Jobiglo

No results.

Informacijos saugos specialistas (GRC)

EPSO-G · Vilnius

🇬🇧 English
ISO 27001 CIS Controls

Job description

About the role

The Information Security Specialist (GRC) will lead the design, implementation and continuous improvement of the group‑wide governance, risk and compliance (GRC) framework for information security. You will ensure that EPSO‑G complies with national cybersecurity legislation, ISO 27001 and other relevant standards.

Key responsibilities

  • Develop, implement and refine the information security GRC control system across the EPSO‑G group.
  • Monitor and interpret regulatory and legal requirements affecting the energy sector (e.g., Lithuanian Cybersecurity Law, ISO 27001) and organise activities to meet them.
  • Assess information security risks at the group level and ensure a unified risk‑assessment process.
  • Plan, coordinate and support internal audits, self‑assessments and third‑party assessments.
  • Create, update and maintain security policies, procedures and standards.
  • Manage third‑party (supplier) information security risks and compliance.
  • Develop security metrics, prepare reports and present findings and recommendations to stakeholders.
  • Provide governance consulting and collaborate with business units to implement requirements.
  • Participate in security incident management from a compliance and third‑party risk perspective.

Required profile

  • Higher education in cybersecurity, information technology or a related field.
  • Practical experience in information security, GRC, risk management or compliance.
  • Deep knowledge of the Lithuanian Cybersecurity Law, ISO/IEC 27001, CIS Controls and other best practices.
  • Ability to objectively evaluate risks and make evidence‑based decisions.
  • Strong skills in drafting internal regulations, processes and procedures.
  • Excellent analytical, communication and organisational abilities.
  • Proficiency in Lithuanian and English.

Required skills

  • ISO 27001 implementation and auditing
  • CIS Controls application
  • Risk assessment and management
  • Audit coordination
  • Third‑party security risk management
  • Security metrics development
  • Incident response and management
  • Compliance with Lithuanian Cybersecurity Law

Questions fréquentes

Le salaire n'est pas communiqué publiquement par le recruteur. Vous pouvez postuler et négocier directement avec EPSO-G.
Cliquez sur "Postuler maintenant" en haut de la page. Vous pouvez importer votre CV en 1 clic — Jobiglo extrait automatiquement vos informations et postule pour vous.

Why are you reporting this job?

Thank you for your report. We will review this job.

Apply in 30 seconds

Enter your email to apply. An account will be created automatically.

Apply now →

By continuing, you accept our terms of use.

Already have an account? Login

A question about this job?

Ask it here: you will get the full job summary by e-mail, right away.

💬 Chat with us on Telegram

Published 1 month ago

Expires 1 week from now

71 views · 0 interested

Boost your chances

Upload your CV — we will match you with relevant openings.

Analyzing your CV...

EPSO-G

Vilnius