Junior Information Security Officer
Περιγραφή εργασίας
Main duties & responsibilities:
- Support the Head of ICT & Security Risk in providing independent oversight and challenge to IT and business functions.
- Assist in the development, review, and maintenance of information security policies, procedures, and standards in line with regulatory and supervisory requirements
- Support the definition and enforcement of access control policies and least-privilege principles across banking systems, including core banking applications and physical security systems
- Participate in assessments, control testing (e.g. vulnerability assessments and penetration testing), and internal security reviews
- Support regulatory, supervisory and audit activities
- Monitor, analyse and respond to information security incidents and events (e.g. via SIEM and security monitoring tools)
- Support third-party and outsourcing security assessments, including vendor due diligence and ongoing monitoring
- Support the Head of ICT & Security Risk in critically assessing and challenging technical security information and reports provided by IT and third-party vendors.
- Provide oversight of the security monitoring capability, including reviewing alert quality and investigation output.
- Collaborate with IT, Internal Control and Business units to promote information security awareness and regulatory compliance
- Maintain accurate documentation, evidence, reports to support audits and management reporting
Qualifications and experience required:
- Academic and/or professional qualifications in Cybersecurity, Computer Science, Information Systems, or a related field
· Relevant experience of up to 3 years in a similar position.
- Good understanding of information security principles (CIA triad, risk management, threats, and vulnerabilities)
- Solid understanding of:
- Network Security Concepts
- Cloud Security Concepts
- AI- related risks in a banking context
Awareness of information security standards, regulations, and frameworks applicable to the banking sector (e.g. ISO/IEC 27001, DORA, EBA/ECB ICT guidelines, PSD2, SWIFT)
- Working knowledge of security monitoring and alerting, vulnerability management concepts, including severity/ CVSS-based prioritization, patch management cycles and remediation tracking.
- Basic understanding of data protection and privacy requirements (e.g. GDPR)
· Fluency in the Greek and English (verbal and written).
Personal characteristics / competencies:
- Strong communication & analytical skills, attention to detail and ability to work in a regulated environment
Remuneration:
An attractive remuneration package is offered with a salary range from EUR 2,000 to EUR 3,000 depending on relevant skills and experience, flexibility in working hours, as well as a 4-day week work in the Summer
Πώς να υποβάλετε αίτηση
Applications:
Interested applicants should e-mail their CV to human.resources@sgbcy.com. All applications will be reviewed in the strictest confidence and under the relevant GDPR guidelines. Only successful candidates will be contacted.