Job
- Level
- Lead
- Job Field
- IT, Project, Security
- Employment Type
- Full Time
- Contract Type
- Permanent employment
- Salary
- 84.000 to 116.000€ Gross/Year
- Location
- Vienna
- Working Model
- Hybrid, Onsite
Your role in the team
- As an Information Security Manager, located in Austria, at NVISO, you will lead our team of CISOaaS or GRC consultants while actively contributing to client projects as well as contributing in pre-sales activities for strategic clients.
- Your role will be key in enhancing our clients' cybersecurity posture by creating and driving security strategies and their programs throughout the company.
- Leading and managing a team of CISOaaS/GRC consultants to deliver high-quality services to clients.
- Collaborating closely with clients to understand their business objectives, their risks and their unique security requirements.
- Assessing the security maturity of clients (using ISO, BSI or NIST standards) to identify gaps and areas for improvement.
- Developing and implementing a fit-for-purpose security program (that aligns with industry standards).
- Driving the security program at clients, where you also act as the security champion, spreading the 'gospel' on security.
- Conducting risk assessments, identifying potential vulnerabilities, and recommending risk mitigation strategies.
- Overseeing and supporting with the implementation of the security program, including policies, procedures, and controls.
- Providing updates to manage on the 'state of security' at your company.
- Holding steering committees at the customer with relevant stakeholders to guide & adapt the security program, where needed.
- Involve yourself actively in the sales process by creating and presenting Statements of Work, project plans, requirements definitions,… for projects running in your team.
- Perform technical account management duties for specific top-tier, strategic clients.
This text has been machine translated. Show original
Our expectations of you
Education
- Bachelor's degree in Business Administration, Information Security, or a related field.
Qualifications
- You are eligible for NATO Clearance.
- Professional certifications such as Certified Information Systems Auditor (CISA), Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), ISO27001 Implementer/Auditor or equivalent are strongly preferred.
- This covers, but not limited to: risk assessment, security roadmap creation, CISOaaS and policy development.
- In-depth knowledge of relevant industry standards and frameworks, such as ISO 27001, DORA, NIST, NIS-2, GDPR, etc.
- Familiarity with risk management methodologies and their application to cybersecurity.
- Quickly grasping the complexity and the business reasons for a company to perform security and adapting your communication style and the security program to make it fit for the client.
- Excellent English and German written and verbal communication skills to effectively convey complex concepts to technical and non-technical stakeholders.
- Leadership skills to manage a team and collaborate with clients and cross-functional teams.
Experience
- Proven experience in being a CISO and/or having successfully implemented ISO27k or BSI Grundschutz at clients.
This text has been machine translated. Show original
Benefits
Work-Life-Integration
Health, Fitness & Fun
More net
Job Locations
Topics that you deal with on the job
This is your employer
NVISO
As a pure cyber security consulting firm, NVISO supports clients from the financial and technology sectors as well as government agencies with a dedicated team of over 200 professionals.
Description
- Company Type
- Established Company
- Working Model
- Hybrid, Onsite
- Industry
- Consulting