Cyber Security Specialist

hace 21 horas


Barcelona, Barcelona, España Previan (Eddyfi NDTG) A tiempo completo

About NDT Global

NDT Global is the leading provider of inline diagnostic solutions, advanced data insights, and integrity management services that safeguard energy-sector infrastructure. The company is recognized for its expertise in both ultrasonic inspection technologies — such as Pulse Echo, Pitch-and-Catch, Phased Array, and Acoustic Resonance (ART Scan) — and ultra-high-resolution Magnetic Flux Leakage (MFL) inspection services. These differentiated offerings, along with non-ultrasonic technologies like Inertial Measurement Units and others in development, enable NDT Global to deliver comprehensive asset integrity solutions.

Innovation is at the core of NDT Global's mission. We continuously challenge the boundaries of existing technologies to deliver transformational solutions that empower the industry to achieve safer, more cost-effective pipeline management. Our commitment to research and development drives the creation of vital new methods and tools that address the evolving needs of our customers while setting new industry standards.

By strategically applying inspection technologies to detect, diagnose, and model various types of threats, NDT Global provides predictive, decision-ready insights. These insights, driven by the world's most accurate data, enable asset owners to optimize infrastructure health, drive operational efficiencies, reduce risk, and minimize their carbon footprint.

Purpose

The Cyber Security Specialist – Governance, Risk & Compliance (GRC) is responsible for defining, implementing, and continuously improving NDT Global's cybersecurity governance, risk management, and compliance programs in alignment with global standards (CIS, NIST, ISO Operating within the IT team and collaborating across business units, this role ensures a consistent and proactive approach to cybersecurity governance, risk identification, and mitigation. The incumbent develops policies, leads risk assessments, and supports both technical and strategic initiatives to strengthen the organization's cyber resilience. 

Responsibilities

Governance & Framework Implementation (30%)
Establish and maintain cybersecurity governance aligned with CIS Controls, NIST CSF, and ISO Define policies, standards, and procedures supporting secure IT and business operations. Lead maturity assessments and drive continuous improvement of cybersecurity postureRisk Management Program Leadership (25%)
Lead the enterprise cybersecurity risk management program, including identification, evaluation, mitigation, and reporting of risks. Maintain risk registers and ensure alignment with corporate risk appetite and compliance obligations. Partner with IT and functional leads to remediate vulnerabilities and prioritize controls. Security Operations Support (20%)
Collaborate with IT infrastructure teams to ensure consistent monitoring, incident detection, and response. Provide guidance during incident handling and root-cause analysis. Participate in threat-hunting, penetration testing, and vulnerability management cycles.Compliance & Audit Readiness (15%)
Ensure adherence to regulatory and client security requirements across regions (e.g., GDPR, SOC 2). Prepare and support internal and external IT security audits. Maintain evidence repositories for audit and compliance trackingAwareness & Continuous Improvement  (10%)
Lead employee cybersecurity awareness programs. Collaborate with HR and IT to roll out phishing campaigns and training. Measure program effectiveness and adjust initiatives accordingly

Qualifications and experience

Bachelor's degree in cyber security, Computer Science, Information Systems, or related discipline. Minimum 5 years in cybersecurity governance, risk, and compliance functionsAdvanced certifications such as CISSP, CISM, or CRISC preferred. Additional certifications in GRC frameworks or auditing (ISO 27001 Lead Implementer, CISA) are assets. Proficiency in English (spoken and written); German language skills an advantage.  Experience implementing or managing controls within CIS, NIST, or ISO 27001 frameworks. Proven ability to conduct enterprise-wide risk assessments and develop mitigation strategies. Experience supporting security operations, vulnerability management, and incident response. Familiarity with cloud and hybrid environments (Microsoft 365, Azure, AWS). Understanding of European data protection regulations (GDPR).Experience with GRC and risk-tracking platformsStrong knowledge of SIEM, endpoint detection, and vulnerability management toolsProficiency in Power BI or equivalent analytics platformsSkilled in policy lifecycle management tools and automated compliance workflows

Skillset

Governance Mindset: Designs and enforces scalable cybersecurity policies. Risk Leadership: Identifies and communicates risks effectively to senior management. Analytical Thinking: Translates complex threats into actionable controls. Communication: Bridges technical and business perspectives with clarity. Accountability: Drives ownership for risk reduction and audit readiness. Collaboration: Works across departments to embed cybersecurity in operations. Continuous Improvement: Evaluates emerging standards and integrates them proactively

Benefits

  • Full benefits package effective immediately for employees and their dependents
  • Competitive pension matching program to secure your future
  • Flexible time options to suit your personal and professional needs
  • Supportive mentorship programs and career development opportunities
  • Ongoing training to keep your skills sharp and help you grow
  • Regular social events and programs to foster team spirit


  • Barcelona, Barcelona, España SGS A tiempo completo

    Company DescriptionBrightsight provides evaluation and certification services to companies around the world. Our laboratories and global network provide specialist Cyber Security testing and certification services for digital products, networked systems and online services. We provide a one-stop-shop approach for all Cyber Security certification matters,...

  • Cyber Security Engineer

    hace 1 semana


    Barcelona, Barcelona, España Clarivate A tiempo completo

    We are seeking a motivated and skilled Cyber Security Engineer to join Product Security team. This role will primarily focus on managing and enhancing Web Application Firewalls (WAFs) and strengthening Product Security. The ideal candidate will bring hands-on experience with security technologies, a keen understanding of application security challenges, and...

  • Cyber Security Engineer

    hace 1 semana


    Barcelona, Barcelona, España Clarivate A tiempo completo

    We are seeking a motivated and skilled Cyber Security Engineer to join Product Security team. This role will primarily focus on managing and enhancing Web Application Firewalls (WAFs) and strengthening Product Security. The ideal candidate will bring hands-on experience with security technologies, a keen understanding of application security challenges, and...


  • Barcelona, Barcelona, España isolutions A tiempo completo

    Is Cyber Security your passion? More and more companies are using Microsoft cloud technologies to increase agility and enable innovation. Deploying Microsoft 365, and Azure services is often the first step into the cloud. Modern ways of working and cloud services present new challenges for IT security. In our Cloud Security Practice, we help organizations...


  • Barcelona, Barcelona, España isolutions A tiempo completo

    Is Cyber Security your passion?More and more companies are using Microsoft cloud technologies to increase agility and enable innovation. Deploying Microsoft 365, and Azure services is often the first step into the cloud. Modern ways of working and cloud services present new challenges for IT security.In our Cloud Security Practice, we help organizations...


  • Barcelona, Barcelona, España isolutions A tiempo completo

    Is Cyber Security your passion? More and more companies are using Microsoft cloud technologies to increase agility and enable innovation. Deploying Microsoft 365, and Azure services is often the first step into the cloud. Modern ways of working and cloud services present new challenges for IT security. In our Cloud Security Practice, we help organizations...


  • Barcelona, Barcelona, España GE Vernova A tiempo completo

    The Product Manager – Wind SCADA and Cyber Security is a key member of the Controls and Software product line team and the overall Wind Product Management Team. This role owns strategy and product management for the Wind SCADA platform & Software as well as associated services both for new units as well as the existing fleet. This role combines product...


  • Barcelona, Barcelona, España GE Vernova A tiempo completo

    Job Description SummaryThe Product Manager – Wind SCADA and Cyber Security is a key member of the Controls and Software product line team and the overall Wind Product Management Team. This role owns strategy and product management for the Wind SCADA platform & Software as well as associated services both for new units as well as the existing fleet. This...


  • Barcelona, Barcelona, España SEIDOR A tiempo completo

    Urgent Hiring – Middle/Senior CyberArk PAM ConsultantLocation:On-site – BarcelonaEmployer:SEIDORWe are looking forMiddle/Senior CyberArk – Privileged Access Management (PAM) profilesto join a critical project. This is animmediate requirement, and we are open to evaluating rates based on experience and availability. Freelance profiles are welcome.Key...


  • Barcelona, Barcelona, España SII Group Spain A tiempo completo

    DesdeSII Group Spainbuscamos un/aCyber Security Consultantpara formar parte de nuestro gran equipo en Barcelona¿Quieres embarcarte en nuevos proyectos ? Sin duda querrás conocer más sobre esta oportunidad ¿Qué te ofrecemos?Contrato indefinido Formación personalizada que te permitirá crece r: Podrás disponer de acceso a nuestras plataformas...