Skip to content

Open nowPosted 72 days ago

Security Governance Analyst, Italy

ION Group91 open roles

Pay
€40,000 – €50,000 a year
Where
Milan
Work mode
Hybrid
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowSecurity Governance Analyst, ItalyION Group · Milan
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on ION Group's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

8.1% of postings close within 7 days. Measured by our own scanner across the market. ION Group postings stay open a median of 6 days.

Share of postings closed within
  1. 1.7%1 day
  2. 3.6%3 days
  3. 8.1%7 days
  4. 15.1%14 days
  5. 34.0%30 days
This job: posted 72 days ago

ION Group median: 6 days open

The posting

About us:

We are a community of visionary innovators, dedicated to providing pioneering software and consultancy services to financial institutions, trading firms, central banks, governments, and corporations around the world. We strive to simplify the way people work. We do that by providing workflow and process automation software, as well as providing real-time data and business intelligence to help people make better decisions. We are 13,000+ employees, we operate globally with 80+ global offices, and we serve over 4,800+ customers worldwide.

For the strengthening of the Chief Information Security Office (CISO) function within Cedacri companies, part of ION Group, we are looking for talented professionals to grow their career as Security Governance Analyst. This position is targeted at candidates with 2–5 years of relevant experience in Information Security Governance, Cybersecurity Risk Management, or ICT Compliance. Selected candidates will be placed in a dynamic and innovative environment and will collaborate with cross-functional teams to support cybersecurity governance initiatives across the organization.

Learn more at www.iongroup.com.

Your role

Your key duties and responsibilities

  • Support the implementation and continuous improvement of the Information Security Governance framework
  • Support the implementation, maintenance, and continuous improvement of the Information Security Governance framework across the organization.
  • Develop, maintain, and review cybersecurity policies, standards, procedures, and governance documentation.
  • Support cybersecurity risk management activities, including risk assessments, remediation tracking, exception management, and risk treatment planning.
  • Monitor the effectiveness and maturity of security controls and ensure governance activities remain aligned with organizational objectives and regulatory requirements.
  • Maintain governance evidence, action plans, ownership records, dependencies, and remediation initiatives to support audit readiness and effective reporting.
  • Prepare KPI/KRI dashboards for management on coverage, timeliness and effectiveness of controls, including asset/API inventories, SBOM/SCA coverage, patching performance, exception aging and action-plan closure.
  • Collaborate with Technology, Risk, Compliance, Legal, and Business stakeholders to ensure alignment with security governance requirements.
  • Support internal audits, external audits, regulatory assessments, and client due diligence activities.
  • Contribute to the implementation of regulatory and industry frameworks, including DORA, NIS2, ISO 27001, NIST CSF, and related standards.
  • Support governance transformation initiatives and continuous improvement programs aimed at strengthening cybersecurity oversight capabilities.

Other duties

We might ask you to perform other tasks and duties as your role expands.

Your skills, experience, and qualifications required

  • Master's degree in Cybersecurity, Computer Science, Computer Engineering, Information Technology, Law, Management Engineering, or a related field (with honors).
  • At least 2-5 years of experience in Information Security Governance, ICT Risk Management, Cybersecurity Compliance, Internal Audit, or related functions.
  • Good understanding of cybersecurity governance principles, governance requirements for vulnerability management, patch management, incident response, secure SDLC, third-party risk and operational resilience.
  • Knowledge of international standards and frameworks such as ISO 27001, NIST CSF, COBIT, CIS Controls, DORA, and NIS2.
  • Experience supporting audit activities, compliance assessments, regulatory initiatives, or governance reporting processes.
  • Ability to translate complex technical topics into clear governance, risk, and management reporting outputs.
  • Strong analytical, organizational, and stakeholder management skills.
  • Advanced knowledge of Microsoft Excel and PowerPoint.
  • Excellent knowledge of Italian and English.
  • Professional certifications such as ISO 27001, CISA, CRISC, Security+, or equivalent would be considered a plus.

What we offer:

  • Permanent employment contract
  • Italian National Collective Labour Agreement for the Metalworking Industry (CCNL Metalmeccanico)
  • Gross Annual Salary (RAL) ranging from €40,000 to €50,000, depending on experience, skills, and qualifications
  • Job grade to be determined upon completion of the selection process, with final assessment between B2 and B3 level
  • Opportunity to join a leading international technology group operating in the financial services industry
  • Exposure to enterprise-wide cybersecurity governance activities in a dynamic and international environment

Location:

Milan.

Important notes:

According to the Italian Law (L.68/99), candidates belonging to the protected categories list will be given priority.

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against ION Group's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on ION Group's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    ION Group's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.