Plug and Play Tech Center logo
Plug and Play Tech Center

Driving the future forward with corporations, governments, startups, investors, and universities.

GRC Security Expert

Security EngineerSecurity EngineerFull TimeRemoteSeniorTeam 501-1,000Since 2006H1B No SponsorCompany SiteLinkedIn

Location

Greece

Posted

93 days ago

Salary

0

Seniority

Senior

Bachelor Degree3 yrs expEnglishCyber Security

Job Description

GRC Security Expert

Plug and Play Tech Center

• Define, establish and implement organizational information security processes, to ensure business, regulatory, legislative and contractual requirements and obligations are met. • Manage the internal and external ISMS audit processes, monitor effectiveness of controls and corrective actions in cooperation with the stakeholders across the organization. • Manage gap analysis, compliance readiness, and compliance monitoring activities for ISO/IEC 27001, PCI DSS and other regulatory security audits. • Coordinate external security audits, assessments and testing as well as remediation plans development and implementation. • Identify, assess and monitor information security risks and recommend mitigation measures. • Develop content, coordinate and facilitate a comprehensive organizational information security awareness training program. • Manage security requirements with third parties, including due diligence of products and services providers and information security requirements clauses in service provision agreements and contracts. • Develop, coordinate and maintain information security policies, procedures and other security related documents. • Analyse, map and communicate information security requirements, that derive from legislative and regulatory obligations in various jurisdictions. • Serve as project manager/lead within security projects. • Continually improve and update knowledge to accommodate changes to the company’s regulatory environment and needs.

Job Requirements

  • Proven experience (3+ years) across security governance, risk and compliance domain
  • Strong communication skills and ability to interact professionally with a diverse group including executive management, managers and subject matter experts
  • Strong management skills, leading people, delegating tasks, setting goals and ensuring objectives are met in continuous and deadline-oriented activities
  • Experience in leading PCI DSS ISO 27001:2022 and SOC/ISAE402 certification and surveillance audits as well as leading and supporting information security risk assessments and management process
  • Bachelor’s Degree in Information Security, Information Assurance, Computer Science, Cybersecurity, Risk Management or equivalent work experience
  • Professional certification (CISSP/CISM and ISO 27001 Lead Implementer/Auditor or similar)
  • A pro-active, self-motivated approach and ability to work independently within a global security team.
  • Very good written and spoken English

Benefits

  • Fun and engaging company events
  • Constant learning and development opportunities
  • Active lifestyle and mental well-being

Related Categories

Related Job Pages

More Security Engineer Jobs

ServiceTitan logo

Senior Corporate Security Engineer

ServiceTitan

The operating system for the trades

OtherRemoteTeam 1,001-5,000Since 2012H1B Sponsor

• Secure SaaS, Endpoints, and the Extended Workforce. • Evaluate, configure, and harden SaaS applications (Google Workspace, Microsoft 365, Slack, HRIS, ticketing) to align with enterprise security policies. • Collaborate with Endpoint/IT teams to define and enforce baseline configurations for laptops, workstations, and other managed devices via MDM and EDR. • Develop and implement strategies and tooling for Data Loss Prevention (DLP) and the mitigation of insider risks within the organization. • Partner with Information Technology to implement, configure, and monitor highly secure workforce identity solutions (e.g., Okta/Entra and other IdPs). • Define and maintain RBAC/ABAC patterns for enterprise applications, focusing on role models, entitlements, and separation of duties. • Design and deploy controls that combine user identity, device posture, network context, and application sensitivity to aggressively enforce least-privilege access. • Author clear documentation and runbooks that make it easy for teams to consume and operate the controls you build.

United States
$125.7K - $168.1K / year
Job Closed
SGS logo

Occupational Safety Technician

SGS

When you need to be sure

Full TimeRemoteTeam 10,001+Since 1878H1B Sponsor

• Responsible for preventing accidents, occupational illnesses and environmental risks • Ensure company activities are carried out in compliance with health, safety and environmental regulations • Prepare spreadsheets with accident statistics • Define and supervise the use of personal and collective protective equipment • Inspect and prepare spreadsheets documenting QSSMA (Quality, Safety, Health and Environment) irregularities • Enter and maintain up-to-date information in the system database • Control the maintenance of firefighting equipment • Prepare the PPRA document - Programa de Prevenção de Riscos Ambientais (Environmental Risk Prevention Program)

Dominican Republic
Availity logo

Product Director, User, Org & Security

Availity

Where healthcare connects. Now Hiring!

OtherRemoteTeam 1,001-5,000Since 2000H1B Sponsor

• Lead Users and Organizations (U&O) product platform capabilities • Define and drive the vision, strategy, and roadmap for user and organizational management • Manage access (authorization and authentication) management, and customer-facing security and identity capabilities • Lead product development across user lifecycle management, modern authentication and authorization models (including SSO, MFA, RBAC/ABAC) • Drive scalable organization management capabilities such as multi‑tenant architecture, org hierarchies, billing structures, and cross‑organization governance • Collaborate with Security to translate security and compliance requirements into intuitive platform features • Ensure security requirements, policies, and controls are translated into scalable, usable, and auditable platform capabilities for customers

United States
Job Closed
OtherRemoteTeam 1,001-5,000

This description is a summary of our understanding of the job description. Click on 'Apply' button to find out more. Role Description The Identity Access Management (IAM) Engineer designs, implements, and maintains enterprise IAM solutions to secure user identities and access across organizational systems. This role combines strategic planning with hands-on technical implementation to ensure robust access controls while enabling seamless user experiences. Responsibilities - Develop and execute the organization's IAM strategy, roadmap, and architectural blueprint, aligned with business objectives and security requirements. - Design and implement enterprise-grade IAM solutions including user provisioning, access controls, and identity lifecycle management. - Collaborate with cross-functional teams including security, application owners, and business units to integrate IAM solutions into enterprise systems. - Configure and maintain IAM technologies such as Single Sign-On (SSO), Multi-Factor Authentication (MFA), Identity Governance and Administration (IGA), Privileged Access Management (PAM), and Directory Services. - Troubleshoot and resolve complex identity and access management issues, including escalated end-user support requests from the Desktop team, vendor collaboration, and working directly with application owners to ensure minimal business disruption. - Create and maintain comprehensive documentation for system configurations, procedures, and operational processes. - Provide technical guidance and training to stakeholders on IAM systems and processes. - Evaluate emerging IAM technologies and recommend implementation strategies for continuous improvement. - Other duties as assigned. Qualifications - High school diploma or equivalent required. - Strong understanding of identity management concepts, security policy, and industry best practices. - Excellent teamwork, communication, and customer service skills with ability to translate technical concepts for diverse audiences. - Proven ability to manage multiple projects simultaneously while maintaining attention to detail. - Experience presenting technical solutions and recommendations in a collaborative environment. - Demonstrated ability to integrate AI technologies into daily work practices. Preferred Qualifications - Knowledge of identity protocols and technologies including Active Directory, Windows Authentication, SAML, OAuth, and SCIM. - In-depth knowledge of the Identity Access Management Domain, Authentication and Authorization concepts, and Single Sign-On (SSO) implementations. - Proficiency in scripting languages (PowerShell, Python) and API integrations for automation purposes. Remote Work Requirements - Stable, high-speed internet connection. - Experience with teleconferencing. - Access to a quiet workspace. - Smartphone/mobile device. Physical Demands - Frequently communicate information so others will understand. - Remain in a stationary position at least 50% of the time. - Lift up to 15 pounds at times. - Occasionally move about the inside of an office. - Position self to maintain files in a cabinet and place computers under a desk or in a cabinet. - Constantly observe typewritten text on a computer screen. - Operate a laptop and use a telephone regularly. - Travel throughout the USA by automobile or airplane which may require overnight lodging. Work Environment - May be in a stationary position in an office setting. - May be exposed to quiet to moderate noise level. Benefits - Comprehensive healthcare benefits including medical, HSA, prescription, vision, and dental. - Life insurance, short & long-term disability. - Roth and 401K with possible company match and profit sharing. - Employee Assistance Program (EAP). - Time Away from Work (TAFW) and paid holidays. - Employee referral bonuses. - Role-based professional development opportunities.

United States