Pubblica annuncio gratuito
Ricevi nuove offerte di lavoro

Crea una Job Alert gratuita per cybersecurity governance, risk & compliance (grc) consultant / san donato milanese

Cybersecurity Governance, Risk & Compliance (GRC) Consultant

Pubblicato il 18-09-2026 - Lifted, an Upwork Company™ in San Donato Milanese

Company Description

An enterprise technology client is seeking an experienced Information Security Professional to support the protection of COET srl’s information systems and data from cybersecurity threats.

The selected consultant will work closely with the Hitachi Energy Cybersecurity team to identify, assess, monitor, and report cybersecurity risks across the COET organization.

This is a temporary, tempo parziale consulting opportunity based in Italy

Job Description

This opportunity is ideal for an experienced Information Security professional with knowledge of cybersecurity governance, risk management, compliance, and incident response.

What You’ll Do:

- Conduct cybersecurity risk assessments for COET srl.
- Analyze threats, vulnerabilities, control effectiveness, and residual risks.
- Maintain and update cybersecurity risk registers.
- Track risk mitigation and remediation activities through completion.
- Recommend ways to improve the efficiency, consistency, and effectiveness of Information Security operations.
- Develop and monitor cybersecurity policies, standards, and control requirements.
- Review risk assessments, mitigation plans, exceptions, and risk acceptance requests.
- Support cybersecurity governance forums and reporting activities.
- Assist with internal and external cybersecurity audits.
- Coordinate evidence collection and remediation tracking.
- Assess compliance with Hitachi Energy cybersecurity standards and applicable country regulations, including NIS2.
- Support control assessments and gap analyses.
- Develop risk metrics, dashboards, and management reports.
- Prepare materials for management and governance reviews.
- Escalate significant cybersecurity risks and emerging trends.
- Collaborate with IT, Product Security, IAM, Legal, Procurement, Privacy,



and business teams.
- Provide guidance on cybersecurity risk management processes and requirements.
- Promote cybersecurity awareness and risk-informed decision-making.

Qualifications

Qualifications

Nice to Haves:

- Experience in Information Security governance, risk management, compliance, and incident response.
- Knowledge of common cybersecurity frameworks and regulations, such as NIST, NIS2, ISO 27001, and GDPR.
- CISSP, CISM, or an equivalent certification is desirable.
- Fluency in both Italian and English.
- Strong communication and stakeholder management skills.
- Ability to work independently and collaborate with cybersecurity and business teams.

Deliverables

- Cybersecurity risk assessments and updated risk registers.
- Risk mitigation and remediation tracking.
- Cybersecurity policies, standards, and control requirements.
- Audit evidence, control assessments, and gap analysis support.
- Risk metrics, dashboards, and management reports.
- Governance review materials and cybersecurity reporting.

Location Requirement

- On-site presence at COET premises in San Donato Milanese, Italy, at least 3 times per month.

Additional Information

- Category: Information Security & Compliance
- Engagement Type: Independent Contractor
- Duration: September 14, 2026 to September 14, 2027
- Country: Italy
- Engagement: Temporary, part-time consulting opportunity
- The client is still evaluating the appropriate engagement structure. The selected talent may ultimately be engaged through an Employer of Record (EOR) arrangement rather than as an Independent Contractor.
- Candidates should be comfortable proceeding under either engagement structure. If EOR is selected, additional onboarding requirements and timelines may apply before the engagement begins.

» RISPONDI A QUESTO ANNUNCIO
Altri Annunci
Database Admin - Aerospace
2026-09-30 07:01:01 - Mc Engineering - Torino
Descrizione azienda Faccia clic su "Candidati" qui sotto per inviare la sua candidatura. Si assicuri che il suo CV sia aggiornato e di aver prima letto le specifiche del lavoro. MC Engineering è una dinamica s [...]
Addetto/a sicurezza ASPP
2026-09-30 07:00:59 - Linkedin - Trento
La Strabag Spa è l’Azienda italiana del Gruppo multinazionale Strabag, leader indiscusso nel settore delle costruzioni. L’innovazione delle tecnologie, il rispetto dell’ambiente e della sicurezza, l’attenzi [...]
Ricevi nuove offerte di lavoro

Crea una Job Alert gratuita per cybersecurity governance, risk & compliance (grc) consultant / san donato milanese

Inventory Integrity & Warehouse Exceptions Specialist
2026-09-30 07:00:58 - Jd.Com - Bardi
JD Logistics, the logistics arm of , is expanding in Italy and seeking a Warehouse Exception Handler for our Milan area hubs. Controlli attentamente tutta la documentazione richiesta per la candidatura prima di fa [...]
Progettista Meccanico Senior - Macchine Automatiche
2026-09-30 07:00:58 - Manpower MP PERM CONS CENTRO NORD - Reggio Emilia
Manpower Professional azienda specializzata nella ricerca e selezione di Professional e Middle Manager offre un ruolo di Progettista Meccanico Senior presso realtà operante nel settore delle macchine e impianti per [...]