Information Security Officer – Governance & CISO Office
Alpiq
Bedrijfsoverzicht
Wat ze doen
Alpiq is een toonaangevende aanbieder van energie- en diensten in Europa, ontstaan uit de fusie van Atel Holding AG en EOS S.A. in 2009 (bron: companieshistory.com). Het bedrijf richt zich op verschillende technologieën, waaronder waterkracht, kernenergie, gasgestookte en gecombineerde warmte-krachtinstallaties, evenals hernieuwbare energiebronnen zoals wind- en zonne-energie. Alpiq produceert jaarlijks ongeveer 17.450 GWh elektriciteit, waarbij de opwekking uit kernenergie 37%, uit waterkracht 31% en uit conventionele thermische energie 29% bedraagt (bron: wikipedia.org). De doelmarkten omvatten heel Europa, met klanten variërend van industriële bedrijven tot openbare instellingen en huishoudens, vooral in landen zoals Frankrijk, waar Alpiq sinds 2021 actief is (bron: alpiq.com). Alpiq onderscheidt zich door zijn flexibele vermogensbasis en onafhankelijke handelscompetentie, die het bedrijf in staat stelt om zich in de concurrentie te handhaven (bron: energy-infrastructure-partners.com).
Projecten & Succesverhalen
Tot de opmerkelijke projecten van Alpiq behoort de kerncentrale Gösgen in Zwitserland, waarin het bedrijf 40% belang heeft en die een capaciteit van 1.060 MW heeft (bron: wikipedia.org). Andere belangrijke projecten zijn de kerncentrale Leibstadt met een belang van 27,4% en de pompspeichercentrale Nant de Drance, die sinds 2022 operationeel is en bijdraagt aan de systeemflexibiliteit (bron: energy-infrastructure-partners.com). Alpiq exploiteert ook verschillende gascentrales in Italië, Spanje en Hongarije, waarbij het bedrijf in deze landen tot 100% van de aandelen bezit (bron: wikipedia.org). Huidige projecten omvatten het Gondosolar-initiatief in de Alpen, dat naar verwachting jaarlijks 18 miljoen kWh zal opwekken, evenals de ontwikkeling van een nieuw windpark in Zweden (bron: alpiq.com).
Recente Ontwikkelingen
In de afgelopen twee jaar heeft Alpiq het HydroLEAP-onderzoeksproject aangekondigd, dat gericht is op het verbeteren van de flexibiliteit en duurzaamheid van de waterkrachtinfrastructuur (bron: alpiq.com). Het bedrijf heeft ook zijn activiteiten op het gebied van huishoudelijke elektriciteits- en gaslevering in Frankrijk uitgebreid, wat sinds 2021 continu wordt voortgezet (bron: alpiq.com). Hoewel er na 2022 geen grotere overnames of fusies zijn gedocumenteerd, heeft de eerdere delisting door de investering van Energy Infrastructure Partners de private structuur van Alpiq versterkt (bron: energy-infrastructure-partners.com).
Werken bij Alpiq
Alpiq biedt een verscheidenheid aan functies in de gebieden energieopwekking, handel, projectmanagement en advies, met het hoofdkantoor in Lausanne en talrijke Europese dochterondernemingen (bron: alpiq.com). De bedrijfscultuur benadrukt waarden zoals empathie, eerlijkheid, integriteit en creativiteit om een positieve werkomgeving te bevorderen (bron: alpiq.com). Hoewel specifieke voordelen niet gedetailleerd zijn gedocumenteerd, volgt het bedrijf een duurzaam en financieel stabiel model dat gericht is op langdurige zekerheid voor zijn medewerkers (bron: alpiq.com).
Laatst bijgewerkt op mrt. 27, 2026 | Meld een probleem
Job Description
The Information Security Officer - Governance & CISO Office plays an important role in Alpiq's cybersecurity strategy by enabling governance, ensuring regulatory readiness, and driving ISMS maturity. Reporting directly to the CISO, this role includes policy, standard and procedures development, conducting NIS2 gap analysis, and acting as the information security SPOC for selected projects and new applications. The role ensures that security policies, standards, and frameworks are effectively implemented across all business units, enabling Alpiq to balance compliance, operational resilience, and innovation.
Your main responsibilities
- Conduct NIS2 and other compliance assessments with a focus specifically on CZ legal and regulatory requirements
- Develop, operationalise, and maintain Alpiq's information security governance framework, aligned with ISO 27001, NIS2, GDPR, and NIST CSF
- Create and maintain security artifacts including policies, standards and procedures, ensuring certification readiness and continuous improvement
- Act as the InfoSec SPOC for selected business and IT projects, embedding security into project lifecycles and delivery processes
- Assess new applications and technology initiatives for security posture, compliance, and governance alignment
- Define, update, and enforce security policies, directives, and standards; ensure traceability and consistent implementation across the organisation
- Coordinate cross-functional security alignment with IT, Risk, Compliance, and Business stakeholders
- Support regulatory audits, certification processes, and cross-border compliance requirements
- Monitor remediation activities, ensuring ownership, accountability, and timely closure
Your Profile
- Bachelor's or Master's degree in Information Security, Informatics, Computer Science, or related technical field, or equivalent industry experience
- IT background with practical knowledge of infrastructure, networks, or application security
- 3+ years of experience in cybersecurity governance, compliance, or enterprise risk management
- Hands-on experience in security assessments of applications/projects and acting as InfoSec/Security SPOC in delivery teams
- In-depth knowledge of ISO 27001, NIS2, GDPR, and NIST CSF frameworks
- Experience with vendor/supply chain security is an advantage
- Familiarity with IT/OT security, audits, and certification readiness is a plus
- Exposure to physical security requirements in highly regulated environments desirable
- Certifications such as CISSP, CISM, CRISC, CISA, ISO 27001 Lead Implementer/Auditor, or CGEIT preferred
- Executive presence with ability to work closely with the CISO and business leaders
- Strong leadership and coordination skills across functions and hierarchies
- Excellent written communication in both Czech and English is a must
- Strategic mindset to translate business and risk issues into tangible implementation guidance for technical IT teams
- Strong analytical and problem-solving skills with sound risk judgement
- Self-motivation, discretion, and resilience in a dynamic, high-stakes environment
- Ability to embrace unfamiliar challenges, demonstrating persistence and the willingness to learn and contribute.
Your benefits
- Competitive salary package
- Market-oriented salary
- Training and development
- Diverse opportunities for career growth
- Flexible work models
- Various flexible work models
Contact
Kristina Kubricka
[email protected]
Inclusion is at the heart of Alpiq
At Alpiq, we are committed to creating an inclusive work environment, where everyone can bring their 'whole selves' to work and feel valued, respected, and heard. This principle is central to our company's purpose, values, and leadership approach. We strongly believe that organizations thrive through the inclusion of diversity. Everyone's energy matters regardless of characteristics, such as age, gender, nationality, language, sexual orientation and identity, religion, social or ethnic background or any other personal traits.
Data protection
At Alpiq, data privacy is an important topic. Please therefore take note of the corresponding Privacy Notice that appears in the online application form and explains in detail the purpose for which we process your personal data. It is of great concern to us to inform you as transparently as possible and process your data only in a fair manner.
Nu solliciteren
Vacature verlopen?Laat Alpiq weten dat je deze baan op Rejobs hebt gevonden. Zo helpen we meer mensen aan een baan in hernieuwbare energie.
Nu solliciteren
Vacature verlopen?Laat Alpiq weten dat je deze baan op Rejobs hebt gevonden. Zo helpen we meer mensen aan een baan in hernieuwbare energie.
Bekijk hoe je verbonden bent
Bekijk je connectiesBekijk je contacten bij Alpiq op LinkedIn om je netwerk te gebruiken bij het solliciteren naar deze functie.
Ontvang vacaturemeldingen
Ontvang meldingen voor Cyberbeveiliging-vacatures in Praag, Tsjechië
Aanmelden voor Talentpool
Laat topwerkgevers in schone energie jou vinden
Over de rol
16 juli 2026
20 juli 2026
Voltijd
Hybride
Bedrijf
- Praag, Tsjechië
3+ years in cybersecurity governance or compliance
UTC+01:00