Information Security Officer
Qualco GroupAbout the role
At Quento, the ICT arm of the Qualco Group, we deliver comprehensive and innovative solutions across AI, Digital Engineering, Cloud, and Cybersecurity, helping businesses accelerate digital transformation. With a presence in Greece, Luxembourg, and Belgium, and backed by the expertise of the Qualco Group, we combine deep technical knowledge with strategic partnerships to support business growth.
We are looking for passionate Information Security Officer to join our team.
A Day in the Life of an Information Security Officer will include
- Maintain, assess, and continuously improve the Information Security Management System (ISMS) in alignment with ISO 27001, NIS2, and other regulatory/compliance requirements.
- Draft, review, and update security policies, standards, procedures, and guidelines to support governance and operational consistency.
- Oversee and support the implementation of technical security controls, including firewalls, Microsoft 365 security suite (Purview, Priva, Defender), and Azure Security Center.
- Coordinate and conduct information security risk assessments, define mitigation strategies, and monitor the execution of corrective actions across business and technical areas.
- Actively participate in incident response processes, including triage, investigation, remediation coordination, and post-mortem reporting.
- Contribute to the implementation and optimization of security operations including SIEM, identity and access management (IAM), and data loss prevention (DLP) mechanisms.
- Collaborate with IT and business stakeholders to ensure compliance with data protection and privacy regulations, including GDPR.
- Conduct or validate Business Impact Analyses (BIA) to define recovery priorities and dependencies.
- Support third-party risk management processes, including vendor assessments and contractual security reviews.
- Promote a security-by-design approach in projects, applications, and systems development lifecycles.
- Deliver targeted security awareness and training sessions to business and IT users.
- Monitor and report on key security metrics, supporting the continuous improvement of the organization's cyber resilience.
- Keep abreast of emerging threats, vulnerabilities, and evolving regulatory frameworks, recommending appropriate adjustments to policies and controls.
- Ensuring that all activities and duties are carried out in full compliance with regulatory requirements and supporting the continued implementation of the Group Anti-Bribery and Corruption Policy.
Requirements
- University degree in Information Security, Computer Science, Engineering, or a related field. A Master’s degree in Information Security is highly desirable.
- At least 5 years of experience in information security, including both GRC and technical security control implementation.
- Solid experience in Firewall administration and security hardening.
- Solid experience in Microsoft 365 Security & Compliance Center, including Purview, Priva, and Defender for Endpoint/Identity.
- Solid experience in Azure security technologies, such as Microsoft Defender for Cloud, Azure Sentinel, and role-based access control (RBAC).
- Proven knowledge of ISO/IEC 27001, NIST CSF, and data privacy standards (e.g., GDPR, ISO/IEC 27701).
- Familiarity with SIEM, EDR, DLP, and IAM tools and concepts.
- Strong communication skills, with the ability to translate technical risks into business impact.
- Experience in conducting security awareness campaigns and user training.
- Excellent command of Greek and English, both written and spoken.
Additional Qualification, Knowledge and Skills
Must have at least one of the following certifications:
- ISO 27001 Lead Auditor / Lead Implementer
- Microsoft Certified: Security, Compliance, and Identity Fundamentals
- Microsoft Certified: Cybersecurity Architect Expert
- Certified Information Systems Auditor (CISA)
- Certified Information Security Manager (CISM)
Nice to Have:
- Microsoft Certified: Azure Security Engineer Associate
- Microsoft Certified: Information Protection Administrator Associate
- Certified Information Systems Security Professional (CISSP)
- Certified Data Privacy Solutions Engineer (CDPSE)
- CompTIA Security+ or CySA+
Benefits
Your Life @ Qualco
This role is a hybrid opportunity in Athens.
As a #Qmember, you will live out every day in a truly human-centered culture, based on mutual respect, trust, and cooperation. Your performance and commitment to our shared goals will be recognized, and there will be great opportuni
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s
Similar roles
Mitarbeiter Kasse/Information im Volkswagen Zentrum Koblenz (m/w/d, Vollzeit)
Löhr & Becker Automobile GmbH
Junior Information Scientist m/w/d 34,46 plus Prämien
apero GmbH Arbeitnehmerüberlassung
Vertriebsmitarbeiter (m/w/d) im Informations- und Telekommunikationstechnikbereich
hebUP GmbH