Information Security Governance

Information Security Governance Delivery Manager

Sofia, Bulgaria Full-time On-site Posted 25 Aug 2026

CyberXperts is a fast-growing managed cybersecurity service provider, focused on helping organizations strengthen their cybersecurity, resilience, and regulatory compliance. We are rapidly expanding our team, client portfolio, and cybersecurity services, working with organizations across multiple industries to address today’s most critical security challenges.

As we continue to grow, we’re looking for a motivated and proactive Information Security Governance Delivery Manager to join our team in delivering cybersecurity governance, risk, and compliance engagements.

The role

You will lead the delivery of governance and compliance projects, helping clients translate regulatory and security requirements into practical policies, controls, processes, and measurable improvements.

Key responsibilities

  • Lead end-to-end delivery of Governance, Risk & Compliance (GRC) projects
  • Manage NIS2, DORA, ISO 27001 and other regulatory/compliance engagements
  • Conduct cybersecurity and compliance gap assessments and readiness assessments
  • Lead ISO certification readiness and preparation projects, including gap analysis, documentation, control implementation support, and audit readiness
  • Develop and review policies, procedures, standards, risk assessments and security controls
  • Translate regulatory requirements into actionable compliance roadmaps and implementation plans
  • Lead client workshops and collaborate with C-level executives, management teams and technical stakeholders
  • Coordinate internal cybersecurity consultants and subject-matter experts
  • Ensure projects are delivered on time, within scope and to a high professional standard
  • Present assessments, findings, recommendations and progress to senior management
  • Contribute to the continuous development of CyberXperts’ GRC and compliance service portfolio

What we’re looking for

  • Proven experience in cybersecurity governance, risk and compliance
  • Experience delivering compliance or cybersecurity projects for organizations
  • Strong understanding of NIS2, DORA and ISO 27000/27001 & other
  • Practical experience with ISO 27001 certification readiness/preparation is highly desirable
  • Experience with frameworks such as NIST, CIS Controls or other cybersecurity frameworks
  • Strong project and stakeholder management skills
  • Ability to translate complex regulatory and technical requirements into clear business actions
  • Excellent communication, presentation and documentation skills
  • Structured, analytical and delivery-oriented mindset
  • Certifications such as CISM, CISSP, CISA, CRISC, ISO 27001 Lead Implementer or Lead Auditor are a strong advantage

What we offer

  • The opportunity to work within a rapidly growing cybersecurity company
  • High-impact projects with organizations across different industries
  • Exposure to NIS2, DORA, ISO and other major cybersecurity and regulatory initiatives
  • Collaboration with experienced cybersecurity professionals across governance, technical security, SOC, pentesting and compliance
  • Continuous professional development and certification opportunities
  • A dynamic environment where you can help shape and grow our Governance & Compliance practice
  • The opportunity to work directly with senior client stakeholders and make a measurable impact on their cybersecurity maturity

Apply for this role

With the country code, so we can actually reach you — for example +359 88 812 3456.

By applying you agree to our Privacy Policy. We keep your details and CV only for as long as we need them to consider you.