drjobs Information Security GRC Lead

Information Security GRC Lead

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Lisbon - Portugal

Monthly Salary drjobs

Not Disclosed

drjobs

Salary Not Disclosed

Vacancy

1 Vacancy

Job Description

Our client is a company that is expanding greatly in the energy market and is one of the largest methanol producers in the world. They work on EPC projects in various parts of the world.

Main Responsibilities:

  • Drive the development and expansion of the companys information security GRC function ensuring alignment with strategic objectives and compliance requirements.
  • Lead enterprise-wide security risk assessments covering operational and regulatory dimensions.
  • Manage internal and external audit engagements to guarantee adherence to standards such as ISO 27001 GDPR NIS2 among others.
  • Advocate for a robust security culture by promoting risk awareness and compliance across all departments.
  • Engage closely with stakeholders across IT Legal HR and Operations to ensure clarity and alignment with the GRC framework.
  • Oversee the security awareness and training program including the creation of content and educational materials.
  • Track the implementation and effectiveness of security controls throughout the organization and report findings.
  • Stay up to date with evolving regulatory obligations and ensure timely updates to internal policies and procedures.
  • Provide leadership with regular updates on risk posture compliance status and key metrics.

Requirements:

  • Demonstrated experience in leading small teams in GRC-focused roles particularly within global enterprises.
  • Ability to operate effectively at both strategic planning and hands-on execution levels.
  • Strong organizational skills with the capacity to manage multiple priorities simultaneously.
  • At least 5 years of experience in information security GRC roles.
  • In-depth knowledge of international data protection and cybersecurity regulations (e.g. GDPR NIS2 DORA SOC).
  • Familiarity with widely accepted frameworks and standards such as ISO 27001 and NIST.
  • Solid experience with risk management methodologies (e.g. ISO 31000 NIST RMF FISMA).
  • Preferred certifications: CISM CRISC CISSP ISO 27001 Lead Implementer or equivalent.
  • Nice to have: Experience in industries like petrochemicals oil & gas is considered an asset.

Employment Type

Full Time

Company Industry

About Company

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.