Cybersecurity SpecialistSee all recent Jobs
Overview
Experience: Senior
Skills: Cybersecurity, ISO27001, Network security
Reference Number: UPC1615b
Nicosia
Full Time
We are currently looking for an experienced Cybersecurity Specialist & Information Security Officer to support a major public-sector organization in Nicosia, Cyprus.
The successful candidate will contribute to the implementation, monitoring, and continuous improvement of the organization’s information security and cybersecurity framework, supporting the effective management of security risks, compliance requirements, and information security measures.
This is a full time, project-based opportunity, ideal for an experienced cybersecurity professional or independent consultant looking to contribute to a high-impact public-sector project.
Key Responsibilities
- Support the implementation, maintenance, and continuous improvement of the Organization’s Information Security Management System (ISMS).
- Provide support and guidance to employees with access to the Organization’s network and information systems regarding their information security responsibilities.
- Assist in monitoring compliance with applicable laws, regulations, cybersecurity requirements, policies, procedures, and information security standards.
- Support the Organization in meeting applicable requirements of the Digital Security Authority (DSA) and other relevant regulatory and supervisory authorities.
- Assist in identifying, assessing, documenting, and prioritizing information security and cybersecurity risks.
- Support the implementation and monitoring of appropriate security measures and controls based on identified risks.
- Contribute to information security risk assessments, risk treatment plans, and mitigation strategies.
- Monitor the effectiveness and performance of implemented cybersecurity and information security controls.
- Support the identification and assessment of security threats, vulnerabilities, and potential weaknesses and report findings to the relevant management and security stakeholders.
- Assist in the monitoring, documentation, and management of information security and cybersecurity incidents, including incidents that may affect the continuity of services.
- Support the preparation of reports, assessments, and documentation relating to security incidents and cybersecurity events.
- Monitor the progress and implementation of agreed cybersecurity measures and provide regular updates to the relevant stakeholders.
- Assist in preparing reports and presentations concerning the Organization’s cybersecurity posture, risks, compliance status, and security initiatives.
- Participate in meetings with Management and relevant project stakeholders when required.
- Support the Organization in maintaining compliance with relevant standards and regulatory frameworks, including ISO/IEC 27001, NIS2, GDPR, K.D.P. 389/2020 and K.D.P. 245/2024, where applicable.
- Contribute to the continuous improvement of the Organization’s information security and cybersecurity framework.
- Support the adoption of a risk-based approach to information security and cybersecurity.
- Maintain appropriate security documentation, records, procedures, and evidence required for audits, assessments, and compliance activities.
Minimum Requirements
Academic Qualifications
- Recognized University Degree or equivalent qualification in IT or relevant field
- A Master’s Degree or equivalent qualification in a field related to Network & Information Security, Cybersecurity and/or Digital Forensics will be considered an advantage and may be taken into account for evaluation and ranking purposes.
Professional Experience
- At least 3 years of professional experience in Network & Information Security and/or Cybersecurity.
- Demonstrable experience in at least 2 projects involving one or more of the following:
- Development and/or implementation of an Information Security Management System (ISMS).
- Information security and cybersecurity risk management.
- Information security compliance and regulatory assessments.
- Implementation or assessment of security controls.
- Compliance with recognized standards or regulatory frameworks, such as ISO/IEC 27001, NIS2, GDPR, K.D.P. 389/2020 and K.D.P. 245/2024.
- Experience should be demonstrable and verifiable through reference letters/references and contact details of the responsible person for each relevant contract, where requested by the Contracting Authority.
Professional Skills & Knowledge
The candidate should demonstrate practical knowledge and understanding of:
- Information Security Management Systems (ISMS).
- Cybersecurity risk identification, assessment, prioritization, and treatment.
- Information security policies, procedures, and controls.
- Security compliance and regulatory requirements.
- ISO/IEC 27001 and information security management principles.
- Cybersecurity incident management and reporting.
- Network and information security principles.
- Vulnerability and threat management.
- Security monitoring and control effectiveness.
- Cybersecurity governance and risk-based security practices.
Language Requirements
- Very good knowledge of the Greek and English languages, both written and spoken.
Professional Certifications
Possession of one or more of the following professional certifications, or equivalent qualifications, will be considered an advantage and may be taken into account for evaluation and ranking purposes:
- ISO/IEC 27001 Lead Auditor (LA)
- ISO/IEC 27001 Lead Implementer (LI)
- ISO/IEC 27005 – Information Security Risk Management
- ISO/IEC 27035 – Information Security Incident Management
- Certified Information Systems Auditor (CISA)
- Certified Information Systems Security Professional (CISSP)
- Certified Information Security Manager (CISM)
- Certified in Risk and Information Systems Control (CRISC)
Benefits
- Competitive remuneration package (250-270 daily for freelancers)
- Private insurance
- Part-time, project-based engagement
- Dynamic and challenging environment
- Continuous learning, education, and professional development
- Exposure to cutting-edge cybersecurity technologies and practices
- Opportunity to work on a high-impact public-sector cybersecurity project
- Pleasant and collaborative working environment
- Opportunity to expand your knowledge, expertise, and professional responsibilities
About UpcoMinds
UpcoMinds is a dynamic IT company with 29 years of experience, providing end-to-end web and mobile solutions that help businesses reinvent themselves in the digital world.
Our team’s skills and expertise enable the holistic digital transformation of organizations, significantly improving both business operations and customer experience.
Our goal is to ensure that our products and services reflect our deep engineering expertise and elegant, progressive design aesthetic. We believe strongly in developing long-term strategic partnerships with our clients by exceeding expectations and maintaining a high level of transparency.
Find out more about us at www.upcominds.com.
We are committed to promoting Inclusion & Diversity by creating a working environment where all employees are treated with dignity and respect and where individual differences are valued. We offer equal opportunities in all aspects of employment.
Our recruitment consultants will review your CV as soon as possible and contact you to discuss the opportunity for which you have applied.
If you do not hear from us within ten (10) working days, you may consider that you have not been selected for this particular position.
By submitting your CV, you consent to its retention in our database for a period of two (2) years, for the purpose of considering you for current or future employment opportunities, in accordance with applicable data protection legislation and GDPR.
Bookmark Job
You must sign in to bookmark this listing.
