Head Of Information & Cyber Security Governance
Hlavní Město Praha, Česká Republika
Governance: I am responsible for maintaining and developing information security management system (ISMS). On an ongoing basis, I cooperate with the team members on designing and implementing security processes and documenting internal security processes (e.g., policy, standards and procedures). I plan, assess and evaluate short-term and long-term activities and KPIs of the Cybersecurity department. Based on the results, I propose next steps to ensure continuous development of the team. On the Group level, I provide support to the board of CISO in the area of IT security. This involves responding to CISO security issues and proposing the best solution. Risk: I am responsible for development of risk management methodology and helping the process owners with the risk identification and assessment. I directly contribute to the management in their decision-making process and increase the level of awareness about the current risk level within company. I cooperate with other team members on proposal and implementation of suitable organisational and technical measures e.g. development of the data loss prevention efficiency and proper data classification (emails, internal documents, spreadsheets etc.).Compliance: I provide management with assurance services regarding compliance with legal requirements in Cyber security area. I perform audits and compliance checks of implementation of the organisational and technical measures performed in line with internal security standards and legal requirements.