Cyber Security Risk Manager

hace 1 semana


Barcelona, Barcelona, España Launch Global A tiempo completo

Cyber Security Risk Manager - Contract 6 Months (with potential to extend to 2 years) - Barcelona

Why this role might be of interest


The role has come about because the company, a highly successful and rapidly expanding international pharmaceutical business, is putting in place a brand new internal team to manage cyber security threats.


Because of this whoever takes on this role will work with a lot of autonomy, and have a lot of influence on how cybersecurity operations are developed.

It's a high profile role where you will be able to make a real difference in how this company manages and develops it's internet security strategy.


Whilst you'll be part of the initial start up team, there are plans to grow it further, so there is the potential for career progression.


Working practice

95% of your work will be done remotely, with occasional meetings in Barcelona, so if you live in another part of Spain and can travel to Barcelona on an occasional basis, then this role may also suit you.

We are actually looking to fill two roles:

Governance and Risk Management Expert:
Strong background in governance and risk management.
Experienced in writing and designing policies and procedures.
Has implemented GRC systems.

Security Risk Assessment Specialist:
Proficient in conducting Security Business Impact Assessments, Threat and Vulnerability Assessments, and security controls assessments.

Capable of assisting with policy and procedure design, with a focus on conducting assessments post-approval of Security BIA and Risk Management SOPs.

Interested in finding out more?

Full spec below:
The Role

We're looking for a contractor to join our Cyber Security Team as an Information Security Risk Manager.

You will be responsible for assessing, reporting and managing information security risks identified in the copmpany's systems and data, business processes and third party service providers.

You will work closely with IT colleagues, business stakeholders based at multiple locations in Europe, USA and Japan. The minimum duration of the contract is six months, with potential for extension.

We Need a "Pragmatic" and "Driven By Results" Information Security Risk Manager who can:

  • Support the design and improvement of the information security framework (ISF): policies, controls, procedures using the NIST Cyber Security Framework; including third party risk management.
  • Assess new and existing systems, data flows, business processes, and third party providers engagements and services to implement and verify compliance to the ISF reporting identified risks and issues to systems, processes and third party providers owners.
  • Perform information security risk assessments such as but not limited to: security business impact analysis (BIA) and business dependency analysis; security controls plans; controls maturity assessments; third party provider risk profiling, risk assessments and audits.
  • Maintains the information security risks and issues registers, deliver high quality reports and run information security committees meetings with business and IT management to manage risks.
  • Support the design and improvement of the third party informatin risk management policies, controls and procedures. Assist or lead assessment of information security risks arising from engagement with third party providers and drive remediation efforts.
  • Drive the design and implementation of a GRC platform including functional requirements, reviewing process designs, rolling out the new processes to the business and IT teams. Also, support in the administration and maintenance of the GRC tool.
  • Design, improve and periodically report security key risk indicators and metrics to IT and business management to support continuous improvements and increase security maturity in our business processes.
  • Designs, and delivers the security education training awareness program (SETA) across all business functions at the company. Manage external resources supporting the security awareness activities.

What we are looking for in terms of experience

  • Desirable: Experience in implementing controls and managing compliance risks in regards to GXP regulated systems, data protection regulations such as EU and UK GDPR, CCPA, and cyber security regulations such as the EU NIS2, and the USA SEC Disclosure Requirements.

The Education, Certifications and Skill You Should Have:

  • Significant of professional experience in information technology, ideally at least 3 years as an information security risk manager, preferably in a pharmaceutical, biotechnology or in other manufacturing organizations.
  • Bachelor's or Master's degree in information security, or in Information Technology.
  • Relevant information security professional certifications e.g. CISSP, CISM, CRISC, CISA, GSEC-GIAC, ISO 27001 auditor / practitioner.
  • Desirable: Training and or certifications in GRC platforms such as ServiceNow GRC, Archer, Metricstream; and the NIST


  • Barcelona, Barcelona, España Launch Global A tiempo completo

    Cyber Security Risk Manager - Contract 6 Months (with potential to extend to 2 years) - BarcelonaWhy this role might be of interestThe role has come about because the company, a highly successful and rapidly expanding international pharmaceutical business, is putting in place a brand new internal team to manage cyber security threats.Because of this whoever...


  • Barcelona, Barcelona, España AstraZeneca A tiempo completo

    Are you ready to be part of the future of healthcare? Can you think big, be bold, and harness the power of digital and AI to tackle longstanding life sciences challenges? Then Evinova, a new health tech business part of the AstraZeneca Group might be for youTransform billions of patients' lives through technology, data, and innovative ways of working. You're...

  • Cyber Risk Analyst

    hace 1 semana


    Barcelona, Barcelona, España Amcor A tiempo completo

    Cyber Risk AnalystLocation:Bristol, GB Barcelona, ES Madrid, ES Seville, ES Horsens, DK Ledbury, GB Liverpool, GB Birmingham, GB Lisbon, PT Lodz, PL Valencia, ESFunction:Information TechnologyParttime or Fulltime:Full-TimeJob Type:EmployeeWorkplace type:RemoteJoin Amcor and you can be part of the team that makes the packaging of the future better for people...

  • Cyber Manager

    hace 1 semana


    Barcelona, Barcelona, España Tokio Marine HCC A tiempo completo

    Tokio Marine HCC (TMHCC) is a leading specialty insurance group with offices in the United States, the United Kingdom, Europe, Ireland, and other exciting locations. With the strength and stability that comes from being a member of the Tokio Marine group, and more than forty years of growth, profitability, and stability, we offer important insurance products...


  • Barcelona, Barcelona, España The Leadership Collective A tiempo completo

    Job Title: Information Security Risk ManagerCirca €6K - €8K per monthLocation: Barcelona / Hybrid | Contract: 6 Months (with potential to extend to 2 years)About The Company: The company are a highly successful and rapidly expanding international pharmaceutical company establishing a new internal team to manage cyber security threats. Join them in a...


  • Barcelona, Barcelona, España AstraZeneca A tiempo completo

    Are you ready to be part of the future of healthcare? Can you think big, be bold, and harness the power of digital and AI to tackle longstanding life sciences challenges? Then Evinova, a new health tech business part of the AstraZeneca Group might be for youTransform billions of patients' lives through technology, data, and innovative ways of working. You're...


  • Barcelona, Barcelona, España AstraZeneca A tiempo completo

    Are you ready to be part of the future of healthcare? Are you able to think big, be bold, and harness the power of digital and AI to tackle longstanding life sciences challenges? Then Evinova, a new health tech business part of the AstraZeneca Group might be for youTransform billions of patients' lives through technology, data, and pioneering ways of...


  • Barcelona, Barcelona, España AstraZeneca A tiempo completo

    Are you ready to be part of the future of healthcare? Are you able to think big, be bold, and harness the power of digital and AI to tackle longstanding life sciences challenges? Then Evinova, a new health tech business part of the AstraZeneca Group might be for youTransform billions of patients' lives through technology, data, and pioneering ways of...


  • Barcelona, Barcelona, España Galderma Pharma S.A A tiempo completo

    Cyber Security Governance Manager page is loaded Cyber Security Governance Manager Apply locations Barcelona time type Full time posted on Posted 2 Days Ago job requisition id JR008938 With a unique legacy in dermatology as well as decades of cutting-edge innovation, Galderma is the pure-play dermatology category leader, present in approximately 90...


  • Barcelona, Barcelona, España Page Group A tiempo completo

    Perfil buscado (Hombre/Mujer) Apply across the organisation best practices such as NIST and ISO27001. Support in maintaining security certifications. Manage information security risks in a constant changing environment. Work with and support our Global Security Operations Centre. Review and assess IT and security controls. Perform third-party risk...


  • Barcelona, Barcelona, España Page Group A tiempo completo

    Perfil buscado (Hombre/Mujer) Apply across the organisation best practices such as NIST and ISO27001. Support in maintaining security certifications. Manage information security risks in a constant changing environment. Work with and support our Global Security Operations Centre. Review and assess IT and security controls. Perform third-party risk...


  • Barcelona, Barcelona, España AstraZeneca A tiempo completo

    Are you ready to be part of the future of healthcare? Are you able to think big, be bold, and harness the power of digital and AI to tackle longstanding life sciences challenges? Then Evinova, a new health tech business part of the AstraZeneca Group might be for youTransform billions of patients' lives through technology, data, and pioneering ways of...


  • Barcelona, Barcelona, España Page Personnel A tiempo completo

    Cyber Security Management Analyst|Shared Service Center in BarcelonaShared Service Center in Barcelona.Apply across the organisation best practices such as NIST and ISO27001.Support in maintaining security certifications.Manage information security risks in a constant changing environment.Work with and support our Global Security Operations Centre.Review and...

  • Cyber Security Analyst

    hace 1 semana


    Barcelona, Barcelona, España Schwarz Dienstleistung Kg A tiempo completo

    At Schwarz Global Services – Barcelona, we offer high value IT services for the entire Schwarz Group, which includes Lidl, Kaufland, Schwarz Produktion, PreZero, STACKIT and XMCyber. We are in the worldwide top 5 of Retail companies with stores spread in 33 countries, more than 6 billion costumers, and over employees. We strive to develop and implement...

  • Cyber Security Engineer

    hace 1 semana


    Barcelona, Barcelona, España TD SYNNEX A tiempo completo

    Job Purpose:We are looking for aCyber Security Engineer able to participate in projects to deploy and enhance Cyber Security technologies.As part of the Cyber Security team in TD SYNNEX you will be responsible for project delivery, recommending and implementing enhancement for the current security measures, assist and investigate escalations as well as...


  • Barcelona, Barcelona, España Salesforce, Inc. A tiempo completo

    Overview of the Role: Our Incident and Vulnerability Managers are a critical part of Salesforce's Cyber Security Response Center. As commanders on the most impactful cyber security incidents and vulnerabilities, we lead Salesforce's response while acting as the security executive liaison with Security and Business Leadership across the lifecycle of events....


  • Barcelona, Barcelona, España Siemens Healthineers A tiempo completo

    This is a role well suited to an ambitious professional, looking to advance their career through helping protect a key player of the MedTech market. As a Cyber Security Professional for Security Incident & Event Monitoring (SIEM), you will have responsibility for monitoring the IT landscape for potential security related threats. You will be part of an...

  • Cyber Security Analyst

    hace 1 semana


    Barcelona, Barcelona, España Schwarz Dienstleistung KG A tiempo completo

    At Schwarz Global Services – Barcelona, we offer high value IT services for the entire Schwarz Group, which includes Lidl, Kaufland, Schwarz Produktion, PreZero, STACKIT and XMCyber. We are in the worldwide top 5 of Retail companies with stores spread in 33 countries, more than 6 billion costumers, and over employees. We strive to develop and implement...


  • Barcelona, Barcelona, España Galderma A tiempo completo

    With a unique legacy in dermatology as well as decades of cutting-edge innovation, Galderma is the pure-play dermatology category leader, present in approximately 90 countries. We deliver an innovative, science-based portfolio of premium flagship brands and services that spans the full spectrum of the fast-growing dermatology market through Injectable...


  • Barcelona, Barcelona, España Bitpanda Gmbh A tiempo completo

    Your missionAs an Information Security Specialist, you will have a key role in ensuring security posture at Bitpanda in the InfoSec team. You will be responsible for the planning and implementation of compliance standards, improving IT governance level and participate in IT Risk management. You will also conduct regular cyber risk assessments to ensure an...