Autosøk

Senior Information Security Risk Manager

Company Description

Lilleakerveien 6A, 0283 Oslo

Resume Match

Your resume?%

Preview only — we'll score how well you match this job once you have a resume. Add a resume

Job Description

Senior Information Security Risk Manager

At Statkraft, we are committed to securing the systems, information, and digital capabilities that enable the transition to a renewable future. As Europe's largest generator of renewable energy, we operate in more than 20 countries and depend on secure, resilient, and well-governed information and technology services.

Job Description

We are looking for a Senior Information Security Risk Manager to strengthen our Information Security Management team and help drive security risk management, governance, and continuous improvement across Statkraft's global operations.

As Senior Information Security Risk Manager, you will assist in identifying, analysing, treating and monitoring information security risks in Statkraft. You will act as a trusted advisor to business and technology stakeholders, helping them understand and manage information security and technology risks.

Areas of responsibilities and accountabilities:

  • Information Security Risk Management: Lead and facilitate information security risk assessments across business processes, systems, and services globally. Advise business leaders on mitigation strategies and maintain risk registers.
  • Security Culture and Awareness: Develop and deliver security awareness initiatives and promote risk ownership throughout the organisation.
  • Stakeholder Management: Build strong relationships with business stakeholders and translate technical security topics into business-relevant language.

Requirements

  • Master's degree in Information Security, Cyber Security, Risk Management, or a related discipline.
  • Minimum 5-8 years of experience within information security, IT risk management, governance, or compliance.
  • Strong experience conducting security risk assessments and facilitating risk treatment.
  • Excellent understanding of security governance frameworks such as ISO/IEC 27001, ISO/IEC 27005, and NIST.
  • Ability to obtain security clearance and authorization.

Skills

Information Security Risk ManagementSecurity Governance Frameworks (ISO 27001/27005, NIST)Stakeholder ManagementRisk Assessment and TreatmentStrategic AdvisoryCommunication and Presentation Skills

Experience

senior

Similar Jobs