Hybrid IT Governance, Risk and Compliance Analyst

Posted 2 weeks ago

Apply now

About the role

  • IT Governance, Risk and Compliance Analyst in Cluj-Napoca ensuring compliance with NIS2 framework and managing cybersecurity efforts internally and externally.

Responsibilities

  • Support Network Information Security Directive (NIS2) assessments for our organization, evaluating their information security controls and practices
  • Document controls, collect evidence and oversee compliance with NIS2
  • Assist in identifying gaps in compliance with NIS2 requirements and support the development of remediation plans to close gaps
  • Collaborate with stakeholders across Emerson to implement and maintain security measures aligned with NIS2 standards
  • Monitor and track progress towards NIS2 compliance goals, ensuring timely completion of remediation plans
  • Report and communicate NIS2 program and compliance initiatives to senior leadership
  • Support Emerson businesses with external audits to achieve NIS2 compliance
  • Provide training sessions and workshops on NIS2 requirements and best practices to internal & supply chain stakeholders to ensure NIS2 awareness as appropriate
  • Stay up to date on any changes within the NIS2 framework and ensure ongoing alignment with evolving standards
  • Preparation of audits:
  • Create and maintain audit schedule
  • Identifying and communicate regularly to stakeholders
  • Support/coordinate evidence collection
  • Preparing the contact persons and audit participants for the audit
  • Follow-up:
  • Managing and reviewing the audit reports and results
  • Report on remediation progress
  • Build control assurance / compliance initiatives to improve the overall cybersecurity posture of the organization
  • Lead and support various information security framework control gap assessments, implementation of framework management systems, gap remediation, ongoing management, and continual improvement initiatives in addition to NIS2 as needed

Requirements

  • Bachelor’s Degree in IT, Information Systems, Computer Science, or related discipline
  • Experience in these areas:
  • Information Security
  • Compliance
  • Risk Management
  • 1-2+ years of experience in ISO 27001 & ISO 27002, TISAX, NIS2 or related information security frameworks
  • Strong understanding of Information Security principles, standards, and frameworks
  • Strong experience conducting security assessments and audits
  • Effective communication and interpersonal skills to properly collaborate effectively with internal teams and external stakeholders.
  • Project management skills to manage program expectations, building work programs/schedules.
  • Willingness to travel (20%)
  • Fluent in English

Benefits

  • Health insurance
  • Professional development opportunities

Job title

IT Governance, Risk and Compliance Analyst

Job type

Experience level

Junior

Salary

Not specified

Degree requirement

Bachelor's Degree

Tech skills

Location requirements

Report this job

See something inaccurate? Let us know and we'll update the listing.

Report job