ABOUT THE ROLE
The Information Security team at LeoVegas forms part of the Legal & Compliance department and focuses its activities in 4 main areas of Information Security, being governance, risk, and compliance (GRC), Security Operations (SECOPS), Incident response (CSIRT) and Security Awareness Training (SAT).
The Information Security GRC Analyst is a key individual in a small team focusing his/her activities in the areas of GRC and SAT working alongside Internal IT, Privacy, Tech Compliance, Legal, Platform and other teams. This individual is responsible for ensuring good governance and compliance with regulatory requirements, as well as the adoption of good security industry practices across LeoVegas Group. Amongst other qualities, the role calls for a good communicator and risk advisor aimed at deriving value through the identification and reduction of risks following best practice.
YOU WILL BE RESPONSIBLE FOR:
Assist with the development, maintenance and testing of business continuity and disaster recovery plans.
Participate in security maturity assessments and other risk assessments.
Participate in regulatory audits and assist other teams as may be required.
Assist with the Risk Management function to maintain the Group's Security Risk Register
Assist with Security Incidents such as data breaches in terms of response, mitigation, and stakeholder communication.
Detect gaps in security processes and security product portfolios, determine risks, and provide recommendations on how to remediate.
Contribute to the development of appropriate security KPIs, objectives and strategies, towards improving the Groupβs overall security posture and maturity.
Be responsible for employee training and education programmes related to Information Security.
Develop and maintain the Group's Information Security policies, standards, and guidelines.
Participate in vendor onboarding due diligence exercises and security reviews.
OUR SUCCESSFUL CANDIDATE WILL HAVE THE FOLLOWING:
A degree in Computing, Cybersecurity or Information Systems (Masters preferred)
Ideally possess 1 or more of the following: CISSP, CISA, CRISC security certification
Minimum of 3 years experience working in a cyber security position
Familiarity with security auditing processes
Sound knowledge of ISO27001 and PCI-DSS standards
Knowledge of modern Cloud platforms
Knowledge on dealing with Incident Response
Soft skills training
WHO WE ARE
At the core of LeoVegas Group is Team Leo. Our culture is our foundation and is what enables us to innovate, build, and lead as we trailblaze our way through the igaming industry. Weβre a team of over 2000 innovators, initiators, and groundbreakers working in a fast-paced and agile environment across 19 offices worldwide.
BENEFITS
Hybrid work policy
4 weeks of Workation (T&C apply)
Well-being allowance to support your active lifestyle
Private health insurance
Discounts across a range of retailers, gyms, bars & restaurants
We offer an employee assistance program that can provide help and guidance during challenging moments.
JOIN US!
In our pride, we empower our teammates to find their roar and run with their wildest ideas. We donβt wait for things to happen; we pounce and make it happen!
Would you be a good fit for the Leo Pride - give us a roar!
As our company working language is English, weβd like to see your CV in English, please