Senior Information Security Specialist
CarlsbergAbout the role
Senior Information Security Specialist: Governance, Risk & Compliance, Copenhagen
It is an exciting time to be joining Carlsberg’s Information Security team as we are implementing a new ISMS. As a part of the Information Security Governance, Risk and Compliance team, you will work in a truly global and diverse organisation.
What you’ll be doing
Carlsberg is implementing a new global ISMS and we are therefore enhancing our risk management capabilities. One of our key objectives is to ensure that we can bring forward the right information for our top management to make risk-based decisions within cyber and information security. You will help develop the ISMS, polices and standards, as well as carrying out risk management activities ensuring that the relevant risks are reported into the ISMS and you will help advice the rest of the organisation on how to ensure compliance with legal requirements, internal policies as well on how to support business objectives.
As a Senior Information Security Specialist in the GRC team, you will work with various tasks within the area of Risk management, Governance and Compliance. The GRC team is located within Carlsberg´s global information security function.
In your role you will:
- Play a key role in implementing key ISMS processes and information security risk management throughout the organization
- Be active in driving change management activities in the organisation to implement the ISMS
- Maintain and develop risk management processes and facilitate communicate within the organization
- Facilitate annual risk assessments
- Maintain an inventory of assets supporting business critical processes
- Ensure policies, manuals and procedures for the ISMS is in place, reviewed and updated
- Ensuring security objectives and risk appetite are established and agreed on regular basis
- Ensure alignment between the security objectives of the ISMS and risk appetite of top management
- Advice and support the local markets and relevant functions in understanding Group information security and compliance requirements
- Support audits within country units and within Group functions
- Define relevant security KPI’s and Key Risk Indicators
- Collect KPI’s and KRI reporting data from relevant functions and local markets
- Facilitate Information Security Board meetings and decisions on risk treatment
- Ensure ongoing alignment with relevant group functions and local markets
What we’re looking for
- A strong compliance and risk management profile who is able to translate legal requirements into pragmatic and actionable solutions
- A person who enjoys working in an international and multi-cultural environment
- A strong communicator with experience in managing change in an organisation
- A person with a systematic approach to navigating in a complex environment
- A team player who enjoys engaging with many stakeholders outside of the Information Security function
- A person who finds it equally exciting to
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s