DATE: 15 Sep 2025
DXC Bulgaria
Security Consultant
Responsibilities
The Security Consultant will be responsible for drafting new policy or amending existing security policy and procedure sets for clients that regulatory and compliance requirements (Policy Development). This person shall undertake assessment activity to identify gaps against well-known and client developed security standards (Gap Analysis). The consultant will be creating end-to-end risk management programs or perform risk assessment using well-known methodologies for risk identification. Develop risk remediation plan (Risk Assessment). Help in designing and implementing Information Security Management System aligned to regulatory and client security standards (ISMS).
Daily challenges
- Gap Analysis
- Policy Development and Risk Assessment
- Setup Security Governance Models
- Security KPI Setup
- Auditing, and ISMS Implementation
- Security Plan Development
- Cyber Strategy
eXperience and skills required
- Fluent English (minimum C1 level).
- 7+ years of professional IT experience (with at least 4 years of professional experience on positions related to the security domain – GRC (Governance, Risk and Compliance), audit management and process management are preferred).
- Experience of Enterprise Risk Management methodologies/techniques development and implementation, risk analysis output’s implementation into Information Security processes.
- Very good communication and presentations skills including ability to present to executives.
- Experience with interpreting and applying appropriate Standards, Policies and Legislation, (e.g. ISO27001, PCI DSS, COBIT, SOX, DPA, GDPR, NIST etc.) confirmed by respective certifications or relevant experience
- Awareness of cyber-attack techniques and how protective monitoring systems can be used for detection, mitigation, remediation and protection. Experience in working in project environment, ideally as task group or technical lead. A wide awareness of Cyber Security and Cyber Threat Landscape.
- Professional accreditations like CISA; CISM; ISO 27001; CISSP.
Full details and applications at Security Consultant