Crea un profilo in modo da poter essere trovato dalle aziende, ottenere offerte di lavoro più adatte alle tue esigenze e candidarti più velocemente.
  • Cerca lavoro
  • Preferiti
  • Crea CV
    Novità
  • Stipendi
  • Iscrizioni

Information Security Governance Analyst

38.000 €
Lavoro temporaneo

CRIF

We are looking for a highly talented individual to join the CRIF Information Security Governance function at global level. The candidate will support the organization in strengthening information security governance and in improving the management of technology-driven cyber risks , with a specific focus on security controls effectiveness. Collaborating with the Chief Information Security Officer, IT Cybersecurity Team and Managers, the Information Security Analyst will work closely with Global Technologies functions and company departments, contributing to identify, assess and mitigate Information Security risks associated with infrastructure, applications and services .

This position is ideal for someone passionate about information security governance and operational risk management, with a strong interest in practical risk management linked to vulnerabilities, misconfigurations and security gaps , and who enjoys continuously learning and sharing knowledge.

Business Overview:

CRIF is a company specializing in credit bureau and business information, outsourcing and processing services, and credit solutions. Established in 1988 in Bologna (Italy), CRIF has an international presence, operating over four continents (Europe, America, Africa, and Asia). More than 10,500 financial institutions, 600 insurance companies, 82,000 business clients, and 1,000,000 consumers use CRIF services in 50 countries daily.

The Information Security Governance function is part of Global Technologies, the CRIF IT division, with over 1500 professionals distributed in 15 countries, managing 29 datacenters and 12 development hubs, committed to delivering value to businesses, driving corporate Digital Transformation through the planning, development, and implementation of end-to-end solutions, adopting leading technologies and methodologies.

Reporting to the Chief Information Security Officer and working closely with the Cybersecurity team, the Information Security Governance function helps shape a consistent and pragmatic approach to cybersecurity across the organization. It focuses on understanding and addressing technology-driven risks, ensuring they are properly managed and embedded into governance, processes and business initiatives. It also supports customer-facing activities, including audits and security assessments, acting as a trusted point of reference on information security matters. The role acts as a bridge between cybersecurity, IT and business, promoting a solid, risk-aware culture and supporting the organization in making informed and secure decisions.

Your Key Responsibilities:

Reporting to the CRIF Information Security Manager you will be responsible for the following:

  • Contribute to the identification, analysis and mitigation of information security risks, with a strong focus on technology-related risk drivers such as vulnerabilities, misconfigurations, patching gaps and exposure of IT assets, ensuring that remediation actions are effectively tracked and implemented.
  • Assist in Vendor and Third-Party Cybersecurity Management through assessments, audits, and periodic reviews, coordinating security assessments and remediation activities to closure, ensuring compliance with information security standards and contractual requirements.
  • Support the development, implementation, and revision of Global Technologies Information Security policies, controls, and metrics to ensure compliance with CRIF Corporate Policies.
  • Coordinate with Global Technologies functions to ensure security requirements and controls align with technical needs, constraints, and evolving technology landscape.
  • Work closely with Cybersecurity teams worldwide to build and maintain a unified cybersecurity strategy aligned with global business needs and regulatory requirements.
  • Provide expert input to Global Technologies IT Governance functions to embed security requirements into core IT processes.
  • Maintain proactive engagement with business and staff functions to provide cybersecurity guidance in key initiatives (e.g. Awareness programs, M&A integrations, new business initiatives).
  • Support customer relationships, facilitating audits and responding to client cybersecurity requests and questionnaires.
  • Support Internal Audit activities, coordinating cybersecurity remediation actions and monitoring control effectiveness.

Your Skills and Experience:

3+ years of professional experience in Information Security Governance or Cybersecurity.

Experience in roles such as Security Advisory, Cybersecurity Project & Program Management, IT Control Evaluation or IT Governance is a plus

Hands-on experience in managing Information Security risk from a technical perspective, with the ability to understand and evaluate risks related to vulnerabilities, system exposures, misconfigurations and weaknesses in security controls (rather than purely theoretical or compliance-driven risk assessments).

Basic understanding of vulnerability management processes (e.g. scanning, prioritization, remediation tracking) and their role in defining the organization's cyber risk posture.

Strong knowledge of information security principles, frameworks and best practices, and the ability to apply those principles in clear and articulate way; experience in understanding regulatory and industry standards such as DORA, ISO standards, CIS, NIST framework, NIS directive, GDPR , etc

Experience in authoring security policies, standards, and supporting the measurement of cyber risk posture.

Solid understanding of Information Security domains including Infrastructure & Network Security, Cloud Security, Application Security, Endpoint Security, Security Operations and Incident Response, DevSecOps, and Data Security.

Ability to understand relationships between Enterprise Architecture, business processes, and cybersecurity risks.

Strong communication and collaboration skills, with the ability to explain technical risks in a clear and structured way.

The candidate must be a self-starter comfortable with ambiguity, with strong attention to detail, ability to work in a fast-paced, high-energy, and ever-changing environment.

We offer a safe and inclusive environment where colleagues are encouraged to think outside the box.

CRIF is committed to creating a diverse, inclusive work environment and promoting equal opportunities throughout the employee life cycle.

We aim to attract and retain the best people and embracing gender, age, culture, religion and disability diversity.

What we offer:

Type of contract: permanent.

The Annual Salary for this position starts from €38,000 gross per year.

The level of classification will be determined during the selection process based on the candidate’s profile and in accordance with the National Collective Labour Agreement (CCNL) for the Tertiary, Distribution and Services sector.

The final compensation package, including any variable components (such as MBO) or additional benefits, will depend on the assessment of the candidate’s profile against the role requirements.

Pursuant to Regulation (EU) 2016/679(“GDPR”), candidates are hereby informed that their personal data will be processed exclusively for purposes related to the management of their application and the selection process. For further information on the processing of personal data and on the exercise of their privacy rights, candidates are invited to consult the full privacy notice available at the following Link, in the “Terms of Use” section,

#J-18808-Ljbffr
Offerta di lavoro pubblicata 1 giorno fa
Offerte di lavoro simili
  • 38.000 €

     ...Information Security Analyst We are looking for a highly talented individual to join the CRIF Information Security Governance function at global level. The candidate will support the organization...  ...in making informed and secure decisions. Your Key Responsibilities... 
    Consigliato
    Impiego permanente

    CRIF

    Bologna
    1 giorno fa
  • pCRIF is seeking a skilled Information Security Analyst to strengthen governance and manage technology-driven cyber risks at a global level in Bologna. You will work with the CIO, IT Cybersecurity Team and business units to identify, assess and mitigate security risks across... 
    Consigliato

    CRIF

    Bologna
    12 ore fa
  •  ...In questa posizione lavori all'interno del cluster Strategy Governance per supportare CISO/CSO e top management con governance, compliance...  ...e migliorare Sistemi di Gestione per la Sicurezza delle Informazioni e la Continuità Operativa secondo standard ISO/NIST Sviluppare... 
    Consigliato
    Remoto
    Orario flessibile

    Business Integration Partners

    Bologna
    1 giorno fa
  •  ...Application Architecture & Security per progettare soluzioni IT,...  ...nuovi progetti e proteggere le informazioni aziendali. Gestisci...  ...Gestione di sistemi di identity governance e modelli RBAC, multi-factor...  ...degli standard ISO/IEC sull’information security Ottima conoscenza... 
    Consigliato

    BRT

    Bologna
    1 giorno fa
  •  ...progettare, sviluppare e portare in produzione soluzioni di Cyber Security per clienti leader di mercato. Lavorerai a stretto contatto...  ...sistemi di detection, framework di security assessment e governance automation. Avrai opportunità di crescita tecnica e consulenziale... 
    Consigliato

    Reply

    Bologna
    1 giorno fa
  •  ...Overview In questa posizione, entri nel cluster Strategy Governance per supportare DPO/CISO/ICT Manager nel definire strategie conformi...  ...(cronoprogrammi) Progettazione e utilizzo di security dashboard con KPI/KRI per la governance della compliance Definizione... 
    Remoto
    Orario flessibile

    Business Integration Partners

    Bologna
    1 giorno fa
  • 40.000 € - 50.000 €

     ...questo contesto dinamico e sfidante, stiamo cercando un/una Cyber Security Specialist. Una figura con spiccata autonomia operativa,...  ..., coordinerai le attività di remediation, incident response e governance, collaborando con il team IT/Infrastrutture e supervisionando... 
    Impiego permanente

    desmo®

    Bologna
    1 giorno fa
  •  ...clients and stakeholders, while developing both technical and business competencies. The role involves hybrid work, structured training, and exposure to IT governance practices (ITIL, PRINCE2, COBIT, ISO 27001) within an international, dynamic environment. /p #J-18808-Ljbffr
    Lavoro ibrido

    HSPI S.p.A.

    Bologna
    11 ore fa
  •  ...Lavorerai all'interno del team Strategy Governance per supportare DPO/CISO/ICT Manager,...  ...Sistemi di Gestione per la Sicurezza delle Informazioni (ISO 27001) Eseguire risk assessment...  ...Progettare e utilizzare security dashboard con KPI/KRI per governance e... 
    Part-time
    Remoto
    Orario flessibile

    Business Integration Partners

    Bologna
    1 giorno fa
  •  ...Gruppo Sicuritalia cerca Addetto/a alla Security da inserire nel team operativo per l’erogazione di servizi di sicurezza non armata presso una grande struttura GDO a Bologna. È richiesto domicilio/available turno diurno e disponibilità a lavorare su turni, lunedì‑domenica... 
    Turni
    Turno di giorno

    Sicuitalia

    Bologna
    11 ore fa
  • 15.000 € - 17.940 €

    During Spa, Agenzia per il lavoro, filiale di Reggio Emilia, ricerca per azienda cliente una/o Addetta/o al Front Office e controllo accessi presso istituto bancario sito a Bologna (BO) . La figura ricercata si occuperà di controllare gli accessi presso la struttura...
    40 h/sett.
    Turno di pomeridiano
    Dal lunedì al venerdì
    Turno di mattina
    2 turni

    During - Filiale Di Reggio Emilia (Re)

    Bologna
    1 giorno fa
  • 15.000 € - 17.940 €

     ...età e tutte le nazionalità, ai sensi dei decreti legislativi 215/03 e 216/03. I candidati ambosessi sono invitati a leggere su l'informativa sulla privacy ai sensi dell art.13 del Regolamento (UE) 2016/679 sulla protezione dei dati (GDPR), D.Lgs. 196/03. #J-18808-... 
    Disponibilità immediata
    40 h/sett.
    Turno di pomeridiano
    Dal lunedì al venerdì
    Turno di mattina
    2 turni

    During s.p.a. filiale di reggio emilia (re)

    Bologna
    1 giorno fa
  •  ...SYNERGIE SEARCH, brand di Synergie Italia, cerca Addetto/a sistemi informativi e segreteria per Ente Ecclesiastico a Bologna. Il ruolo è nell’area amministrativa e offre un supporto centrale tra Direzione, uffici interni e interlocutori esterni. La posizione prevede... 
    Tempo determinato

    Synergie Sede

    Bologna
    1 giorno fa
  •  ...Ecclesiastico istituzionale attivo nella gestione e valorizzazione del patrimonio di immobili: Posizione: Addetto/a sistemi informativi e segreteria La risorsa sarà inserita all’interno dell’area amministrativa con un ruolo centrale di supporto organizzativo e... 
    Impiego permanente
    Tempo determinato

    Synergie Italia S.p.a.

    Bologna
    9 giorni fa
  • During SpA, Agenzia per il lavoro, filiale di Reggio Emilia, cerca per azienda cliente una/o Addetta/o al Front Office e controllo accessi presso istituto bancario sito a Bologna (BO). La figura si occuperà di controllare gli accessi e registrare gli utenti; è richiesta...
    Disponibilità immediata
    40 h/sett.
    Turno di pomeridiano
    Dal lunedì al venerdì
    Turno di mattina
    2 turni

    During s.p.a. filiale di reggio emilia (re)

    Bologna
    1 giorno fa
  • pMIB SRL ricercache un Addetto/a per gestire il centralino e controllare gli accessi durante le attività notturne. Il ruolo prevede gestione delle chiamate, registrazione delle richieste e assistenza ai visitatori nel contesto di un reparto tecnologico. /ppSi offre contratto...
    Tempo pieno
    Tempo determinato
    Turno di notte

    MIB SRL

    Casalecchio di Reno (BO)
    1 giorno fa
  •  ...Dinova sta cercando un Offensive Cyber Security Expert per potenziare il team di Roma. Ruolo chiave in penetration testing, vulnerability management e advisory tecnico. Sarai coinvolto in attività di identificazione, analisi e mitigazione delle vulnerabilità su infrastrutture... 
    Lavoro ibrido

    Dinova

    Bologna
    1 giorno fa
  •  .../ppbr/ppbMore About the Opportunity: /b /ppThis role offers a unique opportunity to work with a global leader in the Technology, Information and Internet industry, contributing to the protection of adolescent and child welfare in digital and operational environments. You... 
    Tempo pieno
    Remoto

    Hire Feed

    Bologna
    1 giorno fa
  •  ...role you will conduct hands-on malware analysis and threat intelligence work to protect OT/IoT environments. You'll work within the Security Research team to understand malicious behavior, craft indicators, and contribute to TI infrastructure. You will share technical... 
    Orario flessibile

    Nozomi Networks

    Bologna
    1 giorno fa
  • ullibRole: /b Cyber Security Analyst (Remote) /lilibLocation: /bRemote (Work from Anywhere) /li /ulpbr/ppbRole Overview: /b /ppWe are hiring...  ...opportunity to work with a global leader in the Technology, Information and Internet industry, contributing to the protection of... 
    Tempo pieno
    Remoto

    Hire Feed

    Bologna
    12 ore fa
  •  ...una solida competenza tecnica. La Posizione: Offensive Cyber Security Expert Per il potenziamento del team di Roma di Cyber...  ...reportistica e l'interazione in contesti internazionali. Altre informazioni Contratto a Tempo Indeterminato con pacchetto retributivo (... 
    Smart working
    Impiego permanente
    Lavoro ibrido
    Orario flessibile

    Dinova

    Bologna
    1 giorno fa
  •  ...attiva nel settore dell'ingegneria civile e cerca un/una Cyber Security Specialist per presidiare l'ecosistema di cybersecurity del...  ...posizione hands-on coordinerai remediation, incident response e governance, gestirai SOC/IR/CTI e manterrai aggiornati l'Incident Response... 

    desmo®

    Bologna
    1 giorno fa
  • pBiorsaf S.r.l. cerca una figura per gestire l IT dell’azienda: rete, dispositivi e sicurezza. Il ruolo comprende l’installazione e il setup iniziale di dispositivi IoT forniti ai clienti, con focus sull’ambiente di lavoro e sulla sicurezza. /ppSi occuperà di reti, endpoint...
    Smart working

    Biorsaf S.r.l.

    Bologna
    1 giorno fa
  •  ...WHAT WE ARE LOOKING FOR IT Security Specialist | Space & European...  ...institutions, contributing to secure, compliant, and high-...  ...security operations, security governance, or infrastructure security,...  ...collaborative mindset. EXTRA INFORMATION Location: Rome (Anagnina area... 
    Lavoro ibrido
    Disponibilità immediata
    Lavoro da casa
    Permesso di lavoro
    Orario flessibile

    Etinars

    Bologna
    2 mesi fa
  • 30.000 € - 32.000 €

     ...Network & Security Resident Specialist Entra in un team Enterprise e costruisci la tua carriera nel networking di nuova generazione! Hai già acquisito le basi del networking e vuoi crescere lavorando su infrastrutture Enterprise, tecnologie Cisco e soluzioni di sicurezza... 
    Impiego permanente
    Tempo determinato
    Lavoro ibrido
    Remoto
    Turni
    8 h/giorno

    Var Group

    Bologna
    18 giorni fa
  •  ...Ruolo Il/la candidato/a sarà inserito/a all’interno della divisione Cyber Security di aizoOn nel ruolo di OT Security Engineer, con l'opportunità di lavorare sia su progetti per i clienti che su iniziative interne. La figura selezionata sarà coinvolta nella progettazione... 
    Remoto

    Aizoon

    Bologna
    1 giorno fa
  •  ...Overview As an AI Security Specialist, you will lead security for AI-powered systems and ML infrastructure within Deel. You will set...  ...innovate with new AI tools. This is an opportunity to influence secure, scalable AI across a global platform. Retribuzione /... 
    Remoto
    Orario flessibile

    Deel

    Bologna
    1 giorno fa
  •  ...Ambiente collaborativo e innovativo Policy AGILE per work-life integration Responsabilità Architettura e design di Network Security basate su principi moderni, con focus su visibilità, controllo e Zero Trust Progettazione e valutazione di soluzioni SASE/SSE (... 
    Orario flessibile

    Business Integration Partners

    Bologna
    1 giorno fa
  • 16.600 € - 18.000 €

     ...Sicuritalia cerca Addetti/e alla Security da impiegare nel team operativo per servizi di sicurezza non armata presso un’importante sede cliente nel settore GDO a Bologna. Si richiede disponibilità a lavori su turni diurni, lunedì–domenica, buone doti relazionali e... 
    Part-time
    Turni
    Turno di giorno

    Sicuritalia

    Bologna
    1 giorno fa
  •  ...Cosa aspettarti Deda Tech è parte del Gruppo Deda, specializzata in Managed Cloud & Security Services, e porta evoluzione e semplificazione nelle aree infrastruttura, cybersecurity e networking. Investendo in competenze ed ingegnerizzando soluzioni e processi. Cosa... 
    Orario flessibile

    Deda

    Bologna
    un mese fa