INFORMATION SECURITY RISK MANAGER

JTI 2025-12-10 21:01:16

Описание

At JTI we celebrate differences, and everyone truly belongs. 46,000 people from all over the world are continuously building their unique success story with us. 83% of employees feel happy working at JTI.

To make a difference with us, all you need to do is bring your human best.

What will your story be? Apply now!  

Learn more: jti.com


Information Security Risk Manager

We are seeking an experienced Information Security Risk Manager to play a key role in our ongoing efforts to protect our organization from cyber threats, Digital and IT risks. The role will involve identifying, assessing, and managing security risks, ensuring compliance with industry regulations, and working closely with key stakeholders to strengthen our security posture. By implementing effective risk management practices, you will help safeguard our digital assets and align security initiatives with business objectives. 


What will you do – responsibilities:


Risk Identification and Assessment

Conduct regular risk assessments for D&IT systems, applications, networks, and third-party vendors.Identify potential cybersecurity threats, vulnerabilities, and areas of non-compliance.Evaluate emerging IT and cyber risks based on technological advancements and threat intelligence.

Risk Mitigation and Control Development:

Develop and implement risk mitigation strategies to address identified risks.Recommend and design controls to safeguard IT infrastructure and sensitive information.Collaborate with Digital &IT, security, and business teams to ensure controls are integrated into processes.

Monitoring and Reporting:

Establish key risk indicators (KRIs) and key performance indicators (KPIs) to monitor IT and cyber risks.Prepare detailed risk reports and dashboards for senior leadership and relevant stakeholders.Escalate critical risks and incidents promptly to appropriate parties.

Governance and Compliance:

Ensure compliance with industry standards (e.g., ISO 27001, NIST,) and regulatory requirements (e.g., GDPR).Maintain and improve the D&IT and cybersecurity risk management framework.Conduct audits and facilitate external assessments to verify compliance with risk and security standards.

Incident Response and Resilience:

Contribute to the development and testing of incident response plans and business continuity strategies.Support investigations and root-cause analysis of security incidents and breaches.

Who are we looking for – requirements:


Educational background:

Bachelor's or Master's degree in Cybersecurity, Information Technology, or a related field.Relevant certifications such as CISSP, CISM, or CRISC.Knowledge of relevant compliance standards and regulations.

Professional experience:

8+ years of experience in IT risk management, cybersecurity, or a related role.Hands-on work experience in information security, and risk management including risk reporting.Proficiency in IT security tools and software, understanding of network protocols, experience with security frameworks (e.g., NIST, COBIT), Knowledge of cloud security and cloud computing.In-depth knowledge of information security principles, practices, and technologies.Strong understanding of risk management methodologies and frameworks.Experience with security assessments, vulnerability management, and risk analysis.

Interpersonal, non-technical skills:

Strong analytical and problem-solving skills.Excellent communication and interpersonal skills for effectively collaborating with cross-functional teams and communicating security concepts to non-technical stakeholders.

Are you ready to join us? Build your success story at JTI. Apply now!

Next Steps:

After applying, if selected, please anticipate the following within 1-3 weeks of the job posting closure: Phone screening with Talent Advisor > Assessment tests > Interviews > Offer. Each step is eliminatory and may vary by role type.

At JTI, we strive to create a diverse and inclusive work environment. As an equal-opportunity employer, we welcome applicants from all backgrounds. If you need any specific support, alternative formats, or have other access requirements, please let us know.

Похожие вакансии

  • Security Officer, (NO-2), Odesa, Ukraine, post # 134572, Temporary Appointment (Open for Ukrainian nationals only)

    Unicef , , месяц назад
    ... apply the Security Risk Management principles and procedures Continual support to the Senior management Security Manager Security Specialist including advice on the impact of security policy changes. Provide guidance ... information about working for UNICEF can ...
    ua.talent.com
  • Field Security Associate (FSA) - Training, NPSA-6, DS-Kyiv, UNDSS, Nationals only

    PNUD Argentina , Kyiv, 11 дней назад
    ... with practical training ground manager. Assists in the preparation of ... adequate gathering and verification of security information that may be required for a proper analysis of the situation;  Communicates information on security issues to the heads of ...
    ua.talent.com
  • Cyber Security DevOps Manager

    JTI 9 часов назад
    ...  Learn more: jti.com    Cyber Security DevOps Manager  What this position is about – ...
    jobs.jti.com
  • Information Security Manager

    Gypsy Collective , , 12 дней назад
    ... hands-on technical responsibility: from Security Risk management and IAM to endpoint protection, security operations, and IT infrastructure. Information Security Manager will work closely with leadership ...
    ua.talent.com
  • Security Risk Project Manager

    Prevail , Kyiv, 14 дней назад
    ... as a corporate security manager or has worked within UNDSS INGO security structures in Ukraine, with exposure to multi-disciplinary risk frameworks (grant program risk, cyber risk, standard security risk management).  Responsibilities deliverables ...
    ua.talent.com
  • Safety and Security Director, Ukraine Response

    Save the Children , , 23 дня назад
    ... role holder provides expert advice, risk assessments, and actionable information to support the safety and security of staff, programmes, assets, and ...
    ua.talent.com
  • Senior Security Engineer

    Softjourn 9 часов назад
    ... information security, information technology, and information security assurance;Working knowledge and understanding of Cloud security (Salesforce Cloud etc.), data security, network security, identity, and access management, policy management, and risk ...
    softjourn.com
  • Cyber & Digital Resilience Solutions Architect

    CRDF Global , Kyiv, 6 дней назад
    ... progressively responsible work experience in information security cybersecurity or a related field ...
    ua.talent.com
  • Analyst - Kyiv, Ukraine

    Control Risks , Kyiv, 20 дней назад
    ... the client.Work closely Operations Manager to produce Security Risk Assessments.Maintain currency of incident databases and input data in a consistent and timely way.Establish, develop and maintain security information contacts in Ukraine.Oversee and ...
    ua.talent.com
  • Senior Field Manager (Kharkiv- Sumy) only for national staff

    Save the Children , , 21 день назад
    ... , social and communal services. Safety, Security, and Risk Management  With Safety and Security teams in Kharkiv and Sumy, ensuring that security risk assessments, contingency plans, standard operating ...
    ua.talent.com
  • Senior Field Manager (Kharkiv- Sumy)

    Save the Children , , 21 день назад
    ... , social and communal services. Safety, Security, and Risk Management  With Safety and Security teams in Kharkiv and Sumy, ensuring that security risk assessments, contingency plans, standard operating ...
    ua.talent.com
  • Ingeniero Senior, OT Cybersecurity Engineer

    Constellation Brands , Kryvyi Rih, 2 дня назад
    ... OT Assets: Develop mastery of risk management, identification, and mitigation of potential security threats in operational brewery environments. ... , military or veteran status, genetic information, pregnancy, childbirth, breastfeeding, or related ...
    ua.talent.com
  • Risk & Compliance and Safeguarding Coordinator (Ukraine Nationals Only)

    Save the Children , , 21 день назад
    ... , child protection, food security, social support, and advocacy to drive lasting change in childrens lives.  ROLE PURPOSE:  The Risk & Compliance and Safeguarding Coordinator (hereafter ... Ensure that case information is kept confidential and documentation ...
    ua.talent.com
  • Cybersecurity Automation Engineer, GRC & Third-Party Risk

    Trimble , , 23 дня назад
    ... code and innovation?Join our Information Security team as a Cybersecurity Automation Engineer and revolutionize the way we manage risk What You Will DoYou will ...
    ua.talent.com
  • Programme Manager - Gaza

    The HALO Trust , , 7 дней назад
    ... , dynamic, and motivated Programme Manager to deliver these aims. The ... in-country leadership and accountability, security and all other risk management oversight, and developing a ... be an excellent leader and manager of diverse personnel. Ultimately, the ...
    ua.talent.com
  • Penetration Tester

    Playtech , Kiev, 20 дней назад
    ... Certified Ethical Hacker (CEH), Offensive Security Certified Professional (OSCP), or Certified Information Systems Security Professional (CISSP).Experience in Red ...
    ua.talent.com
  • Business Resilience

    Coca-Cola Hellenic Bottling Company , Kyiv, 17 дней назад
    ... job:As the Business Resilience Manager, you will drive the development, implementation, and continuous improvement of the Business Unit’s resilience framework, covering Enterprise Risk Management (ERM), operational security, fraud prevention and control ...
    ua.talent.com
  • Network Security Senior Consultant

    KPMG in Ukraine , Kyiv, 9 дней назад
    ... perform threat modeling and cyber risk assessments, analyze potential threats, and develop appropriate security measures.Regulations and Standards: Knowledge of and compliance with information security legislation and standards (ISO IEC ...
    ua.talent.com
  • Project Manager

    Miratech 9 часов назад
    ... position requires a seasoned Project Manager who can leverage traditional methods to enhance results, accelerate goal achievement, reduce costs, and maximize project benefits. With a focus on Information Security and Risk Management, this role will serve ...
    www.smartrecruiters.com
  • Project Manager

    Miratech 9 часов назад
    ... position requires a seasoned Project Manager who can leverage traditional methods to enhance results, accelerate goal achievement, reduce costs, and maximize project benefits. With a focus on Information Security and Risk Management, this role will serve ...
    www.smartrecruiters.com
  • Research Manager – Resilience and Spatial Planning Unit for Ukraine, based in Dnipro (Internal Applicants Only)

    IMPACT , Dnipro, 7 дней назад
    ... CoPs).The Research Manager will maintain the strictest confidentiality on all data collected and related processes. He she will actively take measures to prevent the unauthorized sharing of any information and data ... security and or isolation adjustment is ...
    ua.talent.com
  • Research Manager – Resilience and Spatial Planning Unit for Ukraine, based in Dnipro (Link For External Applicants)

    IMPACT , Dnipro, 7 дней назад
    ... CoPs).The Research Manager will maintain the strictest confidentiality on all data collected and related processes. He she will actively take measures to prevent the unauthorized sharing of any information and data ... security and or isolation adjustment is ...
    ua.talent.com
  • ICITAP Targeting Specialist - Ukraine

    Amentum , Kyiv, 10 дней назад
    ... assistance programs related to border security foreign assistance programs.  Must have worked with US DHS partners as well as external partners to coordinate examinations of high-risk threats and the sharing of information and or intelligence through the ...
    ua.talent.com
  • Fraud & Risk Solutions Consultant

    Visa , Kyiv, 20 дней назад
    ... how payment ecosystems workUnderstands regional risk regulationsRemains current on global competitive ... be confirmed by your Hiring Manager. ​QualificationsBasic Qualifications:5 or more ...
    ua.talent.com
  • AWS/Security Networking Engineer (Senior/Lead) ID42040

    AgileEngine , Uzhhorod, месяц назад
    ... as a Senior AWS Security Networking Engineer to shape secure, ... across the network and security stack;Automate routine tasks using infrastructure-as-code and security-as-code best practices;Partner with governance, risk, and compliance teams to maintain ...
    ua.talent.com
  • AWS/Security Networking Engineer (Senior/Lead) ID42040

    AgileEngine , , месяц назад
    ... as a Senior AWS Security Networking Engineer to shape secure, ... across the network and security stack;Automate routine tasks using infrastructure-as-code and security-as-code best practices;Partner with governance, risk, and compliance teams to maintain ...
    ua.talent.com
  • AWS/Security Networking Engineer (Senior/Lead) ID42040

    AgileEngine , Ternopil, месяц назад
    ... as a Senior AWS Security Networking Engineer to shape secure, ... across the network and security stack;Automate routine tasks using infrastructure-as-code and security-as-code best practices;Partner with governance, risk, and compliance teams to maintain ...
    ua.talent.com
  • AWS/Security Networking Engineer (Senior/Lead) ID42040

    AgileEngine , , месяц назад
    ... as a Senior AWS Security Networking Engineer to shape secure, ... across the network and security stack;Automate routine tasks using infrastructure-as-code and security-as-code best practices;Partner with governance, risk, and compliance teams to maintain ...
    ua.talent.com
  • AWS/Security Networking Engineer (Senior/Lead) ID42040

    AgileEngine , Ivano-Frankivsk, месяц назад
    ... as a Senior AWS Security Networking Engineer to shape secure, ... across the network and security stack;Automate routine tasks using infrastructure-as-code and security-as-code best practices;Partner with governance, risk, and compliance teams to maintain ...
    ua.talent.com
  • AWS/Security Networking Engineer (Senior/Lead) ID42040

    AgileEngine , Ternopil, месяц назад
    ... as a Senior AWS Security Networking Engineer to shape secure, ... across the network and security stack;Automate routine tasks using infrastructure-as-code and security-as-code best practices;Partner with governance, risk, and compliance teams to maintain ...
    ua.talent.com
  • AWS/Security Networking Engineer (Senior/Lead) ID42040

    AgileEngine , Chernivtsi, месяц назад
    ... as a Senior AWS Security Networking Engineer to shape secure, ... across the network and security stack;Automate routine tasks using infrastructure-as-code and security-as-code best practices;Partner with governance, risk, and compliance teams to maintain ...
    ua.talent.com
  • AWS/Security Networking Engineer (Senior/Lead) ID42040

    AgileEngine , Chernivtsi, месяц назад
    ... as a Senior AWS Security Networking Engineer to shape secure, ... across the network and security stack;Automate routine tasks using infrastructure-as-code and security-as-code best practices;Partner with governance, risk, and compliance teams to maintain ...
    ua.talent.com
  • AWS/Security Networking Engineer (Senior/Lead) ID42040

    AgileEngine , Ternopil, месяц назад
    ... as a Senior AWS Security Networking Engineer to shape secure, ... across the network and security stack;Automate routine tasks using infrastructure-as-code and security-as-code best practices;Partner with governance, risk, and compliance teams to maintain ...
    ua.talent.com
  • AWS/Security Networking Engineer (Senior/Lead) ID42040

    AgileEngine , Uzhhorod, месяц назад
    ... as a Senior AWS Security Networking Engineer to shape secure, ... across the network and security stack;Automate routine tasks using infrastructure-as-code and security-as-code best practices;Partner with governance, risk, and compliance teams to maintain ...
    ua.talent.com
  • AWS/Security Networking Engineer (Senior/Lead) ID42040

    AgileEngine , Ivano-Frankivsk, месяц назад
    ... as a Senior AWS Security Networking Engineer to shape secure, ... across the network and security stack;Automate routine tasks using infrastructure-as-code and security-as-code best practices;Partner with governance, risk, and compliance teams to maintain ...
    ua.talent.com
  • AWS/Security Networking Engineer (Senior/Lead) ID42040

    AgileEngine , Cherkasy, месяц назад
    ... as a Senior AWS Security Networking Engineer to shape secure, ... across the network and security stack;Automate routine tasks using infrastructure-as-code and security-as-code best practices;Partner with governance, risk, and compliance teams to maintain ...
    ua.talent.com
  • AWS/Security Networking Engineer (Senior/Lead) ID42040

    AgileEngine , Cherkasy, месяц назад
    ... as a Senior AWS Security Networking Engineer to shape secure, ... across the network and security stack;Automate routine tasks using infrastructure-as-code and security-as-code best practices;Partner with governance, risk, and compliance teams to maintain ...
    ua.talent.com
  • AWS/Security Networking Engineer (Senior/Lead) ID42040

    AgileEngine , , месяц назад
    ... as a Senior AWS Security Networking Engineer to shape secure, ... across the network and security stack;Automate routine tasks using infrastructure-as-code and security-as-code best practices;Partner with governance, risk, and compliance teams to maintain ...
    ua.talent.com
  • AWS/Security Networking Engineer (Senior/Lead) ID42040

    AgileEngine , Cherkasy, месяц назад
    ... as a Senior AWS Security Networking Engineer to shape secure, ... across the network and security stack;Automate routine tasks using infrastructure-as-code and security-as-code best practices;Partner with governance, risk, and compliance teams to maintain ...
    ua.talent.com

Карточка вакансии:

  • Должность INFORMATION SECURITY RISK MANAGER
  • Размещено: 2025-12-10 21:01:16
  • Город
  • Зарплата:
  • Компания: JTI