GRC Project Manager
hace 6 días
UST is looking for the very Top Talent…and we would be delighted if you were to join our family
More in details, UST is a multinational company based in North America, certified as a Top Employer and Great Place to Work company with over 35.000 employees all over the world and presence in more than 35 countries. We are leaders on digital technology services, and we provide large-scale technologic solutions to big companies.
Desplácese hacia abajo para ver todos los requisitos del puesto y las responsabilidades que pueden esperar los candidatos seleccionados.
What are we looking for?
We are looking for a GRC Project Manager , with experience in cibersecurity projects, working close to one of our main clients in cybersecurity sector. This role requires a professional capable of working independently, managing end-to-end engagements, conducting audits, and providing expert advisory across multiple security domains.
Main tasks and accountabilities will be:
Consulting & Advisory
Lead consulting engagements across cybersecurity, risk management, and compliance domains.
Advise clients on best practices, improvement strategies, and implementation approaches aligned with recognized standards.
Translate regulatory and technical requirements into clear, actionable recommendations.
Audits & Compliance
Independently conduct internal audits and GAP analyses aligned with: ISO 27001, ISO 22301, ISO 27701, NIST CSF 2.0, DORA, NIS2, ENS, and other frameworks.
Identify non-conformities and provide structured remediation plans.
Prepare client-ready audit reports, risk registers, and compliance roadmaps.
Risk Management
Facilitate and execute risk assessments (AARR, BIAs) across business processes and information systems.
Apply methodologies such as ISO 31000, Magerit v3, and COSO to evaluate and treat risks.
Support clients in adopting formal risk management practices.
Cybersecurity Activities
Review technical assessments to identify vulnerabilities and recommend mitigation strategies.
Support cybersecurity initiatives including control implementation, incident response planning, and awareness programs.
Validate security controls and document evidence of compliance.
Client Interaction & Communication
Serve as a primary point of contact for clients throughout engagements.
Communicate technical requirements, project progress, findings, and recommendations clearly and effectively.
Deliver presentations, training sessions, and executive briefings tailored to diverse audiences.
Documentation & Policy Development
Develop and maintain client documentation including policies, procedures, standards, and process guides.
Ensure high-quality, audit-ready documentation for all consulting deliverables.
Coordinate evidence collection efforts across client teams during audit and compliance activities.
Collaborate with the rest of the team to improve the existing templates of documents or create new ones.
What UST expects from you?
4+ years of experience in cybersecurity consulting, audits, compliance, or risk management.
Expertise and/or certification in ISO 27001 and ENS (mandatory).
Working knowledge of international standards such as: ISO 22301, ISO 27701, ISO 27005, ISO 42001, NIST CSF 2.0, SOC 2, GDPR, DORA, NIS2, CMMC 2.0.
Strong proficiency in risk assessment methodologies (ISO 31000, Magerit v3, COSO).
Experience supporting or participating in incident response activities.
Bachelor's degree in Computer Engineering, Telecommunications, or a related field; Master’s in Cybersecurity preferred.
Good english level (C1) you will be working with international teams.
Desired Certifications:
ISO 27001 Lead Auditor / Lead Implementer
CISM / CISSP / CISA
Work location
Hybrid Madrid. 1 day a week in the customer office.
Work schedule
Business Hours.
What can we offer?
23 days of Annual Leave plus the 24th and 31st of December as discretionary days
Numerous benefits (Health Care Plan, teleworking compensation, Life and Accident Insurances).
`Retribución Flexible´ Program: (Meals, Kinder Garden, Transport, online English lessons, Health Care Plan…)
Free access to several training platforms
Professional stability and career plans
UST also, compensates referrals from which you could benefit when you refer professionals.
The option to pick between 12 or 14 payments along the year.
Real Work Life Balance measures (flexibility, WFH or remote work policy, compacted hours during summertime…)
UST Club Platform discounts and gym Access discounts
If you would like to know more, do not hesitate to apply and we’ll get in touch to fill you in details. We are waiting for you
In UST we are committed to equal opportunities in our selection processes and do not discriminate based on race, gender, disability, age, religion, sexual orientation or nationality. We have a special commitment to Disability & Inclusion, so we are interested in hiring people with disability certificate. xiphteb
Hay opciones de teletrabajo/trabajo desde casa disponibles para este puesto.
-
SAP SECURITY, GRC MANAGER
hace 5 días
Madrid, España MCR International A tiempo completoMLF-2511-391Asegúrese de que toda la información de su solicitud está actualizada y en orden antes de inscribirse en esta oportunidad.SAP SECURITY, GRC MANAGERBARCELONAKey ResponsabilitiesThe Security Governance, Risk & Compliance (GRC) Manager is the lead of the GRC area inside the S/4HANA implementation project and is accountable and responsible for...
-
SAP SECURITY, GRC MANAGER
hace 6 días
Madrid, España MCR International A tiempo completoMLF-2511-391 SAP SECURITY, GRC MANAGER BARCELONA Key Responsabilities The Security Governance, Risk & Compliance (GRC) Manager is the lead of the GRC area inside the S/4HANA implementation project and is accountable and responsible for designing, implementing, documenting, training and supporting SAP Governance, Risk, and Compliance (GRC) solutions. The...
-
SAP GRC Security Lead
hace 1 semana
Madrid, España MCR International A tiempo completoA leading technology firm in Barcelona is seeking a SAP Security, GRC Manager to lead the GRC area in the S/4HANA implementation project.¿Es este el siguiente paso en su carrera? Descubra si es el candidato adecuado leyendo la descripción completa a continuación.The role involves designing, implementing, and documenting SAP GRC solutions while managing...
-
SAP GRC Security Lead
hace 1 semana
Madrid, España MCR International A tiempo completoA leading technology firm in Barcelona is seeking a SAP Security, GRC Manager to lead the GRC area in the S/4HANA implementation project. The role involves designing, implementing, and documenting SAP GRC solutions while managing SAP security operations. Ideal candidates will have 5+ years of experience in SAP GRC and relevant IT qualifications. Fluent...
-
Grc Project Manager
hace 6 días
Madrid, España UST España & Latam A tiempo completoManages GRC projects with a focus on cybersecurity, audits, and compliance, ensuring effective risk management and security awareness.
-
Consultor/a SAP Grc Autorizaciones, Hibrido
hace 5 días
Madrid, España CAS TRAINING A tiempo completoConsultor/a Sap Grc Autorizaciones CAS Training empresa de referencia con más de 20 años en consultoría tecnológica outsourcing y formación especializada selecciona a un/a consultor/a con dos -tres años de experiência en SAP GRC Autorizaciones con inglés hablado para proyecto hibrido en Madrid Autorización SAP (ECC HR Gateway Fiori Solution Manager...
-
Manager Grc
hace 3 días
Madrid, España KPMG Asesores Madrid A tiempo completoManager GRC (Governance, Risk & Compliance) **Ubicación**:Madrid, ES, 28046**Fecha**:6 nov. 2024Entonces eres KPMG Originals. Un modo de entender la vida y tu profesión diferente desde donde marcar la diferencia. Un modo de crecer en un ambiente profesional que busca cambiar las cosas, transformar las empresas y la sociedad. Ven, alcanza tus metas,...
-
Grc Cybersecurity Consultant
hace 3 días
Madrid, España myCloudDoor A tiempo completo**Description**: ¿Tienes experiência como Governance, Risk, and Compliance (GRC) Cybersecurity Consultant? ¿Estás buscando nuevas oportunidades laborales? Si es así, ¡esta puede ser tu gran oportunidad!. En myCloudDoor te estamos buscando. **¿Quiénes somos?** myCloudDoor es una compañía 100% Cloud que, desde nuestra fundación en 2011 en Estados...
-
GRC Manager
hace 6 días
Madrid, España Experis A tiempo completoGRC Manager | Híbrido en Madrid | Inglés C1 imprescindible ¿Tienes una visión estratégica, capacidad de orden en entornos complejos y pasión por la ciberseguridad? Este rol es para ti: como GRC Manager, serás la figura de referencia que garantiza que la empresa cumple, no se la pega y se alinea con la estrategia del cliente. En Experis , el talento es...
-
Consultor GRC Ciberseguridad
hace 2 semanas
Madrid, España NTT DATA Europe & Latam A tiempo completoNTT DATA es una consultora multinacional que ofrece soluciones tecnológicas, de negocio, estrategia, desarrollo y mantenimiento de aplicaciones, siendo referente en consultoría. Digital Technology es la unidad enfocada a acompañar a las grandes organizaciones iberoamericanas en su transformación digital, generando dividendos digitales a través de la...