Information Security Director leading the strategic vision in cybersecurity for Bragg. Managing risk and compliance in a fast-paced international environment from Ljubljana.
Responsibilities
Develop, implement, and maintain the company-wide information security strategy, vision, and roadmap.
Lead the identification, analysis, and evaluation of security risks, approving risk treatment plans and mitigation strategies.
Report on the organization's security posture and risk assessment findings to executive management.
Establish, manage, and optimize the information security budget, allocating resources effectively for key security initiatives.
Ensure and maintain compliance with major legal (e.g., GDPR) and regulatory frameworks (e.g., ISO 27001, SOC2).
Oversee the execution of security awareness programs, fostering and promoting a "security-first" culture throughout the organization.
Lead the strategic response to major security incidents and breaches, focusing on effective crisis communication and minimizing business impact.
Govern the security approval process for new tools and vendors, and provide strategic input into the change management policy.
Lead and coordinate internal and external security audits, ensuring all requirements are met and non-conformities are addressed.
Stay up to date with the latest security threats, evaluate emerging security strategies, and maintain industry leadership.
Requirements
8+ years of experience in information security, with at least 3-5 years in a security leadership or strategic role.
Deep knowledge and practical experience in developing strategies and governing frameworks like ISO 27001 and SOC.
Proven experience in developing security strategy, managing enterprise risk, and security budget management.
Hands-on experience in leading complex security incident response and crisis management.
Exceptional communication and presentation skills, with the ability to articulate complex security risks to non-technical executive stakeholders.
A proactive and strategic mindset and the ability to lead a team or work independently as needed.
Self-driven, energetic, and hands-on, with a "can do, get it done" mindset.
Strong ability to prioritize and manage several strategic initiatives simultaneously.
Bonus points if you hold security certifications (e.g., CISSP, CISM, CISA).
You have experience working in big enterprise environments and software development industry.
Benefits
Competitive compensation (based on your experience).
Hybrid work model.
30 days annual leave.
Educational learning opportunities to support each employee's professional growth journey.
Sports activities, team building, and informal gatherings.
Security Architect designing and implementing cybersecurity architectures for UK Defence projects. Collaborating with stakeholders to safeguard client data against cyber threats.
System Security Specialist analyzing risks and security controls for state agencies. Conducting assessments, providing advisory support, and strengthening cybersecurity posture.
Security Data Specialist supporting a large - scale cybersecurity assessment program for State government agencies. Transforming assessment data into actionable insights and enabling data - driven decision - making across stakeholders.
Trainee in Health & Safety supporting environmental and health safety processes at Hikma Pharmaceuticals. Collaborating on waste management and legal documentation while developing practical EHS skills.
Senior Security Engineer for Ro, enhancing SaaS security posture management and data loss prevention. Collaborating across teams to secure patient data and maintain compliance standards.
Senior Mainframe Security Engineer at Capital One, focusing on Identity Access Management using IBM z/OS and CICS Security. Collaborate on automation and security solutions in a fast - paced environment.
Cybersecurity Senior Manager leading CUI compliance operations at Boeing across multiple locations in the U.S. Responsible for team management and cybersecurity strategies in compliance with regulations.
Experienced Product Security Engineer working on Government Vehicle Health Management Systems at Boeing. Responsible for developing product security and ensuring cybersecurity compliance across multiple platforms.
Senior Offensive Security Consultant at IBLISS specializing in vulnerability assessments and penetration testing in AI/ML systems. Engaging in Red Team exercises and providing technical leadership.
Lead Security Engineer maturing Copia's security engineering program for industrial automation. Collaborating with CISO and covering multiple security domains including detection engineering and IAM.