Information Security Manager
hace 4 días
BrainRocket is a global company creating end-to-end tech products for clients across Fintech, iGaming, and Marketing. Young, ambitious, and unstoppable, we've already taken Cyprus, Malta, Portugal, Poland, and Serbia by storm. Our BRO team consists of 1,300 bright minds creating innovative ideas and products. We don't follow formats. We shape them. We build what works, launch it fast, and make sure it hits. Location & Work Arrangement On-site role. The office is in Valencia, Spain. ❌ No remote, ❌ no hybrid work. The company assists with relocation process if your location differs from the required. Position Summary We are seeking an Information Security Manager to join our team at our Valencia, Spain office. Responsibilities Security Audits & Governance Conduct internal security audits of systems, business processes, and new integrations. Review and challenge technical and organisational controls; identify weaknesses and improvement areas. Participate in security architecture discussions and proactively recommend control mechanisms. Security Requirements & Control Design Define security requirements for internal systems, tools, and business processes. Work closely with engineering, infrastructure, and product teams to integrate controls into workflows and architectures. Validate that implemented controls meet design and compliance objectives. Risk & Compliance Oversight Perform risk assessments for internal tools and third‑party services (pre‑ and post‑integration). Maintain the Risk Register and work with asset owners on risk mitigation plans aligned with ISO27001/27701 and other frameworks. Support audit readiness and evidence collection for ISO 27001, PCI DSS, and other certifications. Data Protection & Access Control Analyze data flows and define appropriate protection strategies (e.g., encryption, masking, access management). Ensure logging, alerting, and monitoring controls are in place and passed to the SOC. Conduct periodic access reviews and role validations. Security Awareness & Process Improvement Contribute to security awareness initiatives and training content. Collaborate with business and IT teams to optimise secure‑by‑design practices across departments. Requirements 3+ years of experience in information security, internal audit, GRC, or similar roles. Hands‑on experience conducting internal audits, risk assessments, and designing/implementing security controls. Strong knowledge of ISO 27001/27701, PCI DSS, GDPR, and relevant security frameworks. Experience maintaining a Risk Register and working with asset owners on mitigation planning. Ability to define and validate security requirements for internal systems and processes. Understanding of data protection principles, including encryption, masking, and access control. Solid understanding of modern access management approaches such as RBAC, Just‑in‑Time (JIT) access, and Zero Trust. Strong analytical and documentation skills; ability to structure findings and communicate clearly across teams. Self‑driven and structured approach to auditing, with the ability to work across technical and business functions. Nice to have Experience supporting external certification audits (ISO 27001, PCI DSS, etc.). Relevant certifications such as ISO 27001 Lead Auditor, CISA, CRISC, CISSP, or CompTIA Security+. Experience collaborating with a SOC team or working with log and alert management systems. Benefits & Offerings Learning and development opportunities and interesting, challenging tasks. Opportunity to develop language skills, with partial compensation for the cost of Spanish classes (for localisation purposes). Relocation package. Global coverage health insurance. Time for proper rest, with 23 working days of annual vacation and an additional 6 paid sick days. Competitive remuneration level with annual review. Teambuilding activities. Bold moves start here. Make yours. Apply today By submitting your application, you agree to our Privacy Policy. #J-18808-Ljbffr
-
INFORMATION SECURITY RISK MANAGER
hace 1 semana
españa JT International S.A. A tiempo completoAt JTI we celebrate differences, and everyone truly belongs. 46,000 people from all over the world are continuously building their unique success story with us. 83% of employees feel happy working at JTI. To make a difference with us, all you need to do is bring your human best. What will your story be? Apply now! Learn more: jti.com Information Security...
-
Information Security Engineer
hace 21 horas
España Scopely A tiempo completoA leading gaming company is looking for an experienced Information Security Engineer to join their Data Protection team on a remote basis. This role focuses on enhancing corporate security and data protection programs, investigating complex incidents, and integrating security tools. The ideal candidate has at least 4 years of experience in security-related...
-
Information Security Manager(m/f/d)
hace 20 horas
españa Allianz A tiempo completoAllianz Services, as part of Allianz Technology, provides essential services under the Digital Resilience as a Service model, supporting the global Protection & Resilience Service Line. These services enhance the Group's capability to manage information and cyber security risks, ensure regulatory compliance, and maintain operational integrity across all...
-
Chief Information Security Officer
hace 1 semana
españa Global Fintech Talent A tiempo completoChief Information Security Officer (CISO) Role Overview We are seeking a decisive, and hands‑on Chief Information Security Officer (CISO) to take full ownership of the company’s security agenda. This leader must drive security initiatives, managing crises, and embedding security across the organization. The CISO will directly shape, enforce, and oversee...
-
YourCareer: Information Security Project Manager
hace 2 semanas
España Liebherr A tiempo completoWe are expanding our Global Corporate Information Security Team and looking forward new colleagues joining our teams: A strong member of the global Programme Management Team and CISO office, the Information Security Project Manager is responsible for leading cybersecurity projects from initiation to completion, ensuring all deliverables meet established...
-
YourCareer: Information Security Project Manager
hace 22 horas
España Liebherr A tiempo completoWe are expanding our Global Corporate Information Security Team and looking forward new colleagues joining our teams: A strong member of the global Programme Management Team and CISO office, the Information Security Project Manager is responsible for leading cybersecurity projects from initiation to completion, ensuring all deliverables meet established...
-
Information Security Engineer
hace 2 semanas
España Scopely A tiempo completoScopely is looking for an Information Security Engineer (DLP) to join our Data Protection team in Canada on a remote basis! We are a global team of game lovers who are developing, publishing and innovating the mobile games industry, connecting millions of people around the world daily. The Data Protection Engineering Team safeguards Scopely's data stores,...
-
Remote Information Security Engineer
hace 21 horas
España Scopely A tiempo completoA leading gaming company is looking for an experienced Information Security Engineer to join their Data Protection team on a remote basis. This role focuses on enhancing corporate security and data protection programs, investigating complex incidents, and integrating security tools. The ideal candidate has at least 4 years of experience in security-related...
-
YourCareer: Information Security Project Manager
hace 1 semana
España Liebherr A tiempo completoWe are expanding our Global Corporate Information Security Team and looking forward new colleagues joining our teams: A strong member of the global Programme Management Team and CISO office, the Information Security Project Manager is responsible for leading cybersecurity projects from initiation to completion, ensuring all deliverables meet established...
-
Cyber Security Sales Manager
hace 2 semanas
España SGS A tiempo completoCompany Description Brightsight provides evaluation and certification services to companies around the world. Our laboratories and global network provide specialist Cyber Security testing and certification services for digital products, networked systems and online services. We provide a one-stop-shop approach for all Cyber Security certification matters,...