Job Description
Welcome to Sansaone, a dynamic force in the realm of ICT talent acquisition. Born out of a passion for excellence and a vision for connecting outstanding professionals with forward-thinking organizations, we stand as a beacon for strategic recruitment solutions in the Information and Communication Technology sector. With a commitment to excellence and a passion for connecting exceptional professionals with innovative organizations, we are your strategic partner in building transformative teams.
We are seeking a Security Consultant to lead and support key security governance and compliance activities across the organization.
- This role encompasses ISMS management, compliance reporting, regulatory engagement, and ESG/CSRD implementation, with a strong focus on aligning internal processes with international standards such as ISO 27001, PCI DSS, and SOC 2.
Key Responsibilities
- Monitor and advise on Service Level Agreements (SLAs) and Operational Level Agreements (OLAs)
- Collaborate with service delivery teams to improve performance reporting and compliance alignment
- Lead Information Security Management System (ISMS) initiatives and drive related certification programs (ISO 27001, PCI DSS, SOC 2)
- Maintain and update the risk register within the GRC system
- Develop, implement, and enforce compliance policies and procedures
- Provide expert guidance on Corporate Sustainability Reporting Directive (CSRD) requirements
- Support the creation and delivery of Environmental, Social, and Governance (ESG) reports to stakeholders
- Work closely with the Data Protection Officer (DPO) to ensure compliance with data protection laws
- Support the legal department in handling regulatory requests and customer-related complaints
- Ensure appropriate responses to law enforcement and regulatory authorities
- Ensure exceptional service aligned with regulatory and compliance standards
- Act as a point of contact for customer compliance concerns and audit support
- Manage regulatory inquiries concerning customers from legitimate third parties
- Provide regular updates to the Lead Service Excellence Officer on compliance metrics, incidents, and audit outcomes
- Enforce compliance policies, documenting and escalating violations as necessary
- Deliver accurate and timely ESG/CSRD compliance reports
Required Skills & Qualifications
- Proven experience in information security, compliance management, or security consulting
- Strong knowledge of ISMS standards and certifications (ISO 27001, PCI DSS, SOC 2)
- GRC platforms
- risk management frameworks
- data protection regulations
- sustainability frameworks
- Excellent communication and collaboration skills
- regulatory requests
- audits
- policy enforcement
Hiring Team Member
