Job Description:
About DXC Bulgaria
We are DXC - a Fortune 500 global IT services leader. In Bulgaria, we are among the largest employers with over 4,000 employees working on the company's entire IT portfolio. We are flexible - we provide everything you need to comfortably work from home, but we also keep our offices open for collaboration, meetings, and building a strong team spirit. We tailor everyone’s development path to their individual interests through training and additional certifications.
Our experience and desire to grow, our mission, and our values create an environment where ambitious people become successful at home. At home - in Bulgaria.
Daily challenges• Support the implementation and maintenance of all locally applicable information security certifications, local or global information security regulations and related client security audits.• Contribute to the successful achievement of security assurance-related deliverables, engaging other functions in the wider DXC as required.• Interpret and suggest risk treatment based on industry and business knowledge for assigned accounts, industry/technology or entity.• Participates in the planning, executing, and reporting of regulatory and security compli-ance assurance reviews and activities within an assigned location in accordance with the corporate Control Framework.• Supports Security and IT control training and awareness programs.• Audit Coordination: Coordinate the collection of audit evidence and collaboration between teams and external auditors, requested in DXC internal or external audits.• Governance (preparation, implementation, regular review) of all local site security policies, procedures and documentation and maintaining them in compliance with required regulatory standards.
eXperience and skills required
• Bachelor’s degree in computer science, Computer Studies, Information Security, Management Information Systems (or equivalent combination of education and experience)• Industry level certification, like CompTIA Security+, CISM, CISA, CRISK or able to evidence similar level of knowledge will be considered a plus• At least two years of experience working in IT service management or Security Assurance function• Deeper knowledge of at least one (or more) amongst ISO 27001, ISO 27701, ISO 22301, SOC, NIS/NIS 2, TISAX, Risk Management (ISO 31000/ISO 27005)• Experience in the use of security principles, risk assessment frameworks, information security best practices, products and technologies
Company benefits
We Deliver eXcellence for our Customers and colleagues every day. Our values form the foundation of everything we do and every decision we make.
If you feel comfortable with the above-mentioned requirements, please send us your CV in English. Please note that only shortlisted candidates will be contacted.DXC Technology stands for equal opportunities, namely, we do not discriminate on the basis of race, religion, color, sex, age, disability, or sexual orientation. All recruitment decisions are based solely on qualifications, skills, knowledge and experience, and relevant business requirements.
Recruitment fraud is a scheme in which fictitious job opportunities are offered to job seekers typically through online services, such as false websites, or through unsolicited emails claiming to be from the company. These emails may request recipients to provide personal information or to make payments as part of their illegitimate recruiting process. DXC does not make offers of employment via social media networks and DXC never asks for any money or payments from applicants at any point in the recruitment process, nor ask a job seeker to purchase IT or other equipment on our behalf. More information on employment scams is available here.