IT Security Process Specialist

il y a 2 jours


Luxembourg, Luxembourg Cronos Europa Temps plein

The IT Security Process Specialist is responsible for designing, implementing, and maintaining security processes that ensure the protection of the company's information systems. This role focuses on developing governance frameworks, improving operational security workflows, and ensuring compliance with internal and external security standards. The specialist collaborates with technical and business teams to assess risks, streamline procedures, and support continuous improvement initiatives.

Key responsibilities include documenting security processes, monitoring process efficiency, coordinating audits, and contributing to incident response and prevention strategies. Strong analytical skills, knowledge of security best practices, and the ability to translate technical requirements into effective processes are essential.

Responsabilities:

  • Collaborate with CISO in order to establish clear governance frameworks ensuring that all security processes are documented, regularly reviewed, and aligned with professional standards and regulatory requirements.
  • Develop and enforce access management procedures (IAM), including role-based access control (RBAC), onboarding/offboarding workflows, privileged access policies, and periodic access reviews.
  • Manage and optimize the vulnerability management process, including risk assessment, prioritization, remediation planning, and coordination with IT teams.
  • Define and monitor patching standards and schedules, ensuring that systems are regularly updated and compliant with the client's security requirements.
  • Provide recommendations for improvement, identifying gaps in processes, proposing corrective actions, and driving continuous improvement initiatives.
  • Collaborate with technical teams
    to ensure security processes are practical, efficient, and aligned with operational needs.
  • Define and provide annual security awareness training for INSO staff
  • Support security incident response activities by ensuring that process documentation is up to date and that root causes related to governance or process gaps are addressed

Technical skills:

  • Strong expertise in network technologies, including TCP/IP, firewalls, routing, switching, VLANs, and network security architectures.
  • Solid knowledge of major operating systems, including Windows Server, Linux Red Hat, and other enterprise platforms.
  • Strong analytical and problem-solving abilities, with the capacity to interpret technical information and translate it into actionable processes.
  • Excellent communication and collaboration skills, with the ability to work closely with CISO teams, IT operations, infrastructure teams, and application owners.
  • Familiarity with security standards and frameworks, such as ISO 27001, NIST, CIS Controls, or similar.
  • Process-oriented mindset, with experience in creating documentation, governance models, and continuous improvement processes

Profile :

  • Bachelor's or Master's degree in IT, or a related field
  • ITIL certification
  • Certification in professional cybersecurity: CISM, CISSP, etc
  • Excellent verbal and written English
  • French is an asset

Why Cronos Group?

We'll propose you:

  • An attractive salary package
  • A good work-life balance environment
  • The assurance of working in cutting-edge technologies in an entrepreneurial spirit.
  • The opportunity to develop your skills thanks to tailor-made training courses according to your needs
  • A good job in a friendly place

If you wish to integrate a dynamic structure on a human scale while working with the latest technologies, don't wait anymore and join Cronos



  • Luxembourg, Luxembourg Qualco Group Temps plein

    At Quento, the ICT arm of the Qualco Group, we deliver comprehensive and innovative solutions across AI, Digital Engineering, Cloud, and Cybersecurity, helping businesses accelerate digital transformation. With a presence in Greece, Luxembourg, and Belgium, and backed by the expertise of the Qualco Group, we combine deep technical knowledge with strategic...


  • Luxembourg, Luxembourg Qualco Temps plein

    At Quento, the ICT arm of the Qualco Group, we deliver comprehensive and innovative solutions across AI, Digital Engineering, Cloud, and Cybersecurity, helping businesses accelerate digital transformation. With a presence in Greece, Luxembourg, and Belgium, and backed by the expertise of the Qualco Group, we combine deep technical knowledge with strategic...


  • Luxembourg, Luxembourg Groupe Emile Weber Temps plein

    Are you the person everyone calls when there's a network issue — and the one who stays up to date on the latest security threats? If so, we want you on our team.We're looking for an IT Security Administrator who loves keeping systems secure and networks running smoothly. This is a hands-on role where you'll configure firewalls, monitor threats, keep our...


  • Luxembourg, Luxembourg Groupe Emile Weber Temps plein

    Are you the person everyone calls when there's a network issue — and the one who stays up to date on the latest security threats? If so, we want you on our team.We're looking for an IT Security Administrator who loves keeping systems secure and networks running smoothly. This is a hands-on role where you'll configure firewalls, monitor threats, keep our...


  • Luxembourg, Luxembourg Bank of China Luxembourg Temps plein

    Company Description As a Luxembourg-based bank since 1979, together with the global presence of Bank of China Group, Bank of China Luxembourg Branch has been successfully operating and continuously developing its business over the years. It contributes to the local and worldwide economic and social development. With more than 45 years of expertise and...

  • IT Security Officer

    il y a 2 jours


    Luxembourg, Luxembourg Loodapay LU S.A. Temps plein

    Key ResponsibilitiesDevelop, implement, and maintain the Company's information security framework, policies, and procedures in line with regulatory and ISO 27001 standards.Conduct regular risk assessments, vulnerability analyses, and penetration testing of systems and networks.Oversee access controls, incident response procedures, and data protection...

  • IT Risk

    il y a 2 jours


    Luxembourg, Luxembourg Nexum Humanted Temps plein

    IT Risk & Cybersecurity Governance SpecialistLocation: Luxembourg or Full RemoteContract: Permanent or FreelanceAbout NEXUMNEXUM is a specialist recruiting boutique focused on technology-driven and regulated environments.We support organisations operating in complex regulatory contexts in strengthening critical functions related to cybersecurity governance,...

  • IT Security Officer

    il y a 2 jours


    Luxembourg, Luxembourg BNP Paribas Temps plein

    BGL BNP Paribas est une des plus grandes banques du Grand-Duché de Luxembourg et fait partie du Groupe BNP Paribas.Elle propose à ses clients particuliers, professionnels, entreprises et de banque privée une gamme particulièrement large de produits financiers et de solutions de bancassurance.En 2024, BGL BNP Paribas a été désignée « Best Bank in...


  • Luxembourg, Luxembourg Deutsche Börse Group Temps plein

    Your area of workCorporate IT of Deutsche Börse Group ensures a seamless end-user workplace experience, voice & communication, application development, and operations for all group processes such as Financial Core, Customer Care, Control & Corporate Processes. We also develop and operate our Enterprise Analytics and Digital Boardroom, which are central to...


  • Luxembourg, Luxembourg TMC Temps plein

    Luxembourg Digital & IT Luxembourg, Luxembourg On-siteTMC Luxembourg is looking for a Network and IT Security Engineer (M/F) for one of its clients.About The Member CompanyWe are a global high-tech consultancy company with a team of entrepreneurial engineers, scientists, and digital experts from around the world. Together we form a fast-growing and proud...