Security Compliance Specialist enhancing cybersecurity and compliance framework at Trezor. Collaborating across teams to shape security and compliance operations in the tech sector.
Responsibilities
Conduct assessments of IT systems supply chain risks, focusing on cybersecurity aspects
Develop and enforce security standards and protocols for suppliers
Monitor and evaluate the cybersecurity practices of suppliers and partners
Support the design and implementation of access control policies and procedures, ensuring that employees have access only to the resources necessary for their roles
Participate in the user account management, including setting up, modifying, and revoking access as needed
Support regular access reviews to ensure compliance with the least-privilege principles
Coordinate and execute regular security and compliance audits
Analyze audit and test results to identify vulnerabilities and non-compliance issues
Recommend and follow up on corrective actions to address identified weaknesses
Assist in identifying and evaluating risks to data and information systems
Help with developing strategies and rules to mitigate identified risks
Collaborate with various departments to ensure risk management measures are integrated across the company
Conduct regular reviews of data processing activities
Support implementation of data protection policies with focus on compliance with GDPR
Assist in maintaining an inventory of all IT assets and ensure they are correctly classified and managed according to their security requirements
Participate in the development and enforcement of policies related to the lifecycle management of these assets, including procurement, usage, and disposal
Collaborate with HR to ensure that roles and responsibilities are clearly defined and integrated into access management
Support embedding cybersecurity awareness into the organizational culture
Help in the implementation of a data classification framework to categorize data based on sensitivity
Support in implementing controls and handling procedures for different categories of data
Collaborate with relevant departments to ensure consistent application of the classification scheme across the organization
Requirements
2+ years of experience in a security and/or compliance role, with a strong focus on IT segment
Basic orientation in ISMS, ISO 27001, CRA and NIS2 regulatory requirements
Ability to effectively communicate security concepts to both non-technical and technical stakeholders
Adaptability, a high level of attention to detail
Demonstrated reliability and strong issue-resolution skills
Proficiency in English is essential.
Benefits
A unique opportunity to be part of a pioneering company in the crypto industry
Option to receive part of your compensation in bitcoin
Flexible working hours and a supportive team to help you implement your ideas
Budget for professional development, including training programs, courses, and workshops of your choice
Friendly, open culture with regular company events and fun get-togethers
Renovated offices with a gym, massages, football table, billiards, PlayStation, 3D printer and free on-site parking
Additional benefits such as a MultiSport card, company mobile phone tariff, and more
Cybersecurity Engineer focused on threat monitoring and incident response for Verizon's network security. Collaborating on security architecture and vulnerability management across multiple locations.
Senior Manager of Application Security leading initiatives to protect applications at Nordstrom through strategic leadership and AI - driven tooling. Collaborating with engineering to ensure secure software development practices.
Information Security Engineer responsible for deploying and supporting security tools across cloud and on - premise systems. Collaborating with IT to mitigate security risks in a hybrid work environment.
Casual Retail Security Officer for MSS Security ensuring safety at Tweed Mall in Tweed Heads. Responsible for patrols, incident response, and customer service.
Financial security advisor at Desjardins developing client relationships and selling life and health insurance products. Focusing on customer satisfaction and personalized financial solutions.
Principal Information Security Consultant at Westpac focusing on security protocols and employee benefits for staff. Hybrid role centrally located with opportunities for professional development and employee perks.
Engineer supporting secure development lifecycle processes for product lines in the energy sector. Collaborating with R&D on security requirements and compliance audits.
Automation Oversight Engineer providing oversight of compliance in automated device configurations for Comcast Business. Managing configuration checks and reporting, ensuring reliable oversight and improvement strategies.
Principal Systems Engineer - Cybersecurity role in protecting our nation's products as part of Integrated Platform Solutions team. Develop solutions utilizing RMF, Anti - Tamper, Software Assurance, and more.
Agent de Sécurité assurant la sécurité des usagers du réseau de transport TBM. Rattaché au Manager de Proximité Sûreté, garantissant la qualité de service public de transport en commun.