Information Security Compliance Product Owner
hace 9 horas
We are expanding our Global Corporate Information Security (CIS) team and are looking for an
Information Security Compliance Product Owner (m/f/d)
to establish and scale our global security compliance and certification capabilities.
The Information Security Compliance Product Owner owns the Information Security Compliance Product within the Information Security Governance, Risk and Compliance (GRC) portfolio and is accountable for ensuring that regulatory, contractual, and certification requirements related to information and cybersecurity are identified, assessed, and integrated into the organization's Information Security Framework (ISF).
This role combines product ownership, project delivery and service execution, working closely with internal and external stakeholders.
Creating passion: your responsibilities
- Compliance Product Ownership & ISF Alignment: Define and own the Compliance Product scope, roadmap, operating model, and KPIs aligned with CIS and GRC strategy. Ensure continuous alignment of ISF components (policies, standards, procedures, control baselines) with regulatory, contractual, and certification requirements.
- Regulatory Compliance: Maintain a centralized inventory of applicable information and cybersecurity regulations (e.g. NIS2, GDPR, CRA, EU AI Act, defense-related obligations). Perform regulatory applicability assessments and structured compliance gap analyses. Define, track, and report remediation plans for identified compliance gaps. Monitor regulatory changes and ensure timely updates to the ISF.
- Security standards compliance and certification (ISO/IEC 27001): Govern ISMS and CSMS documentation, readiness, and support in companies certification activities, including maintaining required evidence and ensure delivery during internal and external audits, Track audit findings and corrective actions to closure for areas of responsibility.
- Customer & Stakeholder Assurance: Support with answering to compliance and security assessments from customers, contract security clause reviews, and customer audits. Act as the primary compliance point of contact for CIS product and services teams towards IT, Product Security, Legal, and business stakeholders. Report compliance status, certification progress, risks, and KPIs to leadership.
Contributing your strengths: your qualifications
- Bachelor's or Master's degree in Cybersecurity, Computer Science, or related field.
- 5+ years of working experience in information security, IT Security, compliance or related roles (Information Security Compliance Manager, Information Security Officer, etc).
- Certifications such as CISSP, CISM, CRISC are a plus.
- Hands-on or governance experience with ISO/IEC 27001 certification programs.
- Strong understanding of global cybersecurity regulations (e.g. NIS2, GDPR, CRA).
- Experience coordinating audits, regulatory assessments, or certification activities.
- Familiarity with NIST CSF and ISO/IEC 27001 and IEC/62443 governance concepts.
- Demonstrated ability to manage stakeholders across IT, OT, engineering, and business management in complex environments.
- Excellent written and verbal communication skills in English and German is a plus.
Our commitment to you: your benefits
At Liebherr, we believe people are at the heart of our success. As part of our international team, you'll enjoy a secure role in a family-owned company that values innovation, collaboration, and long-term career growth:
- Competitive compensation and benefits package that recognizes your expertise
- Flexible and hybrid working model
- Creative freedom and responsibility to shape processes and solutions in our global transformation
- Continuous learning and development with tailored training and certification opportunities
- Meal vouchers
- Life and accident insurance
- Option to include a premium private health insurance package as part of the flexible remuneration
- A safe, stable and international workplace within a trusted family business that invests in people
Please only use the online application option.
Please note that we do not accept applications via recruitment agencies for this position.
Have we awoken your interest? Then we look forward to receiving your online application. If you have any questions, please contact Karoliina Rissanen.
One Passion. Many Opportunities.
The Company
Liebherr is a family-run technology company that is not only one of the largest construction machinery manufacturers in the world, but also offers high-quality, user-oriented products and services in many other areas. The Group employs nearly 50,000 people in more than 140 companies on all continents.
Location
Liebherr IT Shared Service Centre Ibérica, S.L.
Parque Norte. Alamo building Serrano Galvache, 56
28033 Madrid
Spain (ES)
Contact
Karoliina Rissanen
-
Security Compliance
hace 10 horas
Madrid, Madrid, España Tunstall Healthcare Group A tiempo completoWe are currently recruiting for aSecurity Compliance & Privacy Lead, reporting to the Head of Governance, Risk & Compliance, to lead the development, implementation and continuous evolution of Tunstall's information security policies, standards and control framework across all geographies and business units, ensuring alignment with international compliance...
-
Information Security, Risk
hace 9 horas
Madrid, Madrid, España FeverUp A tiempo completoAbout the role:The Information Security, Risk & Compliance Specialist will play a key role in developing and executing the information security and cybersecurity compliance roadmap, focusing on maintaining key certifications such as ISO 27001, ENS, among others and driving the company's commitment to achieving the highest security standards. The successful...
-
Chief Information Security Officer
hace 1 semana
Madrid, Madrid, España Colibrix One A tiempo completoJoin Colibrix One – Innovating the Future of PaymentsAt Colibrix One*, we're building advanced, AI-powered payment technologies that support Payment Service Providers (PSPs), Electronic Money Institutions (EMIs), and neobanks across the EU and the UK. As a fully licensed EMI (FCA reference number and a Principal Member of Mastercard, we offer real-world...
-
Information Security, Risk
hace 2 días
Madrid, Madrid, España Fever A tiempo completoHey thereWe're Fever, the world's leading tech platform for culture and live entertainment,Our mission? To democratize access to culture and entertainment. With our proprietary cutting-edge technology and data-driven approach, we're revolutionizing the way people engage with live entertainment.Every month, our platform inspires over 300 million people in +40...
-
Information Security, Risk
hace 2 días
Madrid, Madrid, España FeverUp A tiempo completoHey there We're Fever, the world's leading tech platform for culture and live entertainment, Our mission? To democratize access to culture and entertainment. With our proprietary cutting-edge technology and data-driven approach, we're revolutionizing the way people engage with live entertainment. Every month, our platform inspires over 300 million people in...
-
IS Information Security Governance Manager
hace 7 días
Madrid, Madrid, España ABB A tiempo completoEn ABB, ayudamos a las industrias a superar su capacidad productiva, de forma más eficiente y limpia. Aquí, el progreso es una expectativa para usted, su equipo y el mundo. Como líder global del mercado, le brindaremos lo que necesita para lograrlo. No siempre será fácil; crecer requiere agallas. Pero en ABB, nunca trabajará solo. Dirige lo que dirige...
-
IS Information Security Governance Manager
hace 2 semanas
Madrid, Madrid, España ABB A tiempo completoAt ABB, we help industries outrun - leaner and cleaner. Here, progress is an expectation - for you, your team, and the world. As a global market leader, we'll give you what you need to make it happen. It won't always be easy, growing takes grit. But at ABB, you'll never run alone. Run what runs the world.This Position reports to:Info Security Governance &...
-
Product Owner
hace 2 días
Madrid, Madrid, España NN GROUP A tiempo completoNN Digital Hub is a subsidiary company of Nationale Nederlanden Group located in Madrid, Spain. We deliver IT services and solutions for the different international Business Units from Nationale Nederlanden Group.Our objective is to create, deliver and maintain insurance product management solutions, as service propositions to enable any agent (linked or...
-
Product Owner
hace 2 días
Madrid, Madrid, España Nationale-Nederlanden A tiempo completoNN Digital Hubis a subsidiary company ofNationale Nederlanden Grouplocated in Madrid, Spain. We deliver IT services and solutions for the different international Business Units from Nationale Nederlanden Group.Our objective is to create, deliver and maintain insurance product management solutions, as service propositions to enable any agent (linked or...
-
Information Security Expert
hace 7 días
Madrid, Madrid, España AXA A tiempo completoJob Description:About AXAAs a world-leading insurance company, we act for human progress by protecting what matters. With 153,000 employees in 54 countries working for 105 million customers, we've created a truly dynamic and vibrant community. Inclusion and diversity link closely with our values, and together we're nurturing a culture of respect, for each...