Senior Information Security Specialist

01 ago - Milano
BEKO EUROPE

The Information Systems team is responsible for implementation of the enterprise architecture and the development and maintenance of the organization's computing/IT environment.
Determines and develops architectural approaches and solutions, conducts business reviews, documents current systems and develops recommendations of how to proceed with the applications.As an Information Security Senior Analyst, you will support the execution of Beko Europe's cybersecurity governance, risk, and compliance program, ensuring the security technical compliance with the European regulatory scenario (including NIS2).
You will contribute to the implementation of security policies and technical controls across IT and OT environments, supporting risk management, audit activities, and continuous improvement of the organization's security posture.ResponsibilitiesSupporting the implementation and maintenance of the Information Security Governance framework across Beko EuropeEnsuring security requirements are incorporated into projects, processes, and operational activities, including the security architectural review requirementsContributing to compliance initiatives with European cybersecurity regulations (e.G., NIS2, CRA, GDPR, EU AI Act where applicable)Assisting in the definition, update, and rollout of security policies, standards, and proceduresSupporting cybersecurity risk assessments (including IT and OT scope) and tracking remediation plansSupporting vulnerability management processes, including coordination with Global Security teams and remediation follow?upContributing to application security awareness,



promoting secure development principles and supporting risk identificationSupporting incident management activities, including coordination, documentation, and post?incident review actionsParticipating in internal and external audits (e.G., NIS2 readiness, ISO*****, financial audits), ensuring evidence collection and follow?upSupporting third?party risk management activities, including security assessments and monitoring of suppliersContributing to cybersecurity awareness initiatives across European entitiesQualificationsBachelor's or Master's degree in Computer Science, Information Security, or a related field3 – 6 years of experience in Information Security, GRC, or similar rolesGood knowledge of cybersecurity frameworks (e.G., ISO *****, NIST)Understanding of European regulatory landscape (NIS2, GDPR, cyber?related directives)Good knowledge of risk management principles and security controlsGood knowledge of application security and vulnerability management practicesFamiliarity with incident management processesStrong analytical mindset and attention to detailFluency in English,



Italian is a plusPreferred Skills and ExperienceExperience in multinational or multi?entity environmentsExposure to IT/OT security or industrial environmentsExperience supporting audits or regulatory compliance programsRelevant certifications (ISO ***** lead auditor, CISM, CISA, CISSP, CEH, CHFI are a plus)Strong communication and stakeholder collaboration skillsProblem?solving oriented, with a proactive and analytical approachAbility to work independently, demonstrating ownership and accountability for assigned activitiesCollaborative team player, able to effectively work with cross?functional teams and stakeholdersAbility to deeply understand business needs and translate them into security requirements aligned with company strategyCurious and proactive in exploring and understanding emerging risk scenarios, particularly those related to innovative technologies such as Artificial IntelligenceWhat We OfferThe salary range for this position is € 43,000 – € 55,000 gross per year.
The final offer will reflect the outcome of the recruitment process and the overall assessment of the candidate, based on objective and gender?neutral criteria, including skills, experience, qualifications and demonstrated expertise.A structured and evolving cybersecurity program in a European environmentExposure to governance, compliance, and operational security domainsCollaboration with international and cross?functional teamsContinuous learning in a fast?evolving regulatory and threat landscapeWe are an equal opportunity employer.
All applicants will be considered for employment without attention to race, sex, colour, national or social origin, ethnicity, religion, age, pregnancy, disability, sexual orientation, gender identity and expression, marital status or political opinion.
#J-*****-Ljbffr

SIOP Manager EMEA

07 ago - Burolo
Altro

Operaio/ia alimentare

07 ago - San Lorenzo Guazzone
Adecco

Ricevi nuove offerte di lavoro

Crea una Job Alert gratuita per senior information security specialist / milano

Project Manager Impianti & Cantieri – Pianificazione

07 ago - Udine
Altro

Ambassador per Eventi: Vendite, Formazione e Viaggi

07 ago - Magenta
Altro