ICT Information Security Compliance Analyst
Ascom Visualizza tutti gli annunci
- Scandicci, Firenze
- Tempo indeterminato
- Full time
Educationยท Bachelor's or Master's degree in Computer Science, Cybersecurity, Computer Engineering, Information Security, or a related field.ยท In the absence of a relevant degree, an additional 5 years of proven experience may be considered.Professional Experienceยท 3-5+ years of experience in Information Security, with a focus on risk management, governance, and compliance.ยท Experience in ICT infrastructure, security controls, and enterprise technology environments.ยท Exposure to incident response processes, security operations, and associated tools.Technical Knowledgeยท Strong understanding of Information Security Management Systems (ISMS) and control frameworks such as:o ISO 27001, NIST Cybersecurity Framework, NIS 2 Directive, GDPR requirementsยท Experience reviewing and interpreting security scan results and remediating vulnerabilitiesยท Familiarity with enterprise architectures, including:o Network and system architecture, Enterprise directory services, Integration architecture, Identity and Access Management (IAM)ยท Familiarity with:o Security monitoring practices, Basic forensic techniques, Cloud security controls and hybrid-environment security architectures, SIEM toolsRegulatory & Risk Knowledgeยท Demonstrated understanding of data privacy laws and regulatory requirements.ยท Broad awareness of business impacting security threats, detection methods, and risk assessment methodologies.Security Principles & Best Practicesยท Solid understanding of security principles, cybersecurity lifecycle, and security software management best practices.Certifications (Preferred)ยท CISM, CISA, CISSPยท CompTIA Security+ยท GIAC GCIH (or similar incident response certifications)About YouYou are a professional who demonstrates strong technical expertise, collaboration skills, and a proactive mindset.You are/have:ยท Knowledge of ICT security and infrastructure design, with the ability to confidently defend technical positions while remaining open to incorporating others' perspectives to refine solutions.ยท A good understanding of relevant ICT platforms, software, network architectures, and hardware components.ยท High ethical integrity, professionalism, and diligence in all assigned tasks.ยท A strong team-oriented attitude with excellent interpersonal and organizational abilities.ยท Effective communication skills and the ability to collaborate seamlessly within distributed and cross functional teams.ยท A positive attitude, with a willingness to share knowledge and support colleagues.ยท Commitment to continuous learning and personal development.ยท Confidence in making informed decisions, even in ambiguous or evolving situations.ยท Strong analytical and problem-solving capabilities.ยท The ability to perform effectively under pressure.ยท Excellent time management skills, with the capacity to work both independently and under supervision when required.ยท Strong written and verbal communication skills.ยท Willingness to participate in on call rotations in the event of a security incident or other emergencies, requesting a minimum flexibility regarding working hours.Work EnvironmentThe work environment characteristics described here reflect the typical conditions encountered while performing the essential duties of this role.Work Requirementsยท Adherence to all relevant Ascom Information Security policies and procedures related to Quality, Security, Safety, Business Continuity, and Environmental management systems.ยท Upholding company values and policies, including those relating to ethics, conduct, and workplace safety.ยท Ability to obtain and maintain the required security clearance (candidates must either be EU citizens or have been legally working within the EU for the past five years).ยท Occasional travel to Ascom locations or customer sites to support operations within required timeframes.ยท Flexibility to accommodate minor variations in working hours, including occasional scheduled weekend work for high priority project deliverables or major incident support.ยท Occasional international travel as required; employees must possess valid travel documents and be able to obtain a US VISA if necessary.Language RequirementsBeing fluent in English, both written and spoken, is a mandatory prerequisite, ensuring effective communication with international teams, stakeholders, and external partners.DepartmentICTLocationScandicci (Florence), ItalyWorkplace Attendance RequirementsHybrid setup: 4 on-site days per week, plus 1 remote day upon successfully passing the probationary period.