Jobiglo

No results.

Informasiya təhlükəsizliyi (GRC) üzrə baş mütəxəssis

Innovation and Digital Development Agency · Bakou

🇬🇧 English
ISO 27001 SANS CIS CSC NIST CISSP CRISC CISA CISM CGRC

Job description

About the role

The organization is seeking a senior information security professional to lead governance, risk, and compliance (GRC) activities. The role involves shaping the security strategy, ensuring compliance with international standards, and driving risk‑based decision making.

Key responsibilities

  • Participate in the development and maintenance of the information security strategy and ensure alignment with standards.
  • Analyze information security risks based on ISO 27001, SANS CIS CSC, NIST and agency‑specific policies.
  • Oversee cyber governance and risk‑management processes in line with the security strategy.
  • Plan and monitor periodic reviews of security controls and processes.
  • Manage IT and information‑security risks, support ISO compliance and personal data protection, and collaborate with departments to create policies and action plans.
  • Identify, assess, manage, and mitigate risks related to IT infrastructure, software, platforms, and suppliers.
  • Validate that new technological solutions comply with security policies, analyse gaps and document findings.
  • Develop strategy, objectives and goals for security awareness, training and education programmes.
  • Assess and improve the organization’s information‑security maturity level.
  • Perform any other related tasks as required.

Required profile

  • Bachelor’s degree in IT or information security.
  • Minimum 4–5 years of experience in information security.
  • Professional certification such as CISSP, CRISC, CISA, CISM, CGRC or equivalent.
  • Knowledge and experience in risk assessment and IT audit processes.
  • Fluent in Azerbaijani and English (both written and spoken); Russian is a plus.
  • Strong analytical thinking.
  • Ability to build teamwork and communicate effectively with stakeholders.

Required skills

  • ISO 27001
  • SANS CIS CSC
  • NIST framework
  • Risk assessment
  • IT audit
  • CISSP
  • CRISC
  • CISA
  • CISM
  • CGRC

Questions fréquentes

Le salaire n'est pas communiqué publiquement par le recruteur. Vous pouvez postuler et négocier directement avec Innovation and Digital Development Agency.
Cliquez sur "Postuler maintenant" en haut de la page. Vous pouvez importer votre CV en 1 clic — Jobiglo extrait automatiquement vos informations et postule pour vous.

Why are you reporting this job?

Thank you for your report. We will review this job.

Apply in 30 seconds

Enter your email to apply. An account will be created automatically.

Apply now →

By continuing, you accept our terms of use.

Already have an account? Login

A question about this job?

Ask it here: you will get the full job summary by e-mail, right away.

💬 Chat with us on Telegram

Published 1 month ago

Expires 3 weeks from now

14 views · 0 interested

Boost your chances

Upload your CV — we will match you with relevant openings.

Analyzing your CV...

Innovation and Digital Development Agency

Bakou