Experienced Consultant for ISMS Policy Support

Security

Experienced Consultant for ISMS Policy Support

Security
Centrum, Copenhagen

emagine Polska

Full-time
Any
Senior
Hybrid

Job description

We are seeking an experienced consultant to support the redesign of its Information Security Management System (ISMS). The role requires a deep understanding of ISMS compliance with ISO/IEC 2700x standards, project management skills, and the ability to engage with multiple stakeholders effectively. The consultant will play a crucial role in creating a user-friendly framework that aligns with business objectives, ensuring sustainability and compliance.

Main Responsibilities

  • Lead the redesign and simplification of the ISMS framework.

  • Develop and maintain a project plan, keeping stakeholders informed about progress.

  • Create control requirements compliant with ISO/IEC 27001/27002 standards.

  • Ensure ISMS alignment with regulatory requirements such as NIS2 and NERC CIP.

  • Gather feedback from stakeholders and work towards CISO approval.

  • Prepare the structure for a seamless transition to ServiceNow GRC.

  • Ensure the updated ISMS is auditable and facilitates certifications.

Key Requirements

  • Proven project management experience with clear milestone tracking.

  • Expertise in designing and optimizing ISMS frameworks.

  • Deep knowledge of ISO/IEC 2700x standards.

  • Familiarity with regulatory frameworks like NIS2 and NERC CIP.

  • Experience with governance and approval processes.

  • Strong stakeholder engagement and communication skills.

Nice to Have

  • Experience with GRC tools and control mapping.

  • Knowledge of ISO/IEC 27001 certification processes.

  • Background in regulated sectors like energy or financial services.

  • Ability to take a proactive, practical approach to problem-solving.

Start: 1st of June 2026

End: November 2026

Location: Greater Copenhagen Are

Onsite/remote: min. 2 days pr week onsite

Tech stack

    English

    B1

    Procurement

    advanced

    Security

    advanced

    MSP (Managing Successful Programmes)

    advanced

    Financial Services

    advanced

    ISO 27002 - Information Security Management

    advanced

    Governance

    advanced

    Project Management

    advanced

    Documentation

    advanced

    Risk Management

    advanced

    Operations

    advanced

Office location