Cybersecurity Legal and Privacy Advisor

Posted 2 Days Ago
Be an Early Applicant
Ispra, Varese, ITA
In-Office
Entry level
Information Technology • Consulting
The Role
Defines and assesses cybersecurity, compliance, and privacy requirements for information systems and digital services. Develops security templates, baselines, and guidance; supports impact and risk assessments, security plans, secure architecture, and implementation planning. Coordinates remediation, tracks non-conformities and corrective actions, reviews mitigation measures, and reports compliance gaps and progress to the LISO. The role requires strong documentation, presentation, stakeholder engagement, risk-management, and cybersecurity governance skills in a multicultural environment.
Summary Generated by Built In

COSMOTE Global Solutions NV is seeking a skilled Cybersecurity Legal and Privacy Advisor to join our dynamic ICT team. As part of the OTE Group of Companies, we specialize in delivering cutting-edge ICT solutions and services spanning Cloud Services, Data Centre operations, Networking, Cybersecurity, Business Intelligence, Big Data, and more.

In this role, you will be responsible for defining and assessing cybersecurity, compliance and privacy requirements across JRC information systems and digital services. You will work closely with System Owners, System Managers, IT service providers and relevant Commission services to support risk assessments, security planning, secure architecture design and implementation activities. Your responsibilities will include developing security and compliance templates and baselines, coordinating remediation activities, tracking non-conformities and corrective actions, reviewing risk assessments and mitigation measures, and reporting compliance status and gaps to the JRC LISO. You will also ensure consistency in the application of security, legal and privacy requirements across systems and services, supporting the effective implementation and continuous improvement of the JRC security and compliance framework.

Key Responsibilities:

  • Definition of compliance requirements for JRC information‑system controls, in close collaboration with the System owners and System managers
  • Preparation of templates covering security processes, controls and technical solutions across all JRC digital services
  • Support System Owners and IT service providers with the elaboration of their:
    • Business Impact Assessment and Scope of Security
    • Risk Assessment exercise
    • Security Plan
    • Secure System Architecture Design
    • Implementation Plan
  • Assistance with the management of remediation activities, including tracking of non‑conformities, assignment of corrective actions to system owners and verification of their closure within agreed time‑frames
  • Development and maintenance of security baselines for the JRC systems and services
  • Coordination and review of risk‑assessments, ensuring that identified risks are evaluated against the defined compliance criteria and that mitigation measures are documented
  • Reporting of compliance status to the JRC LISO, highlighting gaps and progress on remediation
  • Interaction with system owners and IT service providers and other relevant Commission services to ensure consistency

Requirements
  • 2 years of post-secondary education or higher
  • Good knowledge of ISO 27000 family of standards, the EC Security Policies, the European Commission Risk‑management methodology and related risk‑assessment techniques
  • Good experience in the security domain, including the development and review of security methodologies, Business Impact Assessments, Risk Assessments and Secure System Architecture Design
  • Ability to review draft Security Plans and related security‑plan material  efficiently and fast
  • Ability to give business and technical presentations to system owners, IT service providers
  • Ability to apply high quality standards in documentation, template creation and guidance material for security planning
  • Ability to cope with fast changing technologies used in cloud services, AI‑driven applications and other digital services within the JRC environment
  • Very good communication skills with technical and non-technical audiences to facilitate multilingual, multicultural meetings and stakeholder engagement
  • Analysis and problem solving skills
  • Capability to write clear and structured technical documents
  • Ability to participate in technical meetings and good communication skills
  • Relevant certifications in Governance, Risk and Compliance or Risk Management and Audit or broad Cybersecurity are an advantageous asset (CGRC, CRISC, CISA, CISSP, CISM, etc..)
  • Ability to integrate in an international/multicultural environment, rapid self-starting capability and experience in working in team;
  • Ability to participate in multilingual meetings;
  • Ability to work in multi-cultural environment, on multiple large projects;
  • Ability to establish trusting relationships with counterparts in partnering organizations;
  • Excellent team player
  • Ability to understand, speak and write English C1 will be an advantage;
  • High degree of discretion and integrity.

Skills Required

  • Two years of post-secondary education or higher
  • Knowledge of the ISO 27000 family of standards
  • Knowledge of European Commission security policies
  • Knowledge of European Commission risk-management methodology and related risk-assessment techniques
  • Experience in security methodologies, Business Impact Assessments, Risk Assessments, and Secure System Architecture Design
  • Ability to review Security Plans and related material efficiently
  • Ability to deliver business and technical presentations
  • Ability to create high-quality security documentation, templates, and guidance material
  • Ability to work with cloud services, AI-driven applications, and changing digital technologies
  • Very good communication skills with technical and non-technical audiences
  • Analysis and problem-solving skills
  • Ability to write clear and structured technical documents
  • Ability to participate in technical and multilingual meetings
  • Ability to work in international, multicultural environments and on multiple large projects
  • Ability to establish trusting relationships with partner organizations
  • Discretion and integrity
  • Relevant Governance, Risk and Compliance, Risk Management and Audit, or cybersecurity certifications such as CGRC, CRISC, CISA, CISSP, or CISM
  • English proficiency at C1 level
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
Brussels
17 Employees

What We Do

COSMOTE Global Solutions, as a member of OTE Group of Companies, is an ICT Systems Integrator delivering a broad range of ICT Solutions and Services. CGS provides a broad range of ICT Services focusing on: Cloud, Data Centre operations, Networking, Cybersecurity, BI and Data Warehouse, Big Data, Service Desk, Proactive Monitoring, Operations and Support, Service Management, Project and Programme Management, and Professional Services. OTE Group: OTE Group is the largest technology provider in Greece. It is one of the top three listed companies with respect to capitalization, in the Athens Stock Exchange. Deutsche Telekom holds 46.9% of OTE’s share capital and the Greek State holds 5.6%. Find More about OTE Group Our Vision: We digitize societies so that everyone can live and enjoy at the fullest all possibilities offered now while also building on them for a better tomorrow. Our Mission: • We bring the best communication services to our customers • We connect people • We entertain • We help businesses grow. • We are leaders, pioneers, pillar of the economy and society • With passion, faith and commitment • We constantly strive to become better on all fronts • We have a positive impact on society and the environment

Similar Jobs

Datadog Logo Datadog

Solutions Architect

Artificial Intelligence • Cloud • Security • Software • Cybersecurity
Easy Apply
Remote or Hybrid
6 Locations
6500 Employees

UL Solutions Logo UL Solutions

Workplace Coordinator and Reception Support

Automotive • Professional Services • Software • Consulting • Energy • Chemical • Renewable Energy
Hybrid
Carugate, Milano, ITA
15000 Employees
27K-34K Annually

UL Solutions Logo UL Solutions

Associate Label Center Specialist

Automotive • Professional Services • Software • Consulting • Energy • Chemical • Renewable Energy
Hybrid
Carugate, Milano, ITA
15000 Employees
27K-34K Annually

Pfizer Logo Pfizer

Digital Operations Agentic Lead - Senior Manager

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
Remote or Hybrid
29 Locations
121990 Employees

Similar Companies Hiring

Standard Template Labs Thumbnail
Artificial Intelligence • Information Technology • Software
New York, NY
25 Employees
NODA AI Thumbnail
Artificial Intelligence • Information Technology • Software • Cybersecurity
Sydney, AU
54 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account