Senior Security Compliance Consultant
il y a 2 semaines
Devoteam is an AI-driven tech consulting firm specialised in cloud platforms, cyber, data, and sustainability.
Tech native for almost 30 years, Devoteam guides businesses through sustainable digital transformation to deliver value.
With over 11,000 tech architects in more than 25 countries across Europe, the Middle East, and Africa, Devoteam is committed to using technology to serve people.
We are looking for an experienced Senior Compliance Consultant specializing in security compliance. This role requires a strong understanding of Luxembourg and EU legal and regulatory landscape, alongside expertise in data protection and information security.
As a Senior Compliance Consultant, you will play a key role in ensuring that our clients adhere to regulatory obligations, reduce compliance risks, and maintain the highest standards of security compliance.
**Key Responsibilities**
**Regulatory Compliance Advisory**
- Provide expert advisory on Luxembourg and EU regulatory requirements, including DORA, NIS2, GDPR, PSD2, and PCI DSS.
- Assist in interpreting, assessing and implementing guidelines set forth by regulatory bodies like the CSSF, CAA.
**Security Compliance Program Development**
- Develop and/or enhance client security compliance programs, ensuring alignment with relevant security compliance requirements such as ISO 27001, NIST, PCI DSS, and other industry standards.
- Conduct assessments and gap analyses, identifying areas of non-compliance, related risks and recommending mitigation measures.
- Design customized compliance policies, procedures, and controls that meet regulatory and security requirements.
**Risk Assessment and Mitigation**
- Conduct security and compliance risk assessments, focusing on identifying and mitigating regulatory and operational risks.
- Provide strategic recommendations to address identified risks and design tailored action plans to enhance security posture and compliance adherence.
- Develop risk management reports for stakeholders, including insights on risk exposure and suggested mitigation strategies.
**Compliance Training and Awareness**
- Deliver compliance training and workshops, on regulatory and related security obligations.
- Develop and provide materials, such as policy guides, compliance toolkits, and security awareness programs.
**Audit Support and Coordination**
- Coordinate and support client security audits, including preparation, response management, and addressing findings.
- Develop audit-readiness plans, to maintain a state of compliance through continuous improvement.
- Prepare compliance reports and findings for management and regulatory authorities as needed.
**Must have**
- Bachelor's or Master's degree in information technology, information security or a related field.
- A minimum of 3 years in a compliance related role, with a strong focus on security compliance.
- Knowledge of security and compliance frameworks, standards, and regulations (e.g., ISO 27001, GDPR, CIS)
- Strong understanding of the Luxembourg local regulatory environment (e.g., CSSF, CAA compliance requirements).
- Proven ability to conduct compliance advisory, audits, risk management, and develop security policies.
- Fluent in French AND English and have excellent communication skills.
**Nice to have**
- Relevant certifications such as CISA, CISM, ISO 27001, or GDPR and DORA Practitioner.
- Knowledge of additional security and compliance frameworks, standards, and regulations (e.g., DORA, NIS2, NIST, PCI DSS).
- Excellent analytical, communication, and consulting skills, including experience working with clients and cross-functional teams.
- **Partner with a multi-awarded, Best Workplace & premium consulting company in Luxembourg.**Devoteam Luxembourg offers a vibrant work culture that promotes innovation, knowledge sharing, and continuous learning. When you join our team, you will enjoy:
- **Continuous Growth.**Surf with the latest trends, top experts, and extensive growth opportunities through mentoring, strong cloud partnerships (Microsoft, ServiceNow,..), local Training Center, certifications programs and our Power Skills Academy;
- **Be part of something bigger**. Work for a company that values social impact, sustainability, and digital inclusion. Our CSR strategy will empower your ideas through the Devoteam Fondation and its volunteering possibilities;
- **Team Diversity.**Join a team of 140 tech-enthusiasts from more than 30 diverse nationalities where togetherness & celebrating successes are paramount.
- Devoteam stands for equal opportunities. We are convinced that diversity contributes to the creativity, dynamism and excellence of our organization. All our positions are open to people with disabilities._
-
Senior Compliance Consultant
il y a 1 semaine
Luxembourg Danos Group Temps pleinDanos Group LuxembourgPosted 2 hours ago Hybrid Contract €125,000 + benefits - Our client, an established European investment management, is looking for a Senior Compliance Consultant to join their Luxemburg team. This role is ideal for an experienced compliance generalist with knowledge of UCITS, AIF's or Private Equity. This is 12-month FTC, paying...
-
Information Security Governance Consultant
il y a 2 jours
Luxembourg Excellium Services Temps pleinYou wish to join Excellium because You’re passionate, keen to learn & a fun coworker! As part of a dynamic and passionate team, you will have the opportunity to fully invest yourself, to innovate and to create in the fields of expertise we deal with. Listening is one of our key values, which helps everyone feel integrated within Excellium family....
-
Information Security Governance Consultant
il y a 5 jours
Luxembourg SOLINKI Temps pleinJobs: - Definition of an organization’s security strategy and establishment of its short, medium and long-term security program - Management and organization of information security and establishment of the governance framework (security policies) - Information security risk management - Resilience support - Cloud services security - Support for...
-
(Senior) Information Security Officer
il y a 1 jour
Luxembourg European Investment Bank Temps pleinThe **EIB**, the European Union's bank, is seeking to recruit for its **Group Risk & Compliance Directorate (GR&C) - Office of the Group Chief Compliance Officer (GR&C-OCCO) - Group Non-Financial Risk Department (GNFR), Project Management and Information Security Division (PMI), Information Security Risk Unit (InfoSec)** at its headquarters in Luxembourg, a...
-
Information Security Governance Consultant
il y a 1 semaine
Luxembourg TAO Global HR Consulting Temps pleinJoin a dynamic and passionate team where you will have the opportunity to fully invest yourself, innovate, and contribute within the fields of expertise we tackle. At Excellium, listening is a core value that fosters integration within our family. Understanding our business and the challenges faced by our customers is a continuous priority. To support this,...
-
Information Security Consultant
il y a 4 heures
Luxembourg Lux-Advisory Temps plein**Lux-Advisory **is a company specialized in project management and business analysis. Our consultants take part in European or International projects. To support the increase of our activity, we are currently looking for a **Information Security Consultant.** **Mission** In support of the Risk Management team, the Consultant will provide the following...
-
Network & Security Consultant
il y a 3 jours
Luxembourg WLG Temps plein**The Opportunity**: - A leading cybersecurity firm in Luxembourg is seeking a Network & Security Consultant. - This role is ideal for those with a strong background in IT security, looking for a challenging and impactful position. **Key Responsibilities**: - Work within a specialized Network & Security team to deliver cutting-edge security solutions. -...
-
Senior Consultant
il y a 1 semaine
Luxembourg JCW Resourcing Temps pleinLuxembourg, Luxembourg - Posted - 16 hours ago- Duration - Permanent/Fixed Term- Salary - 80,000€- Sector - Compliance & Financial CrimeMy client, an advisory business providing end-to-end governance, advisory and oversight solutions to investment and asset management firms, is currently looking for a senior consultant for their growing regulatory...
-
Network & Security Consultant
il y a 2 jours
Luxembourg HIKMA-SOLUTIONS Temps plein**Hikma-Solutions is looking for one of its clients**: "Network & Security Consultant (f/m)". As a Network-Security Consultant, youll be part of a dynamic and passionate team. You will have the opportunity to fully invest yourself, innovate and create using the latest technologies. Listening is at the heart of our company, you will quickly find a sense of...
-
Information Security Consultant
il y a 4 heures
Luxembourg Lux-Advisory Temps plein**Mission** In support of the Risk Management team, the Consultant will provide the following services: - Establish risk guidelines for the information security strategy - Establish guidelines for the design of the information security controls - Align the risk appetite for security incidents and vulnerability management with the IT Security function -...