Chief Information Security Officer (CISO)
Gelasakis Group of Companies · Piraeus, Attiki, Greece
Apply & track with Apply EdgeWe are looking for an experienced Chief Information Security Officer (CISO) to lead and further develop the cybersecurity and information security strategy of our Group of Companies.The CISO will be responsible for information security governance, cybersecurity risk management, regulatory compliance, incident response, and the Group's overall cyber resilience, working closely with Senior Management, IT teams, business units, and external partners.Key ResponsibilitiesLead the Group's cybersecurity strategy, governance, policies, and security frameworkEnsure compliance with NIS2 and applicable regulatory requirementsLead cybersecurity risk assessments, maintain the Risk Register, and recommend mitigation measuresOversee security incident response, vulnerability management, penetration testing, and remediation activitiesCoordinate security audits, assessments, and third-party risk managementSupport Business Continuity and Disaster Recovery planning and testingDevelop and oversee security awareness and phishing simulation programsProvide regular cybersecurity, risk, and compliance reporting, including KPIs and KRIs, to Senior ManagementRequirementsProven experience in a senior cybersecurity / information security leadership roleStrong knowledge of ISO 27001, NIST CSF, CIS Controls, and MITRE ATT&CKExperience with SIEM, SOC operations, Incident Response, threat intelligence, IAM/PAM, and vulnerability managementExperience in on-premises, cloud, and hybrid security environments, including AWS, Azure, and/or GCPGood understanding of GDPR, NIS2, DORA, ISO 37001, and PCI DSSExperience in business continuity, disaster recovery, and cyber resilienceStrong analytical, communication, leadership, and stakeholder management skillsExcellent command of English, written and spoken