Job Openings Security Advisor

About the job Security Advisor

What we offer you:

As part of the Security Advisory team (part of the Security Strategy division) at Cybertech we are looking for a Senior Advisor to lead and support project teams in helping clients achieve and maintain a robust security posture. Youll play a key role in implementing standards, best practices, and risk-mitigation strategies to safeguard our clients digital environments.

What will your activities and responsibilities be?

  • Conduct Comprehensive Assessments: Design and perform in-depth evaluations of IT and OT processes, organizations and infrastructures to identify vulnerabilities and areas for improvement. Deliver detailed reports and actionable remediation plans.
  • Support Security Measures: Assist clients in defining and deploying technical and organizational measures, including controls, countermeasures, and compensatory security measures aligned with international frameworks and best practices.
  • Develop Risk Mitigation Plans: Support clients in creating, implementing, and monitoring security and risk mitigation strategies, identifying actions to minimize impacts and reduce vulnerabilities.
  • Guide OT Security Frameworks: Lead clients in implementing industrial security frameworks for OT systems, including ICS, SCADA, and PLC environments.
  • NIS2 Compliance Leadership: Guide clients through Romania/Poland transposition processes, ensuring sector-specific compliance.
  • Stay Ahead of Threats: Keep analytical processes and methodologies up to date with regulatory changes and emerging threats.
  • Deliver Training: Conduct information security awareness training and simulations to enhance client understanding and preparedness.
  • Provide Strategic Expertise: Offer guidance and expertise to client CISOs on information security and cybersecurity challenges.
  • Drive Continuous Improvement: Proactively recommend technical solutions to enhance clients' security posture.
  • Evaluate Security Technologies: Participate in the evaluation, selection, and implementation of security tools, such as firewalls, WAFs, vulnerability management systems, encryption tools, and identity and access management systems.
  • Monitor Industry Trends: Stay informed on the latest security technologies, vulnerabilities, and trends, providing clients with actionable recommendations.
  • Collaborate Across Teams: Work within multidisciplinary teams, interfacing with IT, compliance, and business functions to ensure an integrated approach to security.
  • Support Pre-Sales Activities: Assist in pre-sales efforts by collaborating with colleagues, preparing proposals, presenting solutions, and engaging with prospective clients.

Required Qualifications and Skills:

DS version:

  • Education: Bachelors or Masters degree in a STEM field.
  • Experience: 5-6 years of experience in information security advisory, cybersecurity, and IT/OT security.
  • Technical Knowledge:
    • Strong understanding of information security principles, frameworks, and best practices, with the ability to articulate them clearly.
    • Familiarity with laws and regulatory standards such as PCI DSS, ISO 27001, NIST frameworks, NIS2 Directive, GDPR, and DORA Regulation.
    • In-depth understanding of NIS2 Directive, with a focus on the Romanian or Polish transposition and respective guidelines.
    • Proficiency in Risk Assessment, Risk Management, and Business Continuity tools and methodologies.
    • Hands-on experience with IT security technologies, including SIEM, Identity & Access Governance, Data Security & Protection, IDS/IPS, Fraud Detection, Data Masking & Tokenization, and PKI.
  • Professional Expertise:
    • Proven experience in information security systems assessment, cyber risk management, and enterprise security analysis.
    • Expertise in designing, implementing, and maintaining security plans.
    • Ability to analyze data to measure and monitor the performance of business processes in Information Security and Cybersecurity.
  • Certifications (Preferred): ISO 27001, ISO 22301, ISO 20000, ITIL 4, CompTIA Security+, COBIT, CISA, CRISC, CISM, CISSP, ISA/IEC 62443, GICSP, or CCSK.
  • Soft Skills:
    • Excellent written and verbal communication skills.
    • Adaptability to work in a dynamic environment and proactively respond to changes.
  • Language: Proficient in written and spoken English.

What do we look for in our people?

  • Ambition, which leads to aiming for great goals and committing to continuous improvement.
  • Proactivity to anticipate and face challenges with initiative.
  • Transparency in communicating openly and providing constructive feedback.

Motivation to improve and grow together with others in the team, showing openness to discussion to promote collective growth and the achievement of common goals.