Security Governance Analyst, Italy
40.000 € - 50.000 €ion
About us:
We are a community of visionary innovators, dedicated to providing pioneering software and consultancy services to financial institutions, trading firms, central banks, governments, and corporations around the world. We strive to simplify the way people work. We do that by providing workflow and process automation software, as well as providing real-time data and business intelligence to help people make better decisions. We are 13,000+ employees, we operate globally with 80+ global offices, and we serve over 4,800+ customers worldwide.
For the strengthening of the Chief Information Security Office (CISO) function within Cedacri companies, part of ION Group, we are looking for talented professionals to grow their career as Security Governance Analyst . This position is targeted at candidates with 2–5 years of relevant experience in Information Security Governance, Cybersecurity Risk Management, or ICT Compliance. Selected candidates will be placed in a dynamic and innovative environment and will collaborate with cross-functional teams to support cybersecurity governance initiatives across the organization.
Learn more at .
Your role
Your key duties and responsibilities
- Support the implementation and continuous improvement of the Information Security Governance framework
- Support the implementation, maintenance, and continuous improvement of the Information Security Governance framework across the organization.
- Develop, maintain, and review cybersecurity policies, standards, procedures, and governance documentation.
- Support cybersecurity risk management activities, including risk assessments, remediation tracking, exception management, and risk treatment planning.
- Monitor the effectiveness and maturity of security controls and ensure governance activities remain aligned with organizational objectives and regulatory requirements.
- Maintain governance evidence, action plans, ownership records, dependencies, and remediation initiatives to support audit readiness and effective reporting.
- Prepare KPI/KRI dashboards for management on coverage, timeliness and effectiveness of controls, including asset/API inventories, SBOM/SCA coverage, patching performance, exception aging and action-plan closure.
- Collaborate with Technology, Risk, Compliance, Legal, and Business stakeholders to ensure alignment with security governance requirements.
- Support internal audits, external audits, regulatory assessments, and client due diligence activities.
- Contribute to the implementation of regulatory and industry frameworks, including DORA, NIS2, ISO 27001, NIST CSF, and related standards.
- Support governance transformation initiatives and continuous improvement programs aimed at strengthening cybersecurity oversight capabilities.
Other duties
We might ask you to perform other tasks and duties as your role expands.
Your skills, experience, and qualifications required
- Master's degree in Cybersecurity, Computer Science, Computer Engineering, Information Technology, Law, Management Engineering, or a related field (with honors).
- At least 2-5 years of experience in Information Security Governance, ICT Risk Management, Cybersecurity Compliance, Internal Audit, or related functions.
- Good understanding of cybersecurity governance principles, governance requirements for vulnerability management, patch management, incident response, secure SDLC, third-party risk and operational resilience.
- Knowledge of international standards and frameworks such as ISO 27001, NIST CSF, COBIT, CIS Controls, DORA, and NIS2.
- Experience supporting audit activities, compliance assessments, regulatory initiatives, or governance reporting processes.
- Ability to translate complex technical topics into clear governance, risk, and management reporting outputs.
- Strong analytical, organizational, and stakeholder management skills.
- Advanced knowledge of Microsoft Excel and PowerPoint.
- Excellent knowledge of Italian and English.
- Professional certifications such as ISO 27001, CISA, CRISC, Security+, or equivalent would be considered a plus.
What we offer:
- Permanent employment contract
- Italian National Collective Labour Agreement for the Metalworking Industry (CCNL Metalmeccanico)
- Gross Annual Salary (RAL) ranging from €40,000 to €50,000 , depending on experience, skills, and qualifications
- Job grade to be determined upon completion of the selection process, with final assessment between B2 and B3 level
- Opportunity to join a leading international technology group operating in the financial services industry
- Exposure to enterprise-wide cybersecurity governance activities in a dynamic and international environment
Location:
Milan.
Important notes:
According to the Italian Law (L.68/99), candidates belonging to the protected categories list will be given priority.
50.000 € - 60.000 €
...trading firms, central banks, governments, and corporations around the... ...strengthening of the Chief Information Security Office (CISO) function within... ...to the design and validate secure architectures for enterprise... ...strategies. Design and govern security controls related to...ConsigliatoTempo pienoImpiego permanenteLavoro ibrido25.000 € - 32.000 €
...primaria società di consulenza operante nell'ambito della trasformazione digitale, della governance IT e della sicurezza informatica, siamo alla ricerca di uno/una Cyber Security Engineer_appartenente alle categorie protette da inserire all'interno del team dedicato...ConsigliatoSmart working32.000 € - 43.000 €
...Cyber Security Senior Consultant – Security Strategy & Governance At EY, we’re all in to shape your future with confidence. Se cerchi un percorso di crescita in un contesto internazionale dove le tue idee contano davvero, sei nel posto giusto. In EY puoi dare...ConsigliatoSmart workingLungo termineLavoro ibrido30.000 € - 38.000 €
Silicondev, azienda leader nell’area IT e Software Development, è alla ricerca di un IAM Governance Specialist da inserire in contesti enterprise complessi e strutturati. Responsabilità principali: • Gestione strutturata delle campagne di ricertificazione degli...ConsigliatoTempo pienoImpiego permanenteTempo determinatoLavoro ibrido35.000 € - 45.000 €
...tecnologico del Paese, cerca in ambito Information Technology – Cyber Security_ Governance, Risk & Compliance – un profilo di Cybersecurity Governance... ...con almeno 3 anni di esperienza al quale affidare il governo dei processi di compliance NIS2 e risk management, i...Consigliato- ...Information Security Professional – External Consultant Location: San Donato Milanese, Italy Working Arrangement: Temporary External Consultancy On-site Requirement... ...opportunity to contribute to cybersecurity governance, risk management, compliance, and...TemporaneoPart-timeOrario flessibile
- ...client, a leading automobile manufacturer, is recruiting for an Information System Implementation Specialist to join their business in Italy. Position Title: Information System Implementation Specialist Position Type Permanent Start Date: ASAP Location: Milan, Italy...Impiego permanenteDisponibilità immediata
34.500 € - 48.000 €
...infrastructure and elevating our security posture, integrating cutting-... ...to our information security governance program (ISO/IEC 27001, NIS2)... ...and track KPIs relevant to a secure, well-governed asset and... ...team. Location : HQ Milan, Italy (Hybrid - allowing employees...Tempo pienoImpiego permanenteLavoro ibridoRemoto- ...to build a better working world. The EY Global Information Security team is looking for new members helping manage security risk using... ...Security team is looking to hire a resource, based in Milan, Italy to support that growth. The EY Global Information Security...Disponibilità immediataOrario flessibile
27.000 € - 32.000 €
...and cost-effective. What you'll do As part of our Cyber Security team. Your responsibilities will include: Working on... ...collaborate, and celebrate together. Location : Milan or Padua (Italy), with a hybrid working model. The selection process We...Stage/TirocinioLavoro ibridoOrario flessibile- Every 30 minutes, a stroke patient who could have been saved either dies or is permanently disabled because they were treated in the wrong hospital. Our mission is clear: to increase the number of patients treated in stroke-ready hospitals and to optimize the quality...Part-timeTempo pienoDisponibilità immediataOrario flessibile
- ...Licensed Security Guard (Guardia Particolare Giurata) – Milan and the Province of Milan Rangers Battistolli is looking for Licensed... ...multinational company operating in the IT sector. Join one of Italy’s leading security companies and be part of a team protecting a...Tempo pienoImpiego permanenteStage/TirocinioTurni
- ...Rangers Battistolli is looking for Licensed Security Guards (Guardie Particolari Giurate) to... ...Giurata) – Liscate (MI) Join one of Italy’s leading security companies and be part... ..., as well as public institutions and government administrations. Inclusivity and...Tempo pienoImpiego permanenteStage/TirocinioTurni
- ...technology, data, and financial services? Join Euronext Securities as a Functional Analyst Intern within our Software Factory team. You will be part... ...entire value chain. Join us and play a key role in advancing secure and resilient securities issuance and settlement. Join...Stage/TirocinioOrario flessibile
180 - 200 €/giorno
...selezione di personale ICT, ricerca per proprio cliente un/una Security Engineer - WAF / Application Security Full remote Ricerchiamo un... ...di API Security, architetture Zero Trust e principi di Secure Application Design; Esperienza con normative e framework di sicurezza...Tempo pienoContratto con partita IVALavoro ibridoRemoto- ...Battistolli is looking for Licensed Security Guards (Guardie Particolari... ...when entering and exiting secure areas. Monitor traffic... ...according to previous experience, governed by the National Collective... ...location : Binasco (MI), Italy Do you want to make a difference...Tempo pienoImpiego permanenteStage/TirocinioTurni
- ...Battistolli is looking for Aspiring Licensed Security Guards (Aspiranti Guardie Particolari... ...Giurata) – Milan Join one of Italy’s leading security companies and be part... ...companies, as well as public institutions and government administrations. Inclusivity and...TemporaneoTempo pienoImpiego permanenteStage/TirocinioTurni
50.000 €
...di sicurezza di riferimento per l'intero ciclo di vita dell'AI (Secure MLOps) Condurre l'attività di Threat Modeling specifiche per... ...cui tutti si sentano protagonisti e valorizzati. L’Area di Governo Chief Security Officer presidia in modo integrato la sicurezza...Orario flessibile- ...prodotto consolidata nel mercato delle soluzioni e dei servizi ICT. Per ampliamento dell’organico ricerchiamo figura di OT Security Analyst - Incident Responder L’ OT Security Analyst – Incident Responder sarà parte integrante del Security Operations Center (SOC...Tempo pienoLavoro ibrido
35.000 € - 40.000 €
...Cybersecurity Analyst – Security Operations (SOC) Finomnia è una realtà fintech che lavora ogni giorno per rendere più semplici, efficienti e affidabili i processi finanziari di aziende e istituzioni. Costruiamo e gestiamo piattaforme applicative critiche, con...Lavoro ibridoRemoto- ...career step. WHAT WE ARE LOOKING FOR IT Security Specialist | Space & European Programmes... ...of space institutions, contributing to secure, compliant, and high-performance IT environments... ...in IT security operations, security governance, or infrastructure security, ready to...Lavoro ibridoDisponibilità immediataLavoro da casaPermesso di lavoroOrario flessibile
700 €/mese
...e art 18 L68/99, è alla ricerca per un'importante realtà nel fashion Luxury, di un professionista da inserire come Corporate Security Specialist - categoria protetta L.68/99 (m/f/nb) Luogo di lavoro: Milano centro Si offre: contratto a tempo indeterminato; range...Smart workingImpiego permanente1 giorno/sett.Dal lunedì al venerdì- ...first platform designed to guarantee full governance over the streaming process, the highest... ...we are looking for a: Junior IT Security Specialist We are seeking a motivated... ...remediation support, monitoring activities, and secure development practices. Key...Tempo pienoOrario flessibile
- ...Cybrain è una società specializzata in Cyber Security e sviluppo di software innovativi, partner strategica di TEHA Group , primo... ...: un profilo che unisca solide fondamenta di Cyber Security: governance e offensive, alla capacità di metterle al servizio della nuova...Tempo pienoImpiego permanenteRemoto
- ...Collaborative Solutions Enterprise network Physical security Cyber security Dalla consulenza alla progettazione, dalla... ...Cybersecurity Compliance Consultant da inserire all’interno dell’area Governance, Risk & Compliance (GRC). La figura sarà coinvolta in progetti...Part-timeTempo pienoLavoro ibridoOrario flessibile
- ...OTB Spa is looking for a Cyber Security Specialist to join the ICT Infrastructure & Operations department with the purpose of safeguarding... ...management certification, such as CompTIA Cybersecurity Analyst (CySA+), GIAC Security Essentials Certification (GSEC), Certified...
- SDS Specialist - Autonomous Vehicle Diagnostics & Calibration About the Role We are looking for a Self-Driving Systems Specialist (SDS Specialist) to support the diagnostics, calibration, configuration, and technical readiness of self-driving systems used in ...Tempo pieno
- Unisciti a noi come AS400 System Specialist! Se stai cercando un luogo dove esprimere liberamente chi sei? Continua a leggere! Stiamo cercando una persona per il ruolo di AS400 System Specialist per la nostra BP 7 Circle , dedicata a guidare imprese e organizzazioni...Tempo pienoTempo determinatoLavoro ibrido
50.000 €
...Architettare la sicurezza perimetrale moderna adottando soluzioni SASE (Secure Access Service Edge) e SSE (Security Service Edge) per... ...cui tutti si sentano protagonisti e valorizzati. L’Area di Governo Chief Security Officer presidia in modo integrato la sicurezza...Lavoro ibridoRemotoOrario flessibile25.000 € - 28.000 €
...leader nell’area IT e Software Development, è alla ricerca di un Security Technical Advisor da inserire in contesti enterprise complessi... ...in ambito Cyber Security, si occuperà di attività legate a Governance, Risk & Compliance (GRC), Security Audit e Vulnerability Management...Tempo pienoImpiego permanenteTempo determinatoLavoro ibrido
