Sympower logo

🔍 Found ClimateTechList useful?

ClimateTechList is free for job seekers, no registration required, and I, Steven, run it by myself at cost part-time.

The site gets about 30,000-40,000 users a month. Help support this site and make it easier for other future climate job seekers!

You can buy me a coffee to support the site below. Thanks!

Job Description

The position

The role of the ISMS lead is to operate the information security management system of Sympower as per ISO 27001. It’s an inherently cross-departmental role, as the ISMS has policies and procedures that affect the entire company. The system ensures the security of Sympower’s data and systems, which includes data protection, integrity and continued availability and business continuity. The person will also be responsible for external communication with customers and partners about security related issues, answering questionnaires and handling any incoming requests or incidents via the security email inbox. The person will also oversee audits, contact with certification bodies and security budgets.

What is in it for you

We are committed to creating an inclusive and values based culture where everyone feels that they belong, and where everyone has the opportunity to do meaningful work.

We offer a market competitive compensation package, including but not limited to:

  • 30 Days Paid Holiday Leave
  • 1 Day Paid Wellness Leave
  • 1 Day Paid Birthday Leave
  • Paid Maternity and Partner Leave
  • Pawternity Leave
  • Mental Health and Wellbeing Support
  • Remote Office Budget
  • Internet Allowance
  • Development Plan & Budget
  • Stock Appreciation Rights
  • 2 Days Paid Volunteer Leave

Learn about all of our benefits on our careers page.

What you will do

This is your opportunity to shape Sympower’s cybersecurity position and influence company-wide processes.

ISMS Management:

  • Oversee the ISMS based on our chosen standard ISO 27001, including policy and procedure updates, document reviews, and audits.
  • Organize and lead internal audits, management reviews, and external ISO 27001 audits.
  • Conduct regular ISMS Governance Council updates to inform leadership of the cybersecurity landscape and ISMS performance.
  • Ensure that the ISMS complies with NIS2.

Risk and Compliance:

  • Perform risk analyses and coordinate risk mitigation strategies.
  • Handle non-conformities, implement corrective actions, and maintain compliance documentation.
  • Manage vendor security, ensuring third-party compliance with Sympower’s security standards.
  • Take part in incident retrospectives.

Training and Awareness:

  • Plan and conduct security awareness training for employees.
  • Foster a company-wide understanding of security policies and their impact on day-to-day operations.

Collaboration and Leadership:

  • Facilitate cross-departmental collaboration to implement security measures effectively.
  • Be available to support and take part in customer facing interactions that require explanation of our ISMS.
  • Lead the security team without direct managerial authority, driving results through influence and coordination.
ClimateTechList.com logo

Sympower number of job openings over time by month

ClimateTechList is the web's largest aggregator of climate, clean tech, renewable energy & green jobs. Contact us if you'd like to use partner or use our current or historical jobs data in any way.

Apply to Job

👉 Please mention that you found the job on ClimateTechList, this helps us get more climate tech companies listed here, thanks!

Get a referral to Sympower

If possible, try to get a warm intro/referral to Sympower before applying! Do a LinkedIn search to see who you may know at the company. See this LinkedIn post from Steven for more details on this tactic.

All job openings from Sympower

Join ClimateTechList Talent Collective

Want to be matched with companies directly? Apply to the talent collective.

Here's how it works:

  1. You submit an application

  2. We'll share your profile with climate tech companies potentially interested in chatting with you

  3. We'll reach out if there's a company interested in talking to you.

Join ClimateTechList Talent Collective

Want to be matched with companies directly? Apply to the talent collective.

Here's how it works:

  1. You submit an application

  2. We'll share your profile with climate tech companies potentially interested in chatting with you

  3. We'll reach out if there's a company interested in talking to you.