Information Security Governance Analyst
38.000 €CRIF
pInformation Security Analyst /ppbr / /ppWe are looking for a highly talented individual to join the CRIF Information Security Governance function at global level. The candidate will support the organization in strengthening information security governance and in improving the management of strongtechnology-driven cyber risks /strong, with a specific focus on security controls effectiveness. Collaborating with the Chief Information Security Officer, IT Cybersecurity Team and Managers, the Information Security Analyst will work closely with Global Technologies functions and company departments, contributing to strongidentify, assess and mitigate Information Security risks associated with infrastructure, applications and services /strong. /ppThis position is ideal for someone passionate about information security governance and operational risk management, with a strong interest in strongpractical risk management linked to vulnerabilities, misconfigurations and security gaps /strong, and who enjoys continuously learning and sharing knowledge. /ppbr / /ppBusiness Overview: /ppCRIF is a company specializing in credit bureau and business information, outsourcing and processing services, and credit solutions. Established in 1988 in Bologna (Italy), CRIF has an international presence, operating over four continents (Europe, America, Africa, and Asia). More than 10,500 financial institutions, 600 insurance companies, 82,000 business clients, and 1,000,000 consumers use CRIF services in 50 countries daily. /ppThe Information Security Governance function is part of Global Technologies, the CRIF IT division, with over 1500 professionals distributed in 15 countries, managing 29 datacenters and 12 development hubs, committed to delivering value to businesses, driving corporate Digital Transformation through the planning, development, and implementation of end-to-end solutions, adopting leading technologies and methodologies. /ppReporting to the Chief Information Security Officer and working closely with the Cybersecurity team, the Information Security Governance function helps shape a consistent and pragmatic approach to cybersecurity across the organization. It focuses on understanding and addressing technology-driven risks, ensuring they are properly managed and embedded into governance, processes and business initiatives. It also supports customer-facing activities, including audits and security assessments, acting as a trusted point of reference on information security matters. The role acts as a bridge between cybersecurity, IT and business, promoting a solid, risk-aware culture and supporting the organization in making informed and secure decisions. /ppstrongYour Key Responsibilities: /strong /ppReporting to the CRIF Information Security Manager you will be responsible for the following: /pulliContribute to the identification, analysis and mitigation of information security risks, with a strong focus on technology-related risk drivers such as vulnerabilities, misconfigurations, patching gaps and exposure of IT assets, ensuring that remediation actions are effectively tracked and implemented. /liliAssist in Vendor and Third-Party Cybersecurity Management through assessments, audits, and periodic reviews, coordinating security assessments and remediation activities to closure, ensuring compliance with information security standards and contractual requirements. /liliSupport the development, implementation, and revision of Global Technologies Information Security policies, controls, and metrics to ensure compliance with CRIF Corporate Policies. /liliCoordinate with Global Technologies functions to ensure security requirements and controls align with technical needs, constraints, and evolving technology landscape. /liliWork closely with Cybersecurity teams worldwide to build and maintain a unified cybersecurity strategy aligned with global business needs and regulatory requirements. /liliProvide expert input to Global Technologies IT Governance functions to embed security requirements into core IT processes. /liliMaintain proactive engagement with business and staff functions to provide cybersecurity guidance in key initiatives (e.G. Awareness programs, MA integrations, new business initiatives). /liliSupport customer relationships, facilitating audits and responding to client cybersecurity requests and questionnaires. /liliSupport Internal Audit activities, coordinating cybersecurity remediation actions and monitoring control effectiveness. /li /ulpbr / /ppstrongYour Skills and Experience: /strong /pp3+ years of professional experience in Information Security Governance or Cybersecurity. /ppExperience in roles such as Security Advisory, Cybersecurity Project Program Management, IT Control Evaluation or IT Governance is a plus /ppHands-on experience in managing Information Security risk from a technical perspective, with the ability to understand and evaluate risks related to vulnerabilities, system exposures, misconfigurations and weaknesses in security controls (rather than purely theoretical or compliance-driven risk assessments). /ppBasic understanding of vulnerability management processes (e.G. scanning, prioritization, remediation tracking) and their role in defining the organization's cyber risk posture. /ppStrong knowledge of information security principles, frameworks and best practices, and the ability to apply those principles in clear and articulate way; br / experience in understanding regulatory and industry standards such as DORA, ISO standards, CIS, NIST framework, NIS directive, GDPR, etc /ppExperience in authoring security policies, standards, and supporting the measurement of cyber risk posture. /ppSolid understanding of Information Security domains including Infrastructure Network Security, Cloud Security, Application Security, Endpoint Security, Security Operations and Incident Response, DevSecOps, and Data Security. /ppAbility to understand relationships between Enterprise Architecture, business processes, and cybersecurity risks. /ppStrong communication and collaboration skills, with the ability to explain technical risks in a clear and structured way. /ppThe candidate must be a self-starter comfortable with ambiguity, with strong attention to detail, ability to work in a fast-paced, high-energy, and ever-changing environment. /ppbr / /ppWe offer a safe and inclusive environment where colleagues are encouraged to think outside the box. CRIF is committed to creating a diverse, inclusive work environment and promoting equal opportunities throughout the employee life cycle. We aim to attract and retain the best people and embracing gender, age, culture, religion and disability diversity. /ppbr / /ppWhat we offer: /ppType of contract: permanent. /ppThe Annual Salary for this position starts from €38,000 gross per year. /ppThe level of classification will be determined during the selection process based on the candidate’s profile and in accordance with the National Collective Labour Agreement (CCNL) for the Tertiary, Distribution and Services sector. /ppThe final compensation package, including any variable components (such as MBO) or additional benefits, will depend on the assessment of the candidate’s profile against the role requirements. /ppbr / /ppPursuant to Regulation (EU) 2016/679 (“GDPR”), candidates are hereby informed that their personal data will be processed exclusively for purposes related to the management of their application and the selection process. For further information on the processing of personal data and on the exercise of their privacy rights, candidates are invited to consult the full privacy notice available at the following Link, in the “Terms of Use” section, /ppbr / /p
- ...pCome Senior Cybersecurity Governance TPRM Specialist presso... ...mantenimento dei processi di Information Security Governance, Third Party Risk... ...della Sicurezza delle Informazioni (ISMS). /p ul liCoordinare... ...Third Party Risk Management, governando i processi di valutazione...ConsigliatoImpiego permanenteRemotoOrario flessibile
- ...e di valore. /p pWebuild è alla ricerca di un bInformation Security Governance Audit Specialist /b da inserire all'interno del dipartimento... .../li /ul h3Requisiti /h3 ul lib3-5 anni di esperienza /b in Information Security Governance, IT Audit o Cyber Risk; /li...Consigliato
- ...Gruppo Fastweb in ambito Cyber Security, siamo alla ricerca di un/... ...Security Monitoring Analyst /strong da inserire all’interno... ...rischi per la sicurezza delle informazioni. /ppIl ruolo prevede un forte... ...e analisi condotte dal team Information Security; br / /liliCollaborare...ConsigliatoLavoro ibridoRemoto
- pThe Senior Information Security Analyst at Perrigo Inc. is a senior contributor in the Cyber Defense team responsible for leading security investigations, incident response, threat detection and hunting, and the continuous improvement of enterprise security operations...ConsigliatoLavoro ibrido
- ph3Sr Information Security Analyst /h3 pAzienda : Perrigo Inc. Tipo Lavoro : Full Time Italy /p h3Descrizione Lavoro - Sr Information Security Analyst /h3 pAt Perrigo, we are driven by our mission to bMakes Lives Better Through Trusted Health and Wellness Solutions, Accessible...ConsigliatoTempo pienoLavoro ibridoRemotoLavoro da casa2 giorni/sett.Orario flessibile
- pAllianz is seeking a Senior Analyst for IT Information Security focused on MFA, Linux-Entra ID support, and Azure cloud security. The role emphasizes 24x7 operational support, incident resolution, and adherence to SLA. /ppThe candidate will perform risk assessments, log...
104.087 €
h3Information Security GRC Analyst 3 /h3 pSalary: €104,087 - 173,479 yearly... .../p h3Descrizione Lavoro - Information Security GRC Analyst 3 /h3... ...compliance with multiple U.S. government and commercial... ...27001:2022—while enabling secure, resilient, and efficient operations...Paga orariaTempo pienoImpiego permanente46.000 € - 49.000 €
...transformation goals. Drive end‑to‑end security solutions from conceptual design to implementation... ...to include aspects of identity access governance, data protection, security monitoring,... ...university degree in cyber security, information technology, or a related field. /li...Lavoro ibrido82.000 €
ph3Cyber Security Architect /h3 pSalary: Up to €82,000 yearly /p... ...Manager and will work within the Information Systems directorate based in... .... It is necessary that a secure environment is developed for... ...implementation, operation, governance, change management, communications...TemporaneoTempo pienoImpiego permanenteDisponibilità immediataRemotoLavoro da casa- pUk Power Networks is seeking a Cyber Security Architect to lead security design and policies across cloud and on-premise environments. You will drive security standards, runbooks, and governance to protect data, networks, and systems from threats, while guiding teams and...Lavoro ibrido
- ...financial institutions, central banks, and governments. More than 40% of the world’s largest... ...to plan, research, and design security architectures /liliDevelop, review, and... ...protection /lili5-10 years' experience in information security and IT risk management /liliStrong...
- pSizewell C Company cerca un Security Architect esperto per guidare la progettazione e la governance di soluzioni tecnologiche sicure in un ambiente regolato e critico per la sicurezza. Lavorerai con Cyber Security, Enterprise Architecture, Engineering e fornitori esterni...
- h3Senior Information Security Expert /h3 p | IT Tech Engineering | Professional | Non-Executive | Allianz Bulgaria | Full-Time | Permanent... ...years of relevant hands‑on experience in information security Governance, Risk, Compliance and proven experience with Identity...Tempo pienoImpiego permanenteLavoro ibridoRemoto
- ph3Cyber Security Analyst /h3 pAzienda : Ørsted Tipo Lavoro : Full Time Italy /p h3Descrizione... ...you keep a global green energy company secure, resillient and ready to meet evolving... ...green energy. /p pWelcome to Corporate Information Security You’ll be part of Cyber Defence...Tempo pieno
- ...strong /ppWe are seeking for astrong Cyber Security Specialist /strong to join the Global... ...the protection of the organization's information assets and supporting the continuous improvement... ...Security, Incident Response, Security Governance, and Information Security activities. /...Impiego permanenteRemoto
- pAllianz is seeking a Senior Analyst-IT Information Security to provide consultancy within Detection and Response, developing technical solutions and leading activities in cyber security. The role includes monitoring security systems, analyzing events, and coordinating...
- ph3Information Security Officer_2758 /h3pAzienda : Allianz /ppTipo Lavoro : Full Time /ppItaly /ph3Job Purpose/Role /h3pThe Information Security Officer (ISO) Malaysia is a key role within... ...regulatory Information Security-related governance requirements and their...Tempo pieno
- ...and help to build a better working world. /p pThe EY Global Information Security team is looking for new members helping manage security risk... ...inclusive experience during the recruitment process, please inform us as soon as possible about any disability-related adjustments...Disponibilità immediataOrario flessibile
- ph3Job Responsibilities /h3 pThe Cyber Security Expert role is a key contributor to securing... ...Operational Technology (OT) teams to secure plant floor networks, industrial protocols... ...such as ISO/IEC 27001 /li liCertified Information Security Manager (CISM) /li liGlobal Industrial...
31.000 €
...h3pResponsibilities: /pulliSecurity Monitoring Analysis: Monitor and analyze security alerts and events generated by detection systems to identify... ...activities by collecting and documenting relevant technical information. /liliEscalation Collaboration: Escalate complex or confirmed...42.000 € - 55.000 €
..., Elettronica, Cyber Security e Spazio. Con oltre 60... ...e industriale di Governi, Amministrazioni della... ...per la sicurezza delle informazioni e nella conformità normativa... ...principi di security governance /liliEsecuzione di... ...: ISO 27001 (Information Security) ISO 22301 (...Impiego permanenteLavoro ibrido45.000 €
ppWithin our Security structure, we are looking for a motivated and skilled Security Governance specialist with exposure to Artificial Intelligence to strengthen our security posture, enhance governance capabilities, and evolve risk management practices in alignment with...Orario flessibile- ...identità digitali. Sarai responsabile di definire modelli di governance, progettare flussi di autorizzazione e integrare soluzioni IGA... ...enterprise e cloud. /ppLa posizione prevede collaborazione con IT, Security, Compliance e Risk Management, con disponibilità a lavorare in...Lavoro ibrido
- pAllianz Bulgaria is seeking a Senior Information Security Expert to govern IS across the service lifecycle, manage IS risk, and drive IAM transformation. The role includes advisory work with stakeholders, coordinating incident response, and leading vulnerability remediation...
- ph3Overview /h3 pbCyber Security Senior Consultant - Security Strategy Governance /b /p pAt EY, we're all in to shape your future with confidence. Se cerchi un percorso di crescita in un contesto internazionale dove le tue idee contano davvero, sei nel posto giusto. In...Lungo termine
- pGruppo Credem cerca un Senior IT Auditor da inserire nel servizio internal audit. L'ufficio information technology security audit è il cuore della sorveglianza sui processi ICT, business continuity e security. /ppIl candidato gestirà la valutazione dell'efficacia dei controlli...Lavoro ibrido
50.000 € - 60.000 €
...di uno dei nostri Key Client, multinazionale operante in ambito Aerospazio Difesa, siamo alla ricerca di un/una strongCyber Security Governance Expert /strongda inserire presso la struttura di Cyber Resilience. /ppbr / /ppstrongLa figura dovrà essere disponibile ad effettuare...Impiego permanente- ...Time Italy /p pDescription /p pLavorerai all'interno del servizio internal audit del Gruppo Credito Emiliano, l'ufficio information technology security audit è il cuore della sorveglianza sui processi ICT, business continuity e security. /p pcome auditor IT sarai...Tempo pienoLavoro ibrido
- ...Technology Risk a Roma cerca un Junior Consultant per progetti IAM e gestione identità, con focus su controllo accessi, provisioning e governance. Ruolo in ambiente internazionale, con opportunità di formazione avanzata, smart working e percorsi di crescita in EY. /ppLa...Smart workingApprendistatoLavoro ibrido
35.000 € - 40.000 €
...esperto / a e motivato / a per entrare nel nostro team interno di Governance, Risk Compliance. /ppbr / /ppLa persona selezionata avrà un... ...ai sensi del Dlgs del 7 maggio 2026, n.Ro 96. Le ulteriori informazioni di dettaglio possono essere richieste/saranno fornite...Smart workingLavoro ibrido