Security Governance Specialist, Information Security Team

hace 19 minutos


Barcelona, Barcelona, España Docplanner A tiempo completo

We are the largest digital healthcare platform in the world, present in 15 countries and currently connecting over 30 million patients to more than 2 million healthcare professionals. We seek to make the experience in health more human and we live and breath this mission.

We obsess over the challenge of minimizing patients' pain and helping healthcare professionals thrive managing their patients and expand their online presence. Through services that bring health to users, we provide a space for questions, opinions and a way to find the health professional that best fits your needs.

To deliver the best result, we have motivated people with an innovative spirit, giving everyone the opportunity to actively contribute and grow within the company. The DocPlanner team is our secret sauce and for the 2nd consecutive year we were recognized as a Great Place To Work. We love diversity because each unique individual's perspective makes us stronger. We encourage everyone to participate in our hiring process. We'd love for you to bring your unique skill set and join the team

Job Description
The Security Governance Specialist is a critical member of the Information Security team responsible for developing and maintaining the governance framework, policies, procedures, and standards that guide the organization's information security practices. This role plays a pivotal role in ensuring that security efforts align with business objectives and comply with relevant regulations and industry standards.

Key Responsibilities
Policy And Procedure Development

  • Develop and maintain information security policies, procedures, and standards in alignment with industry best practices, regulatory requirements, and organizational goals.
  • Collaborate with stakeholders across the organization to ensure policies meet business needs while maintaining security standards.

Security Governance Framework

  • Establish and manage the security governance framework, ensuring consistency and accountability in security practices.
  • Define and communicate governance-related roles and responsibilities within the organization.

Compliance Management

  • Assist in identifying and understanding regulatory requirements and standards relevant to the organization (e.g., SOC 2, ISO
  • Ensure that security practices and policies align with compliance requirements and facilitate compliance assessments and audits.

Security Awareness

  • Contribute to the development of security awareness programs and training materials.
  • Collaborate with the Security Awareness and Training Specialist to educate employees about security policies and best practices.

Documentation and Reporting

  • Maintain a repository of security policies, procedures, and standards.
  • Prepare and distribute reports on compliance status, governance efforts, and security metrics to management.

Security Risk Management

  • Integrate risk management principles across the business.
  • Ensure that security governance efforts address identified risks appropriately.

Continuous Improvement

  • Stay informed about emerging security threats, regulations, and best practices.
  • Propose and implement improvements to the security governance framework based on industry trends and organizational needs.

Security Culture

  • Integrate with Tech and Product teams to identify and assess new development initiatives or projects
  • Bridge communication between the security and engineering teams ensuring needs and expectations are understood and managed.

Qualifications

  • ISO 27001 Lead Auditor or Implementer certification is highly desirable (but not essential)
  • Experience leading or taking part in internal and or external audits
  • 5+ years of experience in information security governance
  • Knowledge of relevant security standards and frameworks (e.g., ISO 27001, NIST, SOC 2).
  • Experience of continuous compliance tooling (eg Vanta or Drata)
  • Strong understanding of regulatory requirements, such as GDPR
  • Excellent communication and collaboration skills, with the ability to work across various departments.
  • Strong analytical and problem-solving skills.
  • Detail-oriented with a commitment to maintaining accuracy in documentation.
  • Ability to adapt to a dynamic and fast-paced environment.
  • Self-starter and free thinker

Additional Information
True flexibility and work-life balance

  • Remote or hybrid work model with our hub in Barcelona;
  • Flexible working hours;
  • Summer intensive schedule during July and August (work 7 hours, finish earlier);
  • 23 paid holidays, with exchangeable local bank holidays;
  • Additional paid holiday on your birthday or work anniversary (you choose what you want to celebrate).

Health comes first

  • Private healthcare plan with Adeslas for you and subsidized for your family (medical and dental);
  • Access to hundreds of gyms for a symbolic fee in partnership for you and your family.
  • Access to iFeel, a technological platform for mental wellness offering online psychological support and counseling.

Keep growing with us

  • Free English and Spanish classes.

We promote and embrace equal opportunities in our hiring process, and also every day at work. When you apply for our roles you receive equal treatment regardless of age, disabilities, gender reassignment, marital or civil partner status, pregnancy or parental status, race, colour, nationality, ethnic or national origin, religion or belief, sex, sexual orientation or any other dimension of human difference. If you require additional support in your recruitment process, we kindly encourage you to let us know. Behind those words you're reading, there's a person (hi) who already helped a candidate by adapting the interviews, and now we're lucky to have this person with us. So, even if you've never asked for it before, may this serve as a sign that, now, you can do so. We can only truly be equal if we adapt to each other.

"We believe all humans, in all their beautiful diversity, should have equal rights, dignity and respect. Period." Mariusz Gralewski, CEO



  • Barcelona, Barcelona, España Docplanner A tiempo completo

    Company Description We are the largest digital healthcare platform in the world, present in 15 countries and currently connecting over 30 million patients to more than 2 million healthcare professionals. We seek to make the experience in health more human and we live and breath this mission. We obsess over the challenge of minimizing patients' pain and...


  • Barcelona, Barcelona, España EBRO A tiempo completo

    EBRO SUV, an iconic automotive brand currently undergoing a strategic relaunch and growth, is looking for anInformation Security Specialistto strengthen the compliance and cybersecurity area.Your ResponsibilitiesSupport and lead the implementation, monitoring, and continuous improvement of information security management systems ( ISO/IEC 27001, ENS ...


  • Barcelona, Barcelona, España SQUAD - Cabinet de conseils et d'expertises A tiempo completo

    Information Security Advisor – BarcelonaSince 2011,SQUAD Grouphas been a key player in the cybersecurity landscape. We partner with leading organizations to protect their information systems through a comprehensive 360° offering of consulting, integration, expertise, and managed services.Our mission: Securing TogetherWe believe in a collaborative approach...


  • Barcelona, Barcelona, España Colibrix One A tiempo completo

    Join Colibrix One – Innovating the Future of PaymentsAt Colibrix One*, we're building advanced, AI-powered payment technologies that support Payment Service Providers (PSPs), Electronic Money Institutions (EMIs), and neobanks across the EU and the UK. As a fully licensed EMI (FCA reference number and a Principal Member of Mastercard, we offer real-world...


  • Barcelona, Barcelona, España Allianz Services A tiempo completo

    90903 | Risk Management | Professional | Non-Executive | Allianz Services | Full-Time | PermanentAllianz Services is proud to serve and be part of Allianz Group, one of the world's leading insurers and asset managers. Our global footprint, with more than 8,800 employees located across ten countries and four continents, enables us to unlock value for our...


  • Barcelona, Barcelona, España Allianz Insurance A tiempo completo

    90903 | Risk Management | Professional | Non-Executive | Allianz Services | Full-Time | PermanentAllianz Services is proud to serve and be part of Allianz Group, one of the world's leading insurers and asset managers. Our global footprint, with more than 8,800 employees located across ten countries and four continents, enables us to unlock value for our...


  • Barcelona, Barcelona, España Allianz Services A tiempo completo

    Allianz Services, as part of Allianz Technology, provides essential services under the Digital Resilience as a Service model, supporting the global Protection & Resilience Service Line. These services enhance the Group's capability to manage information and cyber security risks, ensure regulatory compliance, and maintain operational integrity across all...

  • Security & Governance Lead

    hace 11 minutos


    Barcelona, Barcelona, España alinia A tiempo completo

    About the Role As Security & Governance Lead at Alinia AI, you will play a foundational role in shaping the company's internal security, governance, and compliance practices as we scale our AI Auditing & Compliance platform for AI Agents in regulated industries. We are building critical safety and governance infrastructure for AI agents used in finance...

  • Lead AI Security Governance

    hace 16 minutos


    Barcelona, Barcelona, España Plain Concepts A tiempo completo

    Are you a visionary in cybersecurity strategy and policy? As theLead AI Security Governance, you will own theAI Security Strategydomain within Plain Security Studios. This pivotal role focuses on thegovernance and peopleaspects of cybersecurity in the age of AI. You will develop and enforce frameworks that ensure our AI solutions and those of our clients are...


  • Barcelona, Barcelona, España Allianz Insurance A tiempo completo

    79960 | IT & Tech Engineering | Professional | Non-Executive | Allianz Technology | Full-Time | PermanentAllianz Services, as part of Allianz Technology, delivers critical services through the Digital Resilience as a Service model, enabling the Allianz Group to identify and manage Information Security and Cyber Risks that could impact business performance...