Information Security Specialist
We are looking for an experienced Information Security Specialist with 3+ years of experience to join our team. In this role, you will be responsible for developing and implementing access management controls, ensuring compliance with information security policies, standards, regulations, and best practices. You will also identify and assess potential security risks, contribute to risk management activities, and develop and implement risk treatment plan. Additionally, you will support the organization in resolving information security-related issues, including advising other teams and contributing to the continuous improvement of security processes.
Develop and implement access control mechanisms, including secure user authentication, authorization, and account management
Identify, assess, and analyze the organization’s potential security risks, develop and implement treatment plan
Develop and maintain internal security policies and procedures, aligned with industry standards and national legislation
Establish and maintain compliance with Information Security standards, frameworks, regulations, and best practices, such as ISO 27001:2022, ISO 27701:2019, PCI DSS
Conduct regular audits and assessments to ensure compliance with security policies and regulatory requirements
Support internal and external audits by preparing documentation and addressing findings
Identify and mitigate data leakage risks and operational errors by implementing appropriate controls to protect confidential and banking information
Log, track, and report security incidents throughout their lifecycle
Solve ongoing problems and collaborate with cross-functional teams to resolve security issues and continuously improve security practices
3+ years of information security experience
Bachelor's degree or above in Information Security or a related field
Understanding of information security standards and regulations, such as 27001:2022, ISO 27701:2019, PCI DSS
Experience assessing risks, developing and implementing access management controls
Strong knowledge of networking and security systems
Strong written and verbal communication skills (Armenian, English and Russian)
Strong analytical, problem-solving and communications skills
Ability to work independently and as part of a team
Nice to Have
Information Security certifications,
Experience implementing or maintaining 27001:2022, ISO 27701:2019 or PCI DSS
Knowledge of one or more programming languages