Περιγραφή θέσης
- Participates in the development as well as in the periodic review of the Information Security Framework and the Information Security Risk Assessment Framework where required
- Conducts continuous risk assessment analyses (gap analysis/risk assessment) to identify potential security threats and participates in the creation of a plan for minimizing identified risks, as well as in monitoring its implementation to ensure that the Information Security and Risk Assessment Frameworks are correctly implemented
- Participates in the suppliers’ security risk assessments, examining whether their activities align with the organization's Information Security Framework
- Participates in the preparation and conduct of internal and external audits on compliance issues related to the Information Security Department, in accordance with the applicable regulatory requirements
- Monitors the developments on the latest changes in the Regulatory Framework and industry compliance standards in the Cybersecurity Sector