On behalf of our client, a well-established bank in the Greek market, we are seeking an experienced Information Security Officer to support our client’s information security governance and cyber risk management activities.
The role's main duties involve developing, implementing, and maintaining an effective information security framework to protect the confidentiality, integrity, and availability of information assets and ensure compliance with regulatory and supervisory requirements applicable to the banking sector.
The ideal candidate will have strong knowledge of information security governance, regulatory compliance, and risk management within a regulated financial services environment.
Responsibilities:
- Develop, implement, and maintain information security policies, standards, and procedures aligned with banking regulations and industry standards
- Support the identification, assessment, and management of information security and cyber risks across systems, business processes, and outsourced services
- Oversee the information security aspects of third-party and outsourcing risk, including participation in due diligence, risk assessments, and ongoing monitoring activities
- Monitor and follow up on remediation of findings arising from penetration tests, vulnerability assessments, and other security testing activities, ensuring timely and effective closure
- Assess information security, data protection, and governance controls for AI-enabled systems and third-party solutions, including risks related to data usage, model lifecycle, explainability, and alignment with applicable regulatory and supervisory expectations
- Support internal/external and regulatory IT & Information Security Audits, including preparation of documentation, evidence collection, audit coordination, and follow-up of findings
- Conduct regular reviews of the information security control framework and recommend improvements as necessary
- Stay informed on emerging cyber threats, regulatory developments, and supervisory expectations relevant to the banking sector
- Support the management processes for all information security incidents, including documentation, reporting, and post-incident reviews
- Support internal stakeholders by providing subject matter expertise and advice on information security matters
- Ensure confidentiality and integrity while handling sensitive security-related and regulatory information
Qualifications:
- Bachelor’s degree in Information Systems, Computer Science, or a related field
- Minimum of 5 years of experience in information security governance, risk management, or compliance, preferably within a bank or regulated financial institution
- Knowledge of information security standards and frameworks, and regulatory requirements (e.g. GDPR, DORA, ISO27001, NIS2)
- Experience supporting third-party risk processes, security testing activities, audits, or certification schemes
- High attention to detail and ability to maintain accurate documentation and evidence
- Commitment to the highest standards of integrity, professionalism, and ethical conduct
- Experience leveraging AI-enabled tools to support day-to-day information security, risk, or compliance activities, while ensuring adherence to internal controls, data protection, and regulatory requirements.
- Strong communication and collaboration skills across business, IT, and control functions
Please note that only shortlisted candidates will be contacted.
All applications will be handled with strict confidentiality.
Please make sure to read our Recruitment Privacy Policy before submitting your application.