Altro · Milano, Lombardia, Italia · · 43.000€ - 55.000€


Descrizione dell'offerta

The Information Systems team is responsible for implementation of the enterprise architecture and the development and maintenance of the organization's computing/IT environment. Determines and develops architectural approaches and solutions, conducts business reviews, documents current systems and develops recommendations of how to proceed with the applications.

As an Information Security Senior Analyst, you will support the execution of Beko Europe’s cybersecurity governance, risk, and compliance program, ensuring the security technical compliance with the European regulatory scenario (including NIS2). You will contribute to the implementation of security policies and technical controls across IT and OT environments, supporting risk management, audit activities, and continuous improvement of the organization’s security posture.

Responsibilities

Supporting the implementation and maintenance of the Information Security Governance framework across Beko Europe

Ensuring security requirements are incorporated into projects, processes, and operational activities, including the security architectural review requirements

Contributing to compliance initiatives with European cybersecurity regulations (e.g., NIS2, CRA, GDPR, EU AI Act where applicable)

Assisting in the definition, update, and rollout of security policies, standards, and procedures

Supporting cybersecurity risk assessments (including IT and OT scope) and tracking remediation plans

Supporting vulnerability management processes, including coordination with Global Security teams and remediation follow‑up

Contributing to application security awareness, promoting secure development principles and supporting risk identification

Supporting incident management activities, including coordination, documentation, and post‑incident review actions

Participating in internal and external audits (e.g., NIS2 readiness, ISO27001, financial audits), ensuring evidence collection and follow‑up

Supporting third‑party risk management activities, including security assessments and monitoring of suppliers

Contributing to cybersecurity awareness initiatives across European entities

Qualifications

Bachelor’s or Master’s degree in Computer Science, Information Security, or a related field

3 – 6 years of experience in Information Security, GRC, or similar roles

Good knowledge of cybersecurity frameworks (e.g., ISO 27001, NIST)

Understanding of European regulatory landscape (NIS2, GDPR, cyber‑related directives)

Good knowledge of risk management principles and security controls

Good knowledge of application security and vulnerability management practices

Familiarity with incident management processes

Strong analytical mindset and attention to detail

Fluency in English, Italian is a plus

Preferred Skills and Experience

Experience in multinational or multi‑entity environments

Exposure to IT/OT security or industrial environments

Experience supporting audits or regulatory compliance programs

Relevant certifications (ISO 27001 lead auditor, CISM, CISA, CISSP, CEH, CHFI are a plus)

Strong communication and stakeholder collaboration skills

Problem‑solving oriented, with a proactive and analytical approach

Ability to work independently, demonstrating ownership and accountability for assigned activities

Collaborative team player, able to effectively work with cross‑functional teams and stakeholders

Ability to deeply understand business needs and translate them into security requirements aligned with company strategy

Curious and proactive in exploring and understanding emerging risk scenarios, particularly those related to innovative technologies such as Artificial Intelligence

What We Offer

The salary range for this position is € 43,000 – € 55,000 gross per year. The final offer will reflect the outcome of the recruitment process and the overall assessment of the candidate, based on objective and gender‑neutral criteria, including skills, experience, qualifications and demonstrated expertise.

A structured and evolving cybersecurity program in a European environment

Exposure to governance, compliance, and operational security domains

Collaboration with international and cross‑functional teams

Continuous learning in a fast‑evolving regulatory and threat landscape

We are an equal opportunity employer. All applicants will be considered for employment without attention to race, sex, colour, national or social origin, ethnicity, religion, age, pregnancy, disability, sexual orientation, gender identity and expression, marital status or political opinion.

#J-18808-Ljbffr

Candidatura e Ritorno (in fondo)

Candidati ora

Salva questo annuncio

Accedi o registrati (gratis) per salvarlo nei preferiti e ritrovarlo quando vuoi.

Accedi Registrati gratis
Torna all'elenco

Ricevi annunci simili

Inserisci la tua email: ti avvisiamo quando escono nuovi annunci corrispondenti.

Nessun account necessario. Disiscrizione con un clic dall'email.