Methodology IT Security Specialist
Freedom Broker Armenia is a leading financial services company providing brokerage and investment solutions in the Armenian market. We are committed to maintaining high standards of cybersecurity, regulatory compliance, and operational resilience while delivering innovative financial services to our clients. As part of our growing information security team, we are looking for a Methodology IT Security Specialist to support and enhance our governance, methodology, and process management practices.
Develop, update, and maintain the company’s information security methodology framework, including policies, standards, procedures, and guidelines
Create and maintain a centralized catalog of information security processes and services
Adapt international standards and best practices, including ISO/IEC 27001, NIST CSF, and CIS Controls, to the company’s operational environment
Develop and maintain information security metrics, KPIs, and reporting mechanisms
Assess the maturity of information security processes using frameworks such as O-ISM3 and CMMI, and prepare improvement roadmaps
Participate in the design and continuous improvement of Security Awareness programs for employees
Collaborate with business process owners to integrate information security requirements into business operations
Prepare methodological materials and supporting documentation for internal and external audits
Monitor regulatory and compliance changes, including KVKK and SPK requirements, and ensure timely updates to internal documentation
3+ years of experience in information security methodology, ISMS, governance, risk, or compliance
Strong knowledge of ISO/IEC 27001, ISO/IEC 27002, and NIST CSF frameworks
Hands-on experience developing information security policies, standards, procedures, and related documentation
Good understanding of process-oriented management approaches and management systems
Excellent structured writing and analytical skills, with the ability to translate technical requirements into clear business language
English proficiency at Intermediate level or higher
Strong attention to detail, organizational skills, and systems-thinking mindset
Certifications such as ISO/IEC 27001 Lead Implementer / Lead Auditor or CISM
Knowledge of COBIT, ITIL, and O-ISM3 frameworks
Experience working with process maturity assessment models
Previous experience in the financial services or fintech sector
Knowledge of Armenian and Russian