team building, and informal gatherings.
Working Student in Information Security at Allianz Direct supporting security monitoring and managing vulnerability assessments. Collaborating with cross - functional teams to enhance cybersecurity posture and awareness.
Enterprise Security Implementation Specialist at Vodafone supporting customers in implementing security solutions. Responsibilities include onboarding, incident management, and ensuring service quality with Fortinet and Zscaler products.
Cyber Security Specialist at Vodafone responsible for shaping and deploying security measures. Collaborating with business, IT, and Network teams as a trusted security partner.
Manager at PwC contributing to digital transformation in Utilities through technology consulting and stakeholder management. Focused on creating strategies and providing technology solutions in a data - driven world.
Research Associate conducting advanced research in iOS security within a leading institute for applied cybersecurity. Emphasis on secure application development and vulnerability analysis.
Cybersecurity Engineer focused on threat monitoring and incident response for Verizon's network security. Collaborating on security architecture and vulnerability management across multiple locations.
Senior Manager of Application Security leading initiatives to protect applications at Nordstrom through strategic leadership and AI - driven tooling. Collaborating with engineering to ensure secure software development practices.
Information Security Engineer responsible for deploying and supporting security tools across cloud and on - premise systems. Collaborating with IT to mitigate security risks in a hybrid work environment.
Casual Retail Security Officer for MSS Security ensuring safety at Tweed Mall in Tweed Heads. Responsible for patrols, incident response, and customer service.
Financial security advisor at Desjardins developing client relationships and selling life and health insurance products. Focusing on customer satisfaction and personalized financial solutions.