Kapres Technology, S.L.
Consultant Security ISO 27001, Cloud (AWS & Azure)
Employment
Not statedLevel
Not statedCategory
SecurityCountry assessment
Not doable from Austria because the employer's own board marks it as not remote.
Our assessment is guidance. Confirm arrangements with the employer.
Skills mentioned in this posting
Job description
Para un importante cliente del sector seguros, buscamos Consultant Security ISO 27001, Cloud (AWS & Azure), el trabajo es hibrido (1 o 2 días en la oficina Calle Emilio Vargas Madrid), Ofrecemos contrato indefinido con nosotros.
Description:
- Security Owner requirements
Delivrables :
Governance
Perform monthly security governances with the GDAI product teams including:
Security activities follow-up (such as risk assessments, pentests…)
Security risks remediation actions follow-up
Technical vulnerabilities remediations actions follow-up
Security in products:
Support security activities for products (when needed), execution is done by another project [optional]
-
Incident management:
Regularly review security alerting in AWS Guardduty
-
Access review:
Perform the access review for GDAI assets:
Preparation
Template completion
Recertification requests
Evidence collection
Service Description:
The service will act as the pain POC for GDAI security assurance for GDAI security assurance:
Follow-up
Procedures review (with the relevant project)
Evidence collection
Reporting:
Will report to GDAI Operations as well as GDAI Security OM.
Expertise:
English environment [Mandatory]
Information Security general expertise
ISO 27001 implementation
Security testing understanding
Security in the Cloud (AWS & Azure)
Certifications:
ISO 27001 Lead implementor [Recommended but not mandatory]