GRC Lead — Governance, Risk & Compliance (Cybersecurity)
BE Shaping The Future- Location
- Location not stated
- Workplace
- —
- Employment
- —
- Salary
- —
GRC Lead — Governance, Risk & Compliance (Cybersecurity) - BE Shaping The Future | Career Page
GRC Lead — Governance, Risk & Compliance (Cybersecurity)
Bucharest, Romania
Apply for Position Or refer someone
Job Openings GRC Lead — Governance, Risk & Compliance (Cybersecurity)
About the job GRC Lead — Governance, Risk & Compliance (Cybersecurity)
Core Competencies
Primary Skills
- Governance, Risk & Compliance (GRC)
- GDPR
- NIS2
- ISO 27001
- Information Security Policy and Procedure Development
Secondary Skills
- NIST Cybersecurity Framework (NIST CSF)
- Privacy Management
Responsibilities
- Lead the cybersecurity governance, risk, and compliance (GRC) program, working closely with Legal, Privacy, Risk Management, and Government Affairs teams to address evolving regulatory requirements.
- Establish, implement, and continuously improve the Information Security Management System (ISMS) in accordance with ISO 27001/27002 standards.
- Develop, maintain, and enhance information security, privacy, data protection, incident response policies, standards, procedures, and governance frameworks.
- Manage an enterprise-wide cybersecurity and risk program to protect the confidentiality, integrity, and availability of information assets.
- Conduct risk assessments, facilitate risk management activities, and support business units in identifying and mitigating security and compliance risks.
- Provide subject matter expertise on global cybersecurity and privacy regulations and frameworks, including GDPR, NIS2, ISO 27001/27002, and NIST CSF.
- Perform compliance assessments, audits, gap analyses, and oversee remediation initiatives.
- Support internal and external audits, certification activities, and regulatory examinations.
- Assess security threats, vulnerabilities, and control effectiveness; communicate risks and recommendations to business and technical stakeholders.
- Align cybersecurity, privacy, and compliance initiatives with organizational objectives and business strategy.
- Lead governance and project management activities related to cybersecurity, privacy, and compliance programs.
- Evaluate and recommend security and privacy controls for new and existing technologies, applications, and infrastructure.
- Monitor emerging threats, regulatory developments, and industry best practices.
- Support organizational compliance efforts related to GDPR, NIS2, ISO 27001/27002, and NIST CSF, including compliance reporting, governance metrics, and risk dashboards.
- Promote the adoption of security and privacy-enhancing technologies that support effective privacy and compliance operations.
Apply for Position
Or refer someone
Share
- Line
- X (Formerly Twitter)
Skills
- GDPR
- ISO 27001
- NIST
More jobs at BE Shaping The Future
All 44Cloud Developer/Full Stack Developer
BE Shaping The Future · Iași · 12d ago
Manual QA Engineer
BE Shaping The Future · Bucharest · 12d ago
Cobol Software Developer with French - (26000BBA)
BE Shaping The Future · Location not stated · 12d ago
Java Fullstack Developer with React Native - (26000HDS)
BE Shaping The Future · Bucharest · 12d ago
Germany - Mobile Developer - iOS
BE Shaping The Future · Bucharest · 12d ago
Similar roles
Network Security Engineer
Uvation · India · today
Network Security Engineer
Uvation · Malaysia · today
Network Security Engineer
Uvation · Singapore · today
Senior Security Engineer
Ngrok · United States · USD 218,250–266,000/yr · today
Network Security Engineer
Uvation · Serbia · today
Network Security Engineer
Uvation · Romania · today