Cyber Security Governance Expert
Develer
Firenze
25
Scarso
help
thumb_up Mi piace
Azienda: Develer Firenze
The person will have to deal with both the security of the company (internal systems) and the security of the products they develop.
Responsibilities: Internal security: Implement and maintain security systems to protect the company's IT infrastructures Conduct periodic risk assessments and implement mitigation measures Develop and manage security awareness policies for employees, including training on security hygiene practices Constantly monitor company networks to identify and respond promptly to any threats Manage and respond to security incidents, ensuring rapid resolution and damage minimization Product security: Collaborate with the software development team to integrate security best practices into the product lifecycle Perform security reviews of the code and architecture of software and industrial machinery ( IoT / Embedded) Participate in the design and implementation of security features in company products Ensure that the products developed comply with industry security standards and current regulations External Vendor Management: Coordinate with external vendors for penetration testing and vulnerability assessment activities Evaluate the results of the analysis and manage the remediation of identified vulnerabilities Maintain relationships with consulting firms and security service providers to ensure ongoing and updated support Requirements: Bachelor's degree in Computer Science, Computer Engineering, Information Security or a related field At least 5 years of experience in the cybersecurity sector, preferably in corporate settings Very good knowledge of IT security methodologies and tools, including firewalls, intrusion detection systems, and encryption solutions Experience conducting security awareness training and managing security programs for employees Familiarity with software security practices, including code analysis and vulnerability management Familiarity with embedded or IoT security (interconnected industrial machinery) Ability to interact with different teams in parallel, establishing new processes in the company to improve product security Ability to manage complex projects and work proactively and autonomously
✔ Develer