Governance, Risk and Compliance (GRC) Consultant

ThreatScene
Πλήρης απασχόληση Μακρινός
Εργασία εξ αποστάσεως

ThreatScene is redefining cybersecurity by delivering advanced solutions to safeguard public bodies, enterprises, the defence sector, maritime, and critical infrastructure. We empower organisations to navigate the cyber landscape confidently, ensuring resilience against evolving threats. At ThreatScene, we're building a secure, compliant, and resilient digital ecosystem.  


As a GRC Consultant, you will help develop and enhance risk-based governance frameworks, assisting clients in meeting evolving regulatory and cybersecurity obligations. You'll advise business & technical stakeholders of ranging seniority levels, lead audits, and support clients in strengthening their compliance and risk posture across diverse industries. This is a client-facing position where you will work directly with Οrganisations of different sizes and from various sectors.


Responsibilities

  • Advise clients on cybersecurity standards & frameworks such as NIS2, ISO 27001, ISO 22301, NIST variants, GDPR, IEC 62443 and industry specific regulations including maritime.
  • Conduct gap analysis, risk assessments and audits against standards above.
  •  Draft and implement risk-based Information Security Management Systems (ISMS) by incorporating standards, policies & procedures including Incident Response & Business Continuity.
  •  Provide CISO-as-a-Service advisory to clients ranging from small businesses to large enterprises
  •  Align and co-ordinate with technical teams, business stakeholders and liaise with regulatory authorities.


Requirements

  • At least 3 years of experience in information security GRC consulting and / or CISO service provisioning roles.
  • Good understanding of standards such as NIS2, ISO 27001, ISO 22301, NIST variants, GDPR, and related frameworks
  • Knowledge of IEC 62443 and / or industry specific standards such as maritime will be considered a plus.
  • Advanced communication & presentation skills, including the ability to engage with both technical teams and business stakeholders of ranging seniority levels.
  • Experience leading or supporting regulatory compliance workshops and audits
  • Ability to adapt and work with clients from different industries & sectors such as public administration, maritime, energy and defence.

  • Preferred Qualifications 

    • Relevant certifications such as ISO 27001, ISO 22301 Lead Auditor, CISM or equivalent.
    • Experience in compiling risk-based Information Security Management Systems (ISMS).
    • Familiarity with operational technology (OT) / industrial control systems (ICS) cyber security requirements will be considered a plus.
    • Experience in CISO service provisioning roles
    • Working experience in regulated or high-stakes environments such as defence, energy, maritime & government.


    Πώς να κάνετε αίτηση

    Μην χάσετε τις νέες ευκαιρίες εργασίας

    Ακολουθήστε το MyCarriera.gr στο Viber για νέες αγγελίες με μισθό κάθε μέρα.