Job Purpose
The Trust Services Compliance Officer is responsible for ensuring the company’s continuous compliance with applicable standards (e.g., WebTrust, ETSI), as well as operational security requirements, for a portfolio of trust services characterized by a high level of security and availability.
The position plays a key role in maintaining and developing a robust compliance and internal control framework required for the operation and expansion of the company’s trust services in a regulated and continuously evolving environment. This is a non-managerial position reporting directly to the Department Manager, with a key role in cross-functional coordination of compliance activities, without direct line management responsibilities.
Requirements:
- University degree, preferably in Engineering, Economics, or Cybernetics
- IT or Information Security certifications are considered an advantage (ISO 27001, CompTIA Security+, CISA, etc.)
- Basic knowledge of project management
- Basic to intermediate knowledge of Public Key Infrastructure (PKI), Information Security Management, and Risk Management
- Familiarity with the legal framework and relevant PKI standards (Romania, EU, USA)
- Knowledge of IT systems auditing and standards such as ISO 27000, WebTrust, and ETSI/eIDAS
- Advanced proficiency in Microsoft Office (Word, Excel, Outlook, PowerPoint, Visio) and Internet tools
- High level of conscientiousness, dynamism, perseverance, organizational skills, ability to sustain intensive intellectual effort, and adaptability to new situations
- Strong attention to detail and analytical skills
- Good planning and organizational abilities, teamwork skills, and commitment to following established procedures
- English proficiency – advanced level.
Responsibilities:
- Ensure the compliance of trust services with the eIDAS Regulation, ETSI standards, and the requirements of supervisory authorities
- Monitor legislative and standards-related changes and coordinate their implementation across the organization
- Act as the internal point of reference for interpreting compliance requirements related to Trust Services
- Coordinate internal and external audit activities related to Trust Services
- Collaborate with Conformity Assessment Bodies (CABs) and relevant supervisory authorities
- Oversee the preparation and maintenance of compliance documentation (Certification Practice Statement (CPS), Certificate Policy (CP), policies, and procedures)
- Manage non-conformities and monitor the implementation of corrective actions together with the relevant teams
- Identify and assess compliance risks associated with Trust Services
- Participate in risk assessment and impact analysis processes related to service or technology changes
- Collaborate with specialists from the Solution Implementation, Security, IT, and Legal departments
- Ensure that compliance requirements are properly implemented within operational and technical processes
- Review and validate policies and procedures documentation related to Trust Services
- Maintain traceability of compliance requirements and the associated controls.

