ICEYE | Information Security and Risk Officer
ICEYE seeks an Info Security and Risk Officer with 3+ years' cybersecurity experience. Mitigate risks in SAR satellite operations. Certifications like CISSP, CISA, or CISM valued. Help us improve life
ICEYE is the global leader in synthetic aperture radar (SAR) satellite operations for Earth Observation, persistent monitoring, and natural catastrophe solutions; owning and operating the world's largest SAR constellation. ICEYE is headquartered in Finland and operates from five international locations with more than 600 employees from nearly 60 countries, inspired by the shared vision of improving life on Earth by becoming the global source of truth in Earth Observation.
ICEYE is looking for an enthusiastic and proactive Information Security and Risk Officer to ensure the security and resilience of the organization. In this role, you'll collaborate across teams to identify and mitigate security risks, implement secure design principles, and manage risks associated with third-party partnerships. As a key player in protecting customers' data, you'll help maintain and strengthen trust in ICEYE's brand. Key tasks and responsibilities include:
GRC (Governance, Risk, and Compliance)
- Develop and maintain security policies, standards, and procedures
- Develop and implement risk mitigation strategies
- Conduct regular risk assessments to identify and prioritize security threats
- Continuously monitor and report on the effectiveness of risk management efforts
- Ensure compliance with industry regulations and security frameworks (e.g.,
- GDPR, ISO 27001, NIST)
- Be a point of contact and contribute to effective internal and external audits
- related to security
- Address audit findings and implement corrective actions
Security Assessment
- Lead security assessments of new and existing products and services
- Perform threat modelling and vulnerability analysis
- Manage the identification, assessment, and remediation of vulnerabilities
Security Scorecard
- Develop and maintain a security scorecard to track security posture
- Use the scorecard to drive continuous improvement in security
- Collaborate with development teams to remediate security issues
Security by Design
- Champion the integration of security into the development lifecycle
- Provide security training and guidance to development teams
- Promote the use of secure coding practices and security tools
VRM (Vendor Risk Management)
- Assess and manage security risks associated with third-party vendors
- Conduct due diligence on potential vendors with security reviews
- Monitor vendor compliance with security requirements
- Monitor Vendor Reputation with appropriate tools to determine risk
Customer Attestation
- Develop and manage customer attestation processes
- Provide customers with assurance of our security posture
- Assist customers with security inquiries and incidents
Background and requirements:
- 3+ years of relevant experience in cyber security-related roles
- Ability to gain Security Clearances in Finland
- Strong understanding of security principles, vulnerabilities, and threats
- Experience with security assessment tools and techniques
- Excellent communication and collaboration skills
- Ability to work effectively with cross-functional teams
- Experience in implementing and/or auditing ISO 27001 standards
- Certifications such as CISSP, CISA, and CISM are valued
- Due to the nature of the role, an on-site presence is required.
Learn more about life at ICEYE: https://www.iceye.com/careers.
- Departments
- IT
- Locations
- Espoo, Finland
- Sectors
- Cyber Security
ICEYE | Information Security and Risk Officer
ICEYE seeks an Info Security and Risk Officer with 3+ years' cybersecurity experience. Mitigate risks in SAR satellite operations. Certifications like CISSP, CISA, or CISM valued. Help us improve life
Loading application form