Cybersecurity compliance officer (2) Job at Edenred in Romania
Edenred, Romania, PA, United States
Edenred Digital Center - Romania
Take a step forward and let Edenred surprise you.
Every day, we deliver innovative solutions to improve the life of millions of people, connecting employees, companies, and merchants all around the world.
We know there are hundred ways for you to grow. With us, you will expand your skills in a multicultural, challenging, and dynamic environment.
Dare to join Edenred and get ready to thrive in a global company that will offer you endless opportunities.
Edenred is all about meritocracy. You come as you are, and you contribute. Indeed, the Edenred Group recognizes, recruits and develops all talents and singularities.
We are committed to preventing all forms of discrimination and to providing all our candidates with equal opportunities regardless of their gender and gender expression, disability, origin, religious belief and sexual orientation or any other criteria.
Cybersecurity Compliance officer
YOUR ROLE
As a Cybersecurity Compliance Officer, you will play a key role in supporting IT governance and compliance activities across the organization.
You will collaborate on engaging and coordinating the Cyber GRC community, promoting the exchange of best practices, and strengthening collaboration across the Group. Working closely with cross-functional teams, you will help develop, implement, and enforce robust cybersecurity policies and procedures. Your responsibilities will include managing IT security documentation, supporting internal and external audits, and overseeing the production of CSR IT Security KPIs. Additionally, you will assist Business Units in completing security questionnaires and contribute to streamlining the risk acceptance process and tooling, ensuring continuous improvements in the Group's cybersecurity posture.
- IT/Cyber Compliance Domain Co-Leadership: Collaborate with the GRC Team to develop and actively engage the Cyber GRC community through structured communication channels (e.g., Team Groups/Chats, scheduled calls) to share practices, policies, strategies, and updates. Maintain a comprehensive map of current GRC practices, certifications, tools, and use cases, and support the maintenance of the Cyber Control Framework, including the assessment and auditing of external IT suppliers.
- IT Security official documentation & normative documents management: Manage and ensure the accuracy and relevance of IT Security documentation by collaborating with domain leads and stakeholders (e.g., DPO, CISO). Work with policy owners to assess update priorities (new or modified policies) and maintain an audit trail of changes. Support the alignment of policy rules with the Cyber Control Framework, ensuring it is consistently up to date.
- IT Audit support: Assist in internal audit missions by supporting Business Units in addressing recommendations from the Internal Audit team, with an emphasis on regular follow-ups within the Global Technology perimeter. Act as the key contact for external audits and ensure the timely delivery of IT security audit reports. Prepare and present monthly IT findings reports to BL/region CISOs during steering committees.
- CSR KPI production: Be responsible for producing and maintaining CSR IT Security KPI documentation in close collaboration with the Edenred CSR team, with a focus on compliance with ISO 27001 and PCI-DSS standards for authorization platforms.
- Cyber Risk Management support: Support the Risk Acceptance process by reviewing and challenging forms submitted by Business Units for completeness and alignment with requirements. Contribute to the collection, verification, and challenge of evidence related to the Cyber Control Framework, while actively identifying and experimenting with automation opportunities to enhance workflows.
- Questionnaire support: Assist in completing group and Business units-level security questionnaires and ensure all responses adhere to GRC guidelines. Provide support for completing cyber insurance questionnaires on behalf of the Group.
- Tooling: Lead the identification, selection, and implementation of innovative tooling solutions to enhance operational efficiency, with a particular focus on optimizing and automating the security questionnaire process.
Key stakeholders
- Group CISO
- Regional / BU CISO
- GRC Security Leaders
- Head of Security Centers of Expertise (CoE) and their teams
- IT / Project teams in Global Technology and BU
- Group Internal Audit / External auditors
YOUR PROFILE
The successful candidate will be an experienced information security professional (2-3 years), with a proven experience in a transversal/international role and the ability to engage with senior managers when needed.
Bachelor's degree in Cybersecurity or related field preferred.
You have demonstrated:
- A strong understanding / knowledge in Cybersecurity
- Experience in writing policies
- Excellent relationship / communication skills (oral / written)
- An analytical mind
- Proactivity, agility & pragmatism
- Ability to work in multi-cultural environments
- A result-oriented mindset and "can-do" attitude
- Team spirit
Languages required: Romanian, English
EXPECTED START DATE
As soon as possible
OTHER DETAILS
- Location: Bucharest, Romania
OUR COMMITMENT
Edenred is all about meritocracy. You come as you are, and you contribute. Indeed, the Edenred Group recognizes, recruits and develops all talents and singularities.
We are committed to preventing all forms of discrimination and to providing all our candidates with equal opportunities regardless of their gender and gender expression, disability, origin, religious belief and sexual orientation or any other criteria.
Apply now and Vibe with Us!