IT Security

hace 5 horas


España Ford Brasil A tiempo completo

IT Security & Controls Analyst in MADRID, SpainThe IT Security & Controls Senior Analyst is a crucial member of the IT team, responsible for understanding and supporting the financial entity’s security posture and with awareness on compliance requirements with relevant regulations and industry best practices. This role requires a blend of technical expertise, analytical skills, and a strong understanding of security principles, risk management frameworks and compliance regulations.This is a leadership role demanding strong communication, analytical, and problem-solving skills, that would provide guidance and mentoring for Security & Controls Junior analysts.Responsibilities:Engage at Group level (Ford Motor Company, Ford Motor Credit Company) on new control policies, standards and guidelines and advising Software Engineering teams through understanding of the Corporate Information Security Policies.Conduct Security & Risk assessments of Third-party ICT service providers across FCE (IT due diligence reviews), ensuring they comply with most up-to-date and highest quality information security standards.Identify and report compliance gaps with relevant security regulations and industry standards (e.g., SOX, GDPR, DORA, NIST).Lead on remediation of complex IT Security & Controls related audit findings and internally identified control gaps, including high level co-ordination of corrective actions and defining learnings and best practices.Identify/recommend and where needed present material on various topics to support in-house security & controls awareness & training, or related reporting required at FCE committee meetings (e.g. Exec Operational Risk & Resilience Committee).FCE representative at FS-ISAC (Financial Services Information Sharing and Analysis Center) events and seminars.Engage with Global Ford Credit security teams and central FMC Cyber Defence Team, contributing to long and short term strategy updates.Research latest cyber trends and offer insights and suggestions for enhancing cyber security and defence within FCE IT.Attend external seminars and expo events in relation to cyber security and present findings back to the FCE IT Cyber Team and to Software Engineering teams.Responsible for FCE Cyber Incident Response Plan, and its awareness by the Cyber Incident Response Team (CIRT).Knowledge, Skills & Abilities:Strong controls mindset, and a background in system development and management – with proven experience (+3 years) in IT Security function, or equivalent experiences.Familiar with ICT related regulations (SYSC8, PRA, EBA, BaFin, DORA).Demonstrable experience with SOC 2 Type II reports, ISO 27001 or usage of similar standards.Good understanding of cybersecurity threats and best practices, including knowledge of common attack vectors, security controls, and incident response procedures.Strong prioritisation, co-ordination, organisational and communication skills, and a proven ability to balance workload and competing demands to meet deadlines.Clear and concise writing skills for creating reports and documentation, including security requirements, procedures, and policies.Excellent verbal and written communication skills in English (minimum of B2-Upper Intermediate Level), with ability to communicate and facilitate discussions with diverse audiences, both IT and business, internal and external.Critical thinking skills to assess risks and develop security solutions.Experience in a regulated, financial environment.Understanding of the overall business of Ford Credit.Experience on educating others and sharing awareness to different levels in the organization.Qualifications & Background:Acquired at least one of the following certifications (credentials of validity to be provided):CRISC (Certified in Risk and Information Systems Control) or equivalent.CISM (Certified Information Security Manager) or equivalent.CISSP (Certified Information System Security Professional) or equivalent.CISA (Certified Information Systems Auditor).Cloud security certifications from major cloud providers (AWS, Azure, GCP) / demonstrable expertise in securing cloud environments.Additional Information:Ford is committed to diversity and equality of opportunity for all and is opposed to any form of less favourable treatment or harassment on the grounds of gender, marital status, civil partnership status, parental status, race, ethnic origin, colour, nationality, national origin, disability, sexual orientation, religion/belief, gender reassignment and gender identity, age and those with caring responsibilities.
#J-18808-Ljbffr


  • IT Security Expert

    hace 1 mes


    España Quantion A tiempo completo

    Who we are:Quantion is a Business Digital Transformation services company born in 2015.Our services are based on a Digital Factory model. Through this model we help companies to accelerate their digital transformation projects with an end-to-end approach.We have +120 professionals in application development, UX/UI, and digital business transformation to...

  • Ibm Security Zsecure

    hace 2 semanas


    España Serbyte Servicios IT A tiempo completo

    ¡Únete a nuestro equipo en constante crecimiento! Somos SERBYTE IT, una empresa joven y dinámica, especializada en perfiles IT, y estamos en búsqueda de un Técnico con experiência en plataformas IBM SECURITY zSECURE. **Ofrecemos**: - Contrato indefinido - Jornada laboral completa de 40 horas semanales. - Horario flexible de entrada y salida. Tú te...

  • IT Security Manager

    hace 5 horas


    España Eurovision Services A tiempo completo

    Eurovision Services (ES) is seeking an IT Security Manager for our Global Operations & Engineering team at our technology hub in Madrid, Spain.ABOUT THE ES GLOBAL OPERATIONS & ENGINEERING TEAMThe ES Global Operations & Engineering department is the central point of contact for all customers receiving operational services from Eurovision Services,...


  • España DUFRYS A tiempo completo

    Role ProfileKey AccountabilitiesPolicy, Compliance and Audit: Develop and implement effective and reasonable policies and practices to secure protected and sensitive data and ensure information security and compliance with relevant legislation and security frameworks. Internally assess and evaluate the risk. Report to Global CISO on security project status,...

  • It Security Analyst

    hace 2 semanas


    España buscojobs España A tiempo completo

    At Board, we power financial and operational planning solutions for the world’s best brands. Thousands of enterprises use our technology to optimize resources, drive growth, and ensure profitability. With advanced analytics and forecasting, plus AI-driven insights, customers transform complex, real-time data into actionable intelligence.What’s been key...

  • IT Security Analyst

    hace 1 mes


    España BOARD Deutschland GmbH A tiempo completo

    At Board, we power financial and operational planning solutions for the world’s best brands. Thousands of enterprises use our technology to optimize resources, drive growth, and ensure profitability. With advanced analytics and forecasting, plus AI-driven insights, customers transform complex, real-time data into actionable intelligence.What’s been key...


  • España World Duty Free A tiempo completo

    Develop and implement effective and reasonable policies and practices to secure protected and sensitive data and ensure information security and compliance with relevant legislation and security frameworks. Internally assess and evaluate the risk. Report to Global CISO on security project status, risk, and improvement plans. Work on required security...


  • España F. Hoffmann-La Roche Ltd A tiempo completo

    Roche fosters diversity, equity and inclusion, representing the communities we serve. When dealing with healthcare on a global scale, diversity is an essential ingredient to success. We believe that inclusion is key to understanding people's varied healthcare needs. Together, we embrace individuality and share a passion for exceptional care. Join Roche,...


  • España F. Hoffmann-La Roche Gruppe A tiempo completo

    Roche fosters diversity, equity and inclusion, representing the communities we serve. When dealing with healthcare on a global scale, diversity is an essential ingredient to success. We believe that inclusion is key to understanding people’s varied healthcare needs. Together, we embrace individuality and share a passion for exceptional care. Join Roche,...

  • IT Security

    hace 5 horas


    España Ford Motor Company A tiempo completo

    Ford Motor CompanySince 1903, we have helped to build a better world for the people and communities that we serve. Welcome to Ford Motor Company.The IT Security & Controls Senior Analyst is a crucial member of the IT team, responsible for understanding and supporting the financial entity’s security posture and with awareness on compliance requirements with...


  • España Roche A tiempo completo

    RocheAs a pioneer in healthcare, we have been committed to improving lives since the company was founded in 1896 in Basel, Switzerland. Today, Roche creates innovative medicines and diagnostic tests that help millions of patients globally.Roche fosters diversity, equity and inclusion, representing the communities we serve. When dealing with healthcare on a...

  • IT Infrastructure

    hace 6 días


    España Tcr International A tiempo completo

    We are seeking an IT Infrastructure & Security Lead to provide advanced technical support (Level 3) and leadership within our Service Desk team. In this role, you will ensure the performance, security, and reliability of our IT infrastructure, serve as an escalation point for complex technical issues, and lead a team of skilled engineers. Reporting to the IT...

  • IT Security Expert

    hace 1 mes


    España Nestlé SA A tiempo completo

    The ProgramThe Nestlé Internal Audit program, of approximately 4 years, provides a unique opportunity to get to know IT functions and processes across the globe. IT Auditors travel around 50% of the time, according to a fixed calendar. By using proven methodologies, tools and data analytics, auditors provide value added risk assurance and improvement...

  • IT Security Expert

    hace 1 mes


    España Nestlé SA A tiempo completo

    The ProgramThe Nestlé Internal Audit program, of approximately 4 years, provides a unique opportunity to get to know IT functions and processes across the globe. IT Auditors travel around 50% of the time, according to a fixed calendar. By using proven methodologies, tools and data analytics, auditors provide value added risk assurance and improvement...

  • IT Security Expert

    hace 5 horas


    España Nestlé SA A tiempo completo

    The ProgramThe Nestlé Internal Audit program, of approximately 4 years, provides a unique opportunity to get to know IT functions and processes across the globe. IT Auditors travel around 50% of the time, according to a fixed calendar. By using proven methodologies, tools and data analytics, auditors provide value added risk assurance and improvement...

  • IT Security Expert

    hace 4 horas


    España Nestlé SA A tiempo completo

    The ProgramThe Nestlé Internal Audit program, of approximately 4 years, provides a unique opportunity to get to know IT functions and processes across the globe. IT Auditors travel around 50% of the time, according to a fixed calendar. By using proven methodologies, tools and data analytics, auditors provide value added risk assurance and improvement...

  • IT Security Expert

    hace 5 horas


    España Nestlé A tiempo completo

    NestléNestlé is the world's largest food & beverage company. We unlock the power of food to enhance quality of life for everyone, today and for generations to come.The ProgramThe Nestlé Internal Audit program, of approximately 4 years, provides a unique opportunity to get to know IT functions and processes across the globe. IT Auditors travel around 50%...

  • IT Security Expert

    hace 1 mes


    España Nestle Operational Services Worldwide SA A tiempo completo

    Position Snapshot Location: Nestlé Internal Audit IT Hub, Barcelona Stream: Nestlé Internal Audit Type of Contract: Permanent contract Type of work: Hybrid/Remote. Travel required: 40-50% of time (flexible) Work Language: Fluent Business English Grade: H2 The Program The Nestlé Internal Audit program, of approximately 4 years, provides a unique...

  • IT Security Expert

    hace 3 días


    España Nestlé A tiempo completo

    Position SnapshotLocation: Nestlé Internal Audit IT Hub, BarcelonaStream: Nestlé Internal AuditType of Contract: Permanent contractType of work: Hybrid/RemoteTravel required: 40-50% of time (flexible)Work Language: Fluent Business EnglishGrade: H2The ProgramThe Nestlé Internal Audit program, of approximately 4 years, provides a unique opportunity to get...


  • España BCD A tiempo completo

    **Start your journey with BCD: Grow, connect, collaborate and celebrate with our global team** **IT Network Security Engineer II (Remote)** - Full-time, Netherlands, United Kingdom_ In this role, you will represent the Enterprise ICT Organization in network and security infrastructure services. This individual will function in a capacity to implement and...