Risk and Compliance Management Specialist

hace 3 semanas


Barcelona, Barcelona, España D-ploy A tiempo completo

D-ploy is a leading IT and Engineering Solutions provider operating across the EMEA region, including Switzerland, Germany, Czech Republic, Austria, the UK, and the USA.

We are committed to delivering innovative and high-quality services and solutions to a diverse range of industry-leading clients. By fostering relationships and trusted partnerships within the IT sector, we enhance our customers' IT productivity and contribute to their overall success and value.

We seek engaging, adaptable, and solution-focused professionals who aspire to join a dynamically growing international organization. Our focus is on creating value where IT is crucial; we invite you to be part of our journey.

Key Responsibilities
  • Assist in the design and enhancement of the information security framework (ISF): policies, controls, and procedures utilizing the NIST Cyber Security Framework, including third-party risk management.
  • Evaluate new and existing systems, data flows, business processes, and third-party provider engagements to ensure compliance with the ISF, reporting identified risks and issues to the respective owners.
  • Conduct information security risk assessments, including security business impact analysis (BIA), business dependency analysis, security controls plans, controls maturity assessments, and third-party provider risk profiling.
  • Maintain the information security risks and issues registers, produce high-quality reports, and facilitate information security committee meetings with business and IT management to manage risks effectively.
  • Support the development and enhancement of third-party information risk management policies, controls, and procedures. Lead assessments of information security risks from third-party engagements and drive remediation efforts.
  • Lead the design and implementation of a Governance, Risk, and Compliance (GRC) platform, including functional requirements, process design reviews, and rollout of new processes to business and IT teams.
  • Assist in the administration and upkeep of the GRC tool.
  • Design, enhance, and periodically report on security key risk indicators and metrics to IT and business management to support continuous improvement and elevate security maturity in business processes.
  • Develop and deliver the Security Education Training Awareness (SETA) program across all business functions, managing external resources for security awareness initiatives.
  • Desirable: Experience in implementing controls and managing compliance risks related to GXP regulated systems, data protection regulations such as EU and UK GDPR, CCPA, and cybersecurity regulations like the EU NIS2 and USA SEC Disclosure Requirements.

Qualifications

  • A minimum of 10 years of professional experience in information technology, with at least 3 years as an information security risk manager, preferably in pharmaceutical, biotechnology, or manufacturing sectors.
  • Bachelor's or Master's degree in information security or Information Technology.
  • Relevant information security professional certifications such as CISSP, CISM, CRISC, CISA, GSEC-GIAC, ISO 27001 auditor/practitioner.
  • Desirable: Training and/or certifications in GRC platforms like ServiceNow GRC, Archer, Metricstream; and the NIST Cyber Security Framework: Standards, Guidelines, and Practices.
  • Demonstrated resilience and accountability in delivering work.
  • A passion for cybersecurity with the ability to coach and assist others from diverse backgrounds in information technology, compliance, or information security domains.
  • A high level of personal integrity, capable of handling confidential matters professionally and exercising sound judgment.
  • Strong verbal and written communication skills in English; proficiency in German is a plus.
  • Exceptional communication skills: presentation, training, relationship management, consultation, and negotiation.
  • Able to work effectively in a matrix and geographically dispersed organization.
  • All candidates must provide a Criminal record (not older than 3 months).

Benefits

  • Diverse range of activities, tasks, and projects.
  • Flexible working conditions.
  • Vouchers for special occasions (e.g., birthdays, weddings, and newborns).
  • Referral program: Fishing for Friends.
  • Refreshments available in the D-ploy office.
  • Opportunities for further development and professional advancement.
  • A friendly and international working environment.
  • Company-sponsored events.
  • Competitive salary and various benefits.

Is IT in your DNA?



  • Barcelona, Barcelona, España Novartis A tiempo completo

    **Job Summary**Novartis is seeking a highly skilled Quality Compliance and Risk Management Specialist to join our team. As a key member of our Regulatory Risk and Compliance department, you will play a critical role in ensuring that our risk management processes and governance are fit for purpose and meet our high standards and regulatory requirements.**Key...


  • Barcelona, Barcelona, España Novartis A tiempo completo

    **Job Summary**Novartis is seeking a highly skilled Quality Compliance and Risk Management Specialist to join our team. As a key member of our Regulatory Risk and Compliance department, you will play a critical role in ensuring that our risk management processes and governance are fit for purpose and meet our high standards and regulatory requirements.**Key...


  • Barcelona, Barcelona, España Novartis Farmacéutica A tiempo completo

    Job Summary:As a Quality Compliance and Risk Management Specialist at Novartis Farmacéutica, you will play a critical role in supporting Regulatory Risk and Compliance by providing expertise and guidance to ensure that risk management processes and governance meet Novartis standards and Health Authorities' expectations.About the Role:Though there is a...


  • Barcelona, Barcelona, España Novartis Farmacéutica A tiempo completo

    Job Summary:As a Quality Compliance and Risk Management Specialist at Novartis Farmacéutica, you will play a critical role in supporting Regulatory Risk and Compliance by providing expertise and guidance to ensure that risk management processes and governance meet Novartis standards and Health Authorities' expectations.About the Role:Though there is a...


  • Barcelona, Barcelona, España Novartis A tiempo completo

    About the RoleAs a Quality Compliance and Risk Manager at Novartis, you will play a critical role in supporting Regulatory Risk and Compliance by providing expertise and guidance to ensure that risk management processes and governance are fit for purpose and meet Health Authorities' expectations.Key Responsibilities:Support Research & Development (R&D) risk...


  • Barcelona, Barcelona, España Novartis Farmacéutica A tiempo completo

    About the RoleAs a Quality Compliance and Risk Manager at Novartis Farmacéutica, you will play a critical role in supporting Regulatory Risk and Compliance by providing expertise and guidance to ensure that risk management processes and governance meet our company standards and Health Authorities expectations.Key Responsibilities:Support RDQ Risk...


  • Barcelona, Barcelona, España Novartis Farmacéutica A tiempo completo

    About the RoleAs a Quality Compliance and Risk Manager at Novartis Farmacéutica, you will play a critical role in supporting Regulatory Risk and Compliance by providing expertise and guidance to ensure that risk management processes and governance meet our company standards and Health Authorities expectations.Key Responsibilities:Support RDQ Risk...


  • Barcelona, Barcelona, España Novartis Farmacéutica A tiempo completo

    About the RoleAs a Quality Compliance and Risk Manager at Novartis Farmacéutica, you will play a crucial role in supporting Regulatory Risk and Compliance by providing expertise and guidance to ensure that risk management processes and governance meet Novartis standards and Health Authorities' expectations.You will engage with Research & Development (R&D)...


  • Barcelona, Barcelona, España Novartis Farmacéutica A tiempo completo

    About the RoleAs a Quality Compliance and Risk Manager at Novartis Farmacéutica, you will play a crucial role in supporting Regulatory Risk and Compliance by providing expertise and guidance to ensure that risk management processes and governance meet Novartis standards and Health Authorities' expectations.You will engage with Research & Development (R&D)...


  • Barcelona, Barcelona, España Air Products A tiempo completo

    About Air ProductsAir Products is a leading industrial gas company that aims to bring people together to reimagine what's possible and collaborate on innovative solutions to the world's most significant energy and environmental sustainability challenges.Our MissionWe strive to be the safest, most diverse, and most profitable industrial gas company in the...


  • Barcelona, Barcelona, España Air Products A tiempo completo

    About Air ProductsAir Products is a leading industrial gas company that aims to bring people together to reimagine what's possible and collaborate on innovative solutions to the world's most significant energy and environmental sustainability challenges.Our MissionWe strive to be the safest, most diverse, and most profitable industrial gas company in the...


  • Barcelona, Barcelona, España Amaris Group Sa A tiempo completo

    About the RoleWe are seeking a highly skilled Cyber Security Risk Management Specialist to join our team at Amaris Group Sa. As a Cyber Security Consultant (Risk & Compliance), you will play a critical role in designing, implementing, and maintaining our Cyber Security Risk & Compliance Framework and Continuous Control Monitoring process.Key...


  • Barcelona, Barcelona, España Amaris Group Sa A tiempo completo

    About the RoleWe are seeking a highly skilled Cyber Security Risk Management Specialist to join our team at Amaris Group Sa. As a Cyber Security Consultant (Risk & Compliance), you will play a critical role in designing, implementing, and maintaining our Cyber Security Risk & Compliance Framework and Continuous Control Monitoring process.Key...


  • Barcelona, Barcelona, España Amaris Group Sa A tiempo completo

    About the RoleWe are seeking a highly skilled Cyber Security Risk Management Specialist to join our team at Amaris Consulting. As a Cyber Security Consultant (Risk & Compliance), you will play a key role in designing, implementing, and maintaining our Cyber Security Risk & Compliance Framework and Continuous Control Monitoring process.Key...


  • Barcelona, Barcelona, España Amaris Group Sa A tiempo completo

    About the RoleWe are seeking a highly skilled Cyber Security Risk Management Specialist to join our team at Amaris Consulting. As a Cyber Security Consultant (Risk & Compliance), you will play a key role in designing, implementing, and maintaining our Cyber Security Risk & Compliance Framework and Continuous Control Monitoring process.Key...


  • Barcelona, Barcelona, España Ae002 Marsh Management Services (Mena) Limited A tiempo completo

    Job Description**Job Title:** Power Risk Engineer**Company:** Ae002 Marsh Management Services (Mena) Limited**Job Summary:**We are seeking a highly skilled Power Risk Engineer to join our team in Jeddah. As a Power Risk Engineer, you will be responsible for conducting risk assessments, loss estimates, and training exercises for our clients in the power...


  • Barcelona, Barcelona, España Ae002 Marsh Management Services (Mena) Limited A tiempo completo

    Job Description**Job Title:** Power Risk Engineer**Company:** Ae002 Marsh Management Services (Mena) Limited**Job Summary:**We are seeking a highly skilled Power Risk Engineer to join our team in Jeddah. As a Power Risk Engineer, you will be responsible for conducting risk assessments, loss estimates, and training exercises for our clients in the power...


  • Barcelona, Barcelona, España Novartis Farmacéutica A tiempo completo

    About the RoleAs a Quality Compliance and Risk Manager at Novartis Farmacéutica, you will play a crucial role in supporting Regulatory Risk and Compliance by providing expertise and guidance to ensure that the risk management process and governance meet Novartis standards and Health Authorities' expectations.Key Responsibilities:Support Research and...


  • Barcelona, Barcelona, España Novartis Farmacéutica A tiempo completo

    About the RoleAs a Quality Compliance and Risk Manager at Novartis Farmacéutica, you will play a crucial role in supporting Regulatory Risk and Compliance by providing expertise and guidance to ensure that the risk management process and governance meet Novartis standards and Health Authorities' expectations.Key Responsibilities:Support Research and...


  • Barcelona, Barcelona, España Novartis A tiempo completo

    About the RoleWe are seeking a highly skilled Quality Compliance and Risk Manager to join our team at Novartis. As a key member of our organization, you will play a critical role in ensuring that our risk management processes and governance are fit for purpose and meet the highest standards of quality and regulatory compliance.Key ResponsibilitiesSupport the...