Descrizione dell'offerta
The Information Systems team is responsible for implementation of the enterprise architecture and the development and maintenance of the organization's computing/IT environment. Determines and develops architectural approaches and solutions, conducts business reviews, documents current systems and develops recommendations of how to proceed with the applications.
As an Information Security Senior Analyst, you will support the execution of Beko Europe’s cybersecurity governance, risk, and compliance program, ensuring the security technical compliance with the European regulatory scenario (including NIS2). You will contribute to the implementation of security policies and technical controls across IT and OT environments, supporting risk management, audit activities, and continuous improvement of the organization’s security posture.
Responsibilities
Supporting the implementation and maintenance of the Information Security Governance framework across Beko Europe
Ensuring security requirements are incorporated into projects, processes, and operational activities, including the security architectural review requirements
Contributing to compliance initiatives with European cybersecurity regulations (e.g., NIS2, CRA, GDPR, EU AI Act where applicable)
Assisting in the definition, update, and rollout of security policies, standards, and procedures
Supporting cybersecurity risk assessments (including IT and OT scope) and tracking remediation plans
Supporting vulnerability management processes, including coordination with Global Security teams and remediation follow‑up
Contributing to application security awareness, promoting secure development principles and supporting risk identification
Supporting incident management activities, including coordination, documentation, and post‑incident review actions
Participating in internal and external audits (e.g., NIS2 readiness, ISO27001, financial audits), ensuring evidence collection and follow‑up
Supporting third‑party risk management activities, including security assessments and monitoring of suppliers
Contributing to cybersecurity awareness initiatives across European entities
Qualifications
Bachelor’s or Master’s degree in Computer Science, Information Security, or a related field
3 – 6 years of experience in Information Security, GRC, or similar roles
Good knowledge of cybersecurity frameworks (e.g., ISO 27001, NIST)
Understanding of European regulatory landscape (NIS2, GDPR, cyber‑related directives)
Good knowledge of risk management principles and security controls
Good knowledge of application security and vulnerability management practices
Familiarity with incident management processes
Strong analytical mindset and attention to detail
Fluency in English, Italian is a plus
Preferred Skills and Experience
Experience in multinational or multi‑entity environments
Exposure to IT/OT security or industrial environments
Experience supporting audits or regulatory compliance programs
Relevant certifications (ISO 27001 lead auditor, CISM, CISA, CISSP, CEH, CHFI are a plus)
Strong communication and stakeholder collaboration skills
Problem‑solving oriented, with a proactive and analytical approach
Ability to work independently, demonstrating ownership and accountability for assigned activities
Collaborative team player, able to effectively work with cross‑functional teams and stakeholders
Ability to deeply understand business needs and translate them into security requirements aligned with company strategy
Curious and proactive in exploring and understanding emerging risk scenarios, particularly those related to innovative technologies such as Artificial Intelligence
What We Offer
The salary range for this position is € 43,000 – € 55,000 gross per year. The final offer will reflect the outcome of the recruitment process and the overall assessment of the candidate, based on objective and gender‑neutral criteria, including skills, experience, qualifications and demonstrated expertise.
A structured and evolving cybersecurity program in a European environment
Exposure to governance, compliance, and operational security domains
Collaboration with international and cross‑functional teams
Continuous learning in a fast‑evolving regulatory and threat landscape
We are an equal opportunity employer. All applicants will be considered for employment without attention to race, sex, colour, national or social origin, ethnicity, religion, age, pregnancy, disability, sexual orientation, gender identity and expression, marital status or political opinion.
#J-18808-Ljbffr
As an Information Security Senior Analyst, you will support the execution of Beko Europe’s cybersecurity governance, risk, and compliance program, ensuring the security technical compliance with the European regulatory scenario (including NIS2). You will contribute to the implementation of security policies and technical controls across IT and OT environments, supporting risk management, audit activities, and continuous improvement of the organization’s security posture.
Responsibilities
Supporting the implementation and maintenance of the Information Security Governance framework across Beko Europe
Ensuring security requirements are incorporated into projects, processes, and operational activities, including the security architectural review requirements
Contributing to compliance initiatives with European cybersecurity regulations (e.g., NIS2, CRA, GDPR, EU AI Act where applicable)
Assisting in the definition, update, and rollout of security policies, standards, and procedures
Supporting cybersecurity risk assessments (including IT and OT scope) and tracking remediation plans
Supporting vulnerability management processes, including coordination with Global Security teams and remediation follow‑up
Contributing to application security awareness, promoting secure development principles and supporting risk identification
Supporting incident management activities, including coordination, documentation, and post‑incident review actions
Participating in internal and external audits (e.g., NIS2 readiness, ISO27001, financial audits), ensuring evidence collection and follow‑up
Supporting third‑party risk management activities, including security assessments and monitoring of suppliers
Contributing to cybersecurity awareness initiatives across European entities
Qualifications
Bachelor’s or Master’s degree in Computer Science, Information Security, or a related field
3 – 6 years of experience in Information Security, GRC, or similar roles
Good knowledge of cybersecurity frameworks (e.g., ISO 27001, NIST)
Understanding of European regulatory landscape (NIS2, GDPR, cyber‑related directives)
Good knowledge of risk management principles and security controls
Good knowledge of application security and vulnerability management practices
Familiarity with incident management processes
Strong analytical mindset and attention to detail
Fluency in English, Italian is a plus
Preferred Skills and Experience
Experience in multinational or multi‑entity environments
Exposure to IT/OT security or industrial environments
Experience supporting audits or regulatory compliance programs
Relevant certifications (ISO 27001 lead auditor, CISM, CISA, CISSP, CEH, CHFI are a plus)
Strong communication and stakeholder collaboration skills
Problem‑solving oriented, with a proactive and analytical approach
Ability to work independently, demonstrating ownership and accountability for assigned activities
Collaborative team player, able to effectively work with cross‑functional teams and stakeholders
Ability to deeply understand business needs and translate them into security requirements aligned with company strategy
Curious and proactive in exploring and understanding emerging risk scenarios, particularly those related to innovative technologies such as Artificial Intelligence
What We Offer
The salary range for this position is € 43,000 – € 55,000 gross per year. The final offer will reflect the outcome of the recruitment process and the overall assessment of the candidate, based on objective and gender‑neutral criteria, including skills, experience, qualifications and demonstrated expertise.
A structured and evolving cybersecurity program in a European environment
Exposure to governance, compliance, and operational security domains
Collaboration with international and cross‑functional teams
Continuous learning in a fast‑evolving regulatory and threat landscape
We are an equal opportunity employer. All applicants will be considered for employment without attention to race, sex, colour, national or social origin, ethnicity, religion, age, pregnancy, disability, sexual orientation, gender identity and expression, marital status or political opinion.
#J-18808-Ljbffr
Candidatura e Ritorno (in fondo)
Ricevi annunci simili
Inserisci la tua email: ti avvisiamo quando escono nuovi annunci corrispondenti.
✅ Controlla la tua email e clicca il link per confermare l'alert.
Nessun account necessario. Disiscrizione con un clic dall'email.