Senior Information Security Analyst (m/f/d) at Kraken

We are redirecting you to the source. If you are not redirected in 3 seconds, please click here.

Senior Information Security Analyst (m/f/d) at Kraken. Location Information: Remote, DE. Help us use technology to make a big green dent in the universe!. Kraken. powers some of the most innovative global developments in energy.. We’re a technology company focused on creating a smart, sustainable energy system. From optimising renewable generation, creating a more intelligent grid and enabling utilities to provide excellent customer experiences, our operating system for energy is transforming the industry around the world in a way that benefits everyone.. It’s a really exciting time in energy. Help us make a real impact on shaping a better, more sustainable future. . Kraken Customer. What we do: build the most AI-driven, innovative, forward-thinking platform for energy management. From optimizing resources to delivering cost-effective, exceptional customer experiences through advanced Customer Information Systems (CIS), billing, meter data management, CRM, and AI-driven communications, Kraken is powering the next wave of innovation in the energy industry.. Why we do it: future energy will not look like energy as we know it today. We need to not just think about our future, but build for it. Now.. In addition to transforming the energy space, we are actively working on transforming the way we manage information security and compliance to have state-of-the-art continuous, automated and repeatable processes. . We are looking for a Senior Information Security Analyst with at least 4 years of relevant experience to be at the forefront of compliance and security automation. If you’re passionate about Information Security and driving a positive security culture , we encourage you to apply!. What you’ll do. . . Support the implementation and automation of security processes and requirements. Helping to expand our security assurance function. Perform security risk assessments and risk management . Maintain existing certifications (ISO 27001, SOC 1 and 2), and leading on attaining additional relevant certifications in the future. Maintaining and improving our Information Security Management System (ISMS) and associated policies, guidelines, standards and procedures. Performing third party security assessments and managing third party security risks. Promoting a positive security culture and raising awareness through training and other initiatives. Providing security advice and guidance to the wider technical team. Liaising with stakeholders in relation to security issues and provide future recommendations. Automation of Kraken’s audit & compliance programs, enabling easy demonstration of compliance as we scale. Be part of the Kraken Information Security team, working with Privacy and Cyber Security functions to align security controls across Kraken businesses.. This is a varied role in a growing team. You’lll have the opportunity to get involved in other security-related projects and initiatives as needed. We encourage you to take on new challenges that align with your skills and internests, and to collaborate with other teams to drive improvements in security across our entire organisation.. . What you’ll have. . . Understanding of modern software technologies and automation (using low or no code tools to automate audit and compliance tasks) . Good understanding and practical experience of the principles/issues involved in Security & Technology Risk Management . Good understanding and practical experience of the principles/issues involved in Third Party Security Due Diligence. Previous experience implementing and/or maintaining an Information Security Management System (ISMS) in accordance with ISO 27001. Good understanding of information security and the ability to communicate this to people who aren’t subject matter experts. Previous experience working in certified organisations where you’ve led compliance audits and performed security risk assessments.. Good experience in at least some of the areas mentioned above (we’re not expecting any candidate to be an expert in all areas). . What will help. . . Passion to automate security and compliance . Some software engineering knowledge or experience. Understanding of compliance frameworks E. xperience with information security policies and controls . Security certifications (any of the famous abbreviations) . Security qualifications (e.g. apprenticeships or degrees). Knowledge of the trust service criteria for SOC 1 and SOC 2, and experience working in SOC certified organisations. A wider understanding of Cloud technologies especially AWS (or other CSPs). If this sounds like you then we'd love to hear from you.. Are you ready for a career with us? We want to ensure you have all the tools and environment you need to unleash your potential. Need any specific accommodations? Whether you require specific accommodations or have a unique preference, let us know, and we'll do what we can to customise your interview process for comfort and maximum magic!. Studies have shown that some groups of people, like women, are less likely to apply to a role unless they meet 100% of the job requirements. Whoever you are, if you like one of our jobs, we encourage you to apply as you might just be the candidate we hire. Across Octopus, we're looking for genuinely decent people who are honest and empathetic. Our people are our strongest asset and the unique skills and perspectives people bring to the team are the driving force of our success. As an equal opportunity employer, we do not discriminate on the basis of any protected attribute. Our commitment is to provide equal opportunities, an inclusive work environment, and fairness for everyone..