Cyber Security Risk Manager

hace 6 meses


Barcelona, España Launch Global A tiempo completo

**Cyber Security Risk Manager - Contract 6 Months (with potential to extend to 2 years) - Barcelona**

**Why this role might be of interest**

The role has come about because the company, a highly successful and rapidly expanding international pharmaceutical business, is putting in place a brand new internal team to manage cyber security threats.

Because of this whoever takes on this role will work with a lot of autonomy, and have a lot of influence on how cybersecurity operations are developed. It's a high profile role where you will be able to make a real difference in how this company manages and develops it's internet security strategy.

Whilst you'll be part of the initial start up team, there are plans to grow it further, so there is the potential for career progression.

**Working practice**

**95% of your work will be done remotely, with occasional meetings in Barcelona, so if you live in another part of Spain and can travel to Barcelona on an occasional basis, then this role may also suit you.**

We are actually looking to fill two roles:
**Governance and Risk Management Expert**:Strong background in governance and risk management.Experienced in writing and designing policies and procedures.Has implemented GRC systems.

**Security Risk Assessment Specialist**:Proficient in conducting Security Business Impact Assessments, Threat and Vulnerability Assessments, and security controls assessments.Capable of assisting with policy and procedure design, with a focus on conducting assessments post-approval of Security BIA and Risk Management SOPs.

Interested in finding out more?

Full spec below:
The Role

We’re looking for a contractor to join our Cyber Security Team as an Information Security Risk Manager. You will be responsible for assessing, reporting and managing information security risks identified in the copmpany's systems and data, business processes and third party service providers.

You will work closely with IT colleagues, business stakeholders based at multiple locations in Europe, USA and Japan. The minimum duration of the contract is six months, with potential for extension.

We Need a “Pragmatic” and “Driven By Results” Information Security Risk Manager who can:

- Support the design and improvement of the information security framework (ISF): policies, controls, procedures using the NIST Cyber Security Framework; including third party risk management.
- Assess new and existing systems, data flows, business processes, and third party providers engagements and services to implement and verify compliance to the ISF reporting identified risks and issues to systems, processes and third party providers owners.
- Perform information security risk assessments such as but not limited to: security business impact analysis (BIA) and business dependency analysis; security controls plans; controls maturity assessments; third party provider risk profiling, risk assessments and audits.
- Maintains the information security risks and issues registers, deliver high quality reports and run information security committees meetings with business and IT management to manage risks.
- Support the design and improvement of the third party informatin risk management policies, controls and procedures. Assist or lead assessment of information security risks arising from engagement with third party providers and drive remediation efforts.
- Drive the design and implementation of a GRC platform including functional requirements, reviewing process designs, rolling out the new processes to the business and IT teams. Also, support in the administration and maintenance of the GRC tool.
- Design, improve and periodically report security key risk indicators and metrics to IT and business management to support continuous improvements and increase security maturity in our business processes.
- Designs, and delivers the security education training awareness program (SETA) across all business functions at the company. Manage external resources supporting the security awareness activities.

**What we are looking for in terms of experience**
- Desirable: Experience in implementing controls and managing compliance risks in regards to GXP regulated systems, data protection regulations such as EU and UK GDPR, CCPA, and cyber security regulations such as the EU NIS2, and the USA SEC Disclosure Requirements.

The Education, Certifications and Skill You Should Have:

- Significant of professional experience in information technology, ideally at least 3 years as an information security risk manager, preferably in a pharmaceutical, biotechnology or in other manufacturing organizations.
- Bachelor’s or Master’s degree in information security, or in Information Technology.
- Relevant information security professional certifications e.g. CISSP, CISM, CRISC, CISA, GSEC-GIAC, ISO 27001 auditor / practitioner.
- Desirable: Training and or certifications in GRC platforms such as ServiceNow GRC, Archer, Metricstream; and the NIST



  • Barcelona, España Launch Global A tiempo completo

    **Cyber Security Risk Manager - Contract 6 Months (with potential to extend to 2 years) - Barcelona** **Why this role might be of interest** The role has come about because the company, a highly successful and rapidly expanding international pharmaceutical business, is putting in place a brand new internal team to manage cyber security threats. Because of...


  • Barcelona, Barcelona, España Empresa Reconocida A tiempo completo

    Cyber Security Incident Response and Risk ManagementJob Summary: We are seeking a highly skilled Cyber Risk Manager Specialist to join our team at Empresa Reconocida. As a key member of our cyber security team, you will be responsible for managing and coordinating the investigation of cyber security incidents covered by our insurance policies.About the Role:...


  • Barcelona, España Amaris Consulting A tiempo completo

    **Who are we? **:**Amaris Consulting** is an independent technology consulting firm providing guidance and solutions to businesses. With more than 1,000 clients across the globe, we have been rolling out solutions in major projects for over a decade - this is made possible by an international team of 7,600 people spread across 5 continents and more than 60...


  • Barcelona, España amaris A tiempo completo

    Job description Take your career to the next level with Amaris Consulting as a Cyber Security Consultant (Risk & Compliance) in Barcelona (hybrid work).Become part of an international team, thrive in a global group with €800M turnover and 1,000+ clients worldwide, and an agile environment by planning the kickoff and follow up on projects. Join Amaris...

  • Cyber Security Expert

    hace 3 días


    Barcelona, Barcelona, España Allianz A tiempo completo

    About Allianz Technology">Allianz Technology is the global IT service provider for Allianz, delivering cutting-edge solutions that drive digitalization across the Group. With over 12,000 employees in 51 countries worldwide, we collaborate with other Allianz entities to pioneer the digital transformation of the financial services industry.">We oversee the...


  • Barcelona, Barcelona, España Recooty A tiempo completo

    **Job Title:** Cyber Security Risk Management Expert **About the Role:We are seeking a highly skilled Cyber Security Risk Management Expert to join our team at Recooty. This is an exciting opportunity for someone who is passionate about cyber security and wants to take their career to the next level. **Responsibilities:**Monitor and analyze...


  • Barcelona, España AstraZeneca A tiempo completo

    Are you ready to be part of the future of healthcare? Can you think big, be bold, and harness the power of digital and AI to tackle longstanding life sciences challenges? Then Evinova, a new health tech business part of the AstraZeneca Group might be for you! Transform billions of patients’ lives through technology, data, and innovative ways of working....


  • Barcelona, Barcelona, España Allianz A tiempo completo

    We are looking for a highly skilled Cyber Security Expert to join our team. This role is ideal for someone who has experience in implementing Information Security governance and management systems, with a strong technical understanding of network, infrastructure, and application security.The successful candidate will have a background in project management,...


  • Barcelona, Barcelona, España Nestlé Sa A tiempo completo

    Job OverviewNestlé Sa is seeking a highly skilled Cyber Security Risk Management Specialist to join our team. This exciting opportunity allows you to work in a fast-paced environment, collaborating with a diverse group of professionals to enhance the security and integrity of our systems.About the RoleAs a Cyber Security Risk Management Specialist, you will...


  • Barcelona, Barcelona, España Allianz A tiempo completo

    About Allianz TechnologyAllianz Technology is the global IT service provider for Allianz, delivering innovative IT solutions that drive digitalization across the Group. With over 12,000 employees worldwide, we collaborate with other Allianz entities to pioneer the digitalization of the financial services industry.We oversee the entire digitalization spectrum...


  • Barcelona, Barcelona, España Allianz A tiempo completo

    About the RoleWe are seeking a highly skilled Chief Information Security Officer to join our team at Allianz. The successful candidate will be responsible for ensuring the security and integrity of our information systems and data.Job DescriptionThe Chief Information Security Officer will be responsible for developing and implementing an Information Security...


  • Barcelona, España Page Personnel España A tiempo completo

    Support in maintaining security certifications. - Manage information security risks in a constant changing environment. - Work with and support our Global Security Operations Centre. - Review and assess IT and security controls. - Perform third-party risk assessments. - Develop, review and implement security policies and procedures. - Work with external and...


  • Barcelona, Barcelona, España Cyber Crime A tiempo completo

    At Cyber Crime, we are committed to delivering best-in-class infrastructure and security services across the Zurich Insurance Group. Our team works tirelessly to provide technical expertise in Directory Services, ensuring a secure and seamless experience for our customers. As a Directory Services Engineer, you will be part of a global team providing...


  • Barcelona, Barcelona, España Allianz A tiempo completo

    About the RoleAs a Chief Cyber Security Strategist at Allianz, you will play a key role in ensuring the Group's Information Security and Cyber Risks are identified and properly addressed.Main ObjectivesDevelop an Information Security Risk Management culture within Allianz by maintaining a strong framework and providing business visibility on risks and...


  • Barcelona, España Nestlé A tiempo completo

    Cyber Digital Protection Security SpecialistWe are looking for a Cyber and Digital Security Specialist – Digital Protection Security to be part of our Digital Protection Security team.Position SnapshotType of Contract: PermanentIT Security & ComplianceType of work: HybridWork Language: Fluent Business EnglishThe roleUnder the supervision and guidance of...


  • Barcelona, Barcelona, España Allianz A tiempo completo

    About Allianz">Allianz is a leading multinational financial services company that provides insurance and asset management products worldwide.">Job Title: Cyber Security Expert">Salary: $120,000 - $180,000 per year">Job Description: ">We are seeking an experienced Cyber Security Expert to join our Information Security Function. The successful candidate will...


  • Barcelona, España Nestlé A tiempo completo

    Cyber Digital Protection Security Specialist We are looking for a Cyber and Digital Security Specialist – Digital Protection Security to be part of our Digital Protection Security team. Position Snapshot Type of Contract: Permanent IT Security & Compliance Type of work: Hybrid Work Language: Fluent Business English The role Under the supervision and...


  • Barcelona, Barcelona, España Omya A tiempo completo

    About Omya Cyber SecurityOmya's Cyber Security Team is dedicated to maximizing the value derived from Information Technology and Operational Technology by excelling in Cyber Security Risk Management. We see every employee as a security champion, promoting our security practices within the company, toward clients, and suppliers.Main ResponsibilitiesImplement...


  • Barcelona, Barcelona, España Picus Security Inc A tiempo completo

    **About Picus Security Inc**Picus Security, a leading security validation company, empowers organizations to gain a clear picture of their cyber risk based on business context. Our innovative approach transforms security practices by correlating, prioritizing, and validating exposures across siloed findings, allowing teams to focus on critical gaps and...

  • Cyber Security Lead

    hace 6 meses


    Barcelona, España Arxada A tiempo completo

    Arxada is a global specialty chemicals business that’s committed to solving the world’s toughest preservation challenges through better science. With a proud history of innovation dating back more than a century, we aim to help our customers develop more sustainable solutions that protect and maintain the health and wellbeing of people and extend the...