Vedere l'offerta completa

SECURITY COMPLIANCE SPECIALIST (CLOUD & SAAS)

Descrizione dell'offerta di lavoro

Security Compliance Specialist (Cloud & SaaS) Company: Docebo Docebo's learning platform is more than LMS. Drive engagement, productivity, and connections with your customers, partners, and employees. Hey you! Want to work for one of the fastest growing SaaS companies in the world? We’re building the next generation of learning software that companies like AWS, Netflix, Opentable, and L’Oreal rely on to deliver training. We believe learning is for everyone, and that we all have something we can learn from each other. We rely on one another to continuously innovate our products and processes to create an exceptional experience for our employees, customers, and partners. Are you ready to be a part of the learning revolution? About This Opportunity: The role is focused on demonstrating the business value of solid compliance and security programs to prospects and customers, working closely with the Sales & Legal teams so that the Company's Cybersecurity posture will improve customer experience and unlock business value. It is essential to ensure that Docebo adheres to regulatory frameworks and maintains robust security measures. Collaborating with internal teams and external stakeholders, they effectively address compliance and security requirements, safeguarding the company's operations and reputation. This role involves continuous improvement efforts and updating on emerging compliance regulations, security threats, and industry best practices. The role also provides training and guidance to internal teams on compliance requirements and security protocols. Reports to: Business Enablement Manager - Security Location: Biassono, Lombardy, Italy (hybrid) Responsibilities: Customer Engagement and Response: respond to customers’ security and privacy-related inquiries, compile comprehensive responses (mainly RFI, RFP, and RFQ), and address compliance questionnaires, ensuring timely and accurate information dissemination and actively supporting the sales process. Customer Audit Support and Documentation: Coordinate Docebo’s activities related to customer compliance audits, assist with agreement and term reviews, and prepare management reports on compliance and security initiatives in collaboration with the GRC team. Support Internal Compliance Management: maintain internal compliance documentation, and coordinate the conduction of risk assessments and internal company audits to ensure organizational readiness in collecting the needed evidence. Vendor Risk Assessment and Monitoring: Support the evaluation of company third-party vendor-associated risks, monitor security controls, and maintain risk management reporting dashboards to mitigate risk and effectively qualify company suppliers; in collaboration with the GRC team. Security Awareness: develop and coordinate the implementation of security & privacy awareness programs to promote a culture of security consciousness; in collaboration with the GRC team. Cross-functional collaboration: collaborate across the company departments to align compliance, security, and privacy efforts with business objectives; consult the company's departments to assess changes and compliance obligations and support updating company compliance programs and controls. Documentation and Reporting: Maintain comprehensive documentation of compliance activities, including policies, procedures, and audit findings, and prepare reports for management and regulatory authorities; in collaboration with the GRC team. Trust Page management: support the definition of content, and keep it updated. Gather information regarding clients' and prospects' requests related to the content of the Trust Page to offer expertise and feedback to other departments to ensure that the content is relevant and up to date with the latest standards. Requirements: Fluent knowledge of English, working experience with contracts and documentation in English, and effective communication and presentation skills. 4+ years of relevant work experience. Working experience supporting audits and compliance & security activities for SaaS companies. Working knowledge of information security principles, trends, and best practices, specifically cloud environments and services (eg: AWS, Azure, GCloud). Knowledge of GDPR requirements and other data privacy laws (eg: CCPA, PIPL). Knowledge of ISO/IEC 27001, ISO/IEC 27017, ISO/IEC 27018, ISO/IEC 27701, ISO 9001, and AICPA/ISAE 3000 SOC 2 & PCI. Knowledge of CFR21 Part 11. Nice to have: Bachelor's degree in computer science, information security, auditing, law, or similar. Certified Information Systems Auditor (CISA). Certified Information Privacy Professional (CIPP, IAPP or CIPT). CompTIA Security+. Proficiency in tools such as Drata, RFP.io, and similar. Working experience implementing, evaluating, and assessing cybersecurity and compliance standards for the National Institute of Standards and Technology (NIST) or FedRAMP to further the assessment and secure operation of the FedRAMP cloud-based systems. Benefits & Perks: Generous Vacation Policy, plus 2 extra floating holidays to use for religious or cultural events that matter to you. Employee Share Purchase Plan. Career progression/internal mobility opportunities. Four employee resource groups to get involved with (the Docebo Women's Alliance, PRIDE, BIDOC, and Green Ambassadors). WeWork partnership and “Work from Anywhere” program. Hybrid Office Model: We believe when people are together, they develop deeper relationships and accelerate innovation. Because of this, all Docebo employees worldwide are “hybrid.” We encourage in-person collaboration while supporting work-from-home when employees need dedicated focus time, allowing Docebians to do their best every day. About Docebo: Here at Docebo, we power learning experiences for over 3000 customers around the world with our easy-to-use, AI-powered Suite designed to close the enterprise learning loop. We have successfully achieved 2 IPOs (TSX: DCBO & NASDAQ: DCBO), been recognized as a Top SaaS e-learning Solution, and are growing exponentially in the process. Docebo is a global company with offices in North America, EMEA, APAC, and more. Our people believe in six core values, simply defined and manifested in everything we do - Innovation, Simplicity, Accountability, Togetherness, Curiosity, and Impact. If this sounds like you, now is your time to join one of the fastest-growing learning technology companies on the market. Apply today! Docebo is an Equal Employment Opportunity employer. We are committed to diversity and inclusion in our workforce. All qualified applicants and employees will receive consideration for employment regardless of their race, color, religion, sex (including pregnancy, gender identity, and sexual orientation), national origin, citizenship status, age, disability, genetic information, or any other category protected under applicable law. Any individuals requiring a reasonable accommodation to assist with their job search or application for employment should send an e-mail to recruiting_accommodations (at) docebo.com. The e-mail should include a description of the requested accommodation and the position you’re applying for or interested in. #J-18808-Ljbffr
Vedere l'offerta completa

Dettagli dell'offerta

Azienda
  • Docebo
Località
  • Tutta l'Italia
Indirizzo
  • Imprecisato - Imprecisato
Data di pubblicazione
  • 21/12/2024
Data di scadenza
  • 21/03/2025
CYBER SECURITY SPECIALIST
365 gradi srl

Per l’head quarter di una realtà metalmeccanica di grandi dimensioni, multinazionale italiana leader di settore, stiamo ricercando un/a cyber security specialist... buona conoscenza della lingua inglese scritta e parlata; requisiti preferenziali: conoscenza in ambito ot/opsec (operational technology......

software architect (cloud)
Programs & Projects Consulting S.r.L.

Skill richieste:• disegno architetture con particolare attenzione a serverless e microservizi• cloud aws (compute, network, database, security, developer tools, ci/cd)• cloud azure (compute, network, database, security, developer tools, application configuration, cognitive services, ci/cd)• database......

Architetto google cloud platform (Roma o Milano)
Gruppo sincrono

Ruolo ricoperto: -architetto google cloud platform competenze richieste: linguaggi: -spark,python,aws,scala -google cloud platform: -gcp bigquery,gcp dataproc,gcp dataflow -hadoop hive/ impala competenze linguistiche: -conoscenza lingua inglese: livello b1 seniority: +3 anni sede di lavoro: roma o milano......

Tender Specialist
Ricercamy

Tender specialist la persona selezionata risponderà direttamente alla tender manager... com, innovativa società di ricerca e selezione del personale all’avanguardia per metodologia e infrastruttura tecnologica, è alla ricerca di: tender specialist il nostro cliente prt s... ) ed inserimento in piattaforma......

Analista funzionale security
Sincrono formazione srl

Ruolo ricoperto: analista funzionale security competenze richieste: verifica tecnica di conformità ai requisiti di sicurezza aziendali attivita’: attività di security governance normative competenze linguistiche: inglese: livello b1 titoli accademici richiesti: laurea in ambito scientifico certificazioni......

Architetto Cloud Openshift (Roma o Milano)
Sincrono Formazione Srl

Ruolo ricoperto:-architetto cloud openshiftcompetenze richieste:-esperienza di gestione end-to-end di progetti-ansible-terraform-google cloud-aws-ms azure devopscompetenze linguistiche:-inglese: livello b2seniority: +5 annisede di lavoro: roma o milano (on site)impegno: full time dal lunedì al venerdìsi......

Sistemista VMWARE/Cloud
Sincrono Formazione Srl

Gruppo sincrono, holding company ict di consulenza e formazione che opera sul mercato dal 1993, sta selezionando per un'importante opportunità professionale per un nostro cliente, un sistemista vmware/cloud, l'attività sarà svolta in smart working totale, *il candidato verrà inserito in progetti all’avanguardia......

Sviluppatore .NET/CLOUD
Sincrono Formazione Srl

Gruppo sincrono, holding company ict di consulenza e formazione che opera sul mercato dal 1993, sta selezionando per un'importante opportunità professionale per un nostro cliente, un sviluppatore... avvisiamo i gentili candidati che la seguente ricerca ha carattere di urgenzanon verranno prese in considerazione......

Sistemisti cloud
Programs & projects consulting s.r.l.

La risorsa sarà inserita nell'area di progettazione sistemistica e svolgerà attività di migrazioni macchine da un cloud basato su vmware ad altro cloud su medesima tecnologia... chi cerchiamo per l'ampliamento del nostro organico selezioniamo figure di sistemisti ambito cloud su bologna e/o da remoto......

Analista tecnico security
Sincrono Formazione Srl

Ruolo ricoperto:-analista tecnico securitycompetenze richieste:-capacità di comprensione di sistemi complessi, in particolare software, con l'obiettivo di analizzare le problematiche di security connesse-capacità di relazionarsi con le linee di ingegneria/sviluppo dei sistemi, con i clienti e con i fornitoricompetenze......