IT Compliance Coordinator
Budapest, HU, 1117
Norsk Hydro
Hydro is a leading aluminium and renewable energy company that builds businesses and partnerships for a more sustainable future. We have 32,000 employees in more than 140 locations and 40 countries.
Hydro Global Business Services (GBS) is an organizational area that operates as an internal service provider for the Hydro group. Its ultimate purpose is to deliver relevant IT, financial and HR business services to all business areas within the company.
Role purpose
The IT Compliance Coordinator will develop, implement and maintain compliance controls in several functions based on IT policies in accordance with local and international best practices.
Play a crucial role in ensuring that organizations adhere to legal and regulatory requirements.
Will work closely with various stakeholders, including IT teams, business areas, and business units, to develop and implement comprehensive compliance and resilience strategies that align with the organization's goals and objectives.
You will work on
- As part of GRC, support the implementation and maintenance of the I&T Governance and Compliance Framework and Program
- Build and maintain the controls matrix in alignment with multiple compliance frameworks and standards for IT Resilience and other areas
- Design, implement and maintain a standardized, holistic monitoring and reporting framework for GBS IT to
- oversee the maturity level and compliance, resilience status of GBS IT
- measure and evaluate if major horizontal initiatives are integrated into the daily operations of GBS IT in a compliant manner and report to the senior management
- Contribute to the development and audit readiness of the I&T Compliance, Resilience Framework and Program
- Work with Security Engagement and Awareness team on shaping communication materials at program level and support project and BAU level communications
- Coordinate IT compliance related projects and create and maintane of compliance management related SOPs and documentation
- Support key business initiatives by identifying security and compliance related risks
- Ensuring internal compliance (including IT, vulnerability scans, annual training, etc.) are executed in a timely manner
- Communicate to senior management, through reports, presentations, metrics and other documentation, any cyber-security compliance gaps identified
- Explore new, innovative opportunities to add value to your job and the job of everyone in the company
- Support internal and external IT audits by providing evidence, documentation, and insights related to compliance controls. Monitor and interpret changes in IT-related regulatory and industry standards (e.g., DORA, NIS2, GDPR) and support their implementation into relevant internal practices
What we offer you
- Working at the world’s only fully integrated aluminum and leading renewable energy company
- Diverse, global teams
- Flexible work environment/home office
- We provide you the freedom to be creative and to learn from experts
- Possibility to grow with the company, gain new certificates
- Attractive benefit package
Your qualifications and skills
- 3 years experience in IT compliance, resilience related program management
- Knowledge of IS/IT functions, organizational systems, internal control processes and information systems of global corporations and shared services
- Experience at multinational companies with global presence – preferably on security area
- Bachelor Degree in IS/IT area
- Fluent in English is mandatory. Any other language is a plus
- Globally recognized certifications such as ITIL, COBIT, CISA, CRISC, or ISO 27001/22301
- Lead Implementer/Auditor are preffered
- Expected skills, expected soft-skills, competencies
- Ability to oversee a complex multi-dimensional ecosystem of frameworks
- Good presentation and communication skills and ability to understand the customer needs
- Adaptable to change
- Stakeholder management capabilities
- Strong problem-solving and trouble-shooting skills
- Strategic thinking with the ability to connect compliance efforts to business impact
- Experience with compliance tooling and automation (e.g., GRC platforms such as ServiceNow, Archer, or equivalent)
- Familiarity with risk management methodologies (e.g., risk assessment, control evaluation)
Hydro values diverse skills and perspectives among employees. We encourage all qualified candidates to apply. Qualified applicants will be considered regardless of race, religion, nationality, ethnicity, age, gender, sexual orientation, gender identity or expression, protected veteran status, or disability. We strive to provide equal opportunities for all to contribute and succeed with us.
If you have any questions, please contact:
Recruiter
Anita Baloni-Kovacs
Anita.Ghh.Kovacs@hydro.com
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Audits Automation CISA COBIT Compliance CRISC GDPR Governance ISO 27001 ITIL Monitoring NIS2 Risk assessment Risk management Vulnerability scans
Perks/benefits: Flex hours
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.