As a Senior CyberSecurity Governance Analyst, you will be responsible for translating these business requirements into security changes that need to happen to achieve or maintain compliance and conducting appropriate tests and security audits are conducted to start and maintain operations in regulated markets.
CyberSecurity Governance offers Internal and External services relating to Compliance, Standards, Regulations, and Information Security to ensure alignment of our Technology offering with the obligations that the organization is exposed to.
These requirements come mainly from the Regulatory Compliance team but are also defined by other stakeholders such as Finance, Payments, Marketing etc.
This is a position for an experienced compliance professional who wishes to start a role within a busy global Cybersecurity GRC team.
Please note: Experience with iGaming regulations is essential for this role.
What will you do
- Coordinate and execute group-wide cybersecurity audits
- Liaise with business owners to ensure alignment of technical compliance obligations, appropriate risk management and successful outcome of audits and other regulatory obligations
- Liaise with external auditors to ensure timely execution of audit projects and a successful outcome for the organisation
- Introduce Technology platform and process changes to align with security compliance requirements
- Drive technical compliance checks and raise awareness of technical compliance requirements within the group
- Analyze technical audit requirements and support recurring audits of Technology platform and processes. Coordinate technical audits across several areas.
- Update compliance documentation with changes in Technology platform and operations
- Define and improve CyberSecurity Governance processes to increase the effectiveness of the company in operating to regulated markets. Design and introduce technical architecture enhancements for new regulatory services.
- Lead the security requirement gathering and alignment during the entry into new gaming markets and new B2B partnerships.
- Analyze technical and product compliance requirements, for instance for the purpose of gaming license certification.
- Technical point of contact for external regulators and auditors. Establish a working relationship with regulators to ensure a fluent two-way communication.
- Support of regulatory compliance efforts on technical discussions
- Execute projects to implement the group CyberSecurity Governance strategy
- Perform compliance and security assessments of the Group infrastructure
- Conduct internal gap analysis against relevant information security and regulatory standards (PCI DSS, ISO27001, etc.)
- This role performance will directly impact the costs of bringing our technology and applications aligned with jurisdictional regulatory requirements, participating in key decisions to enter new markets.