22h ago
Senior Information Security Manager
Madrid
โจ $120k-$150k / yearest.
full-timesenior Hybrid
๐ Tech Stack
๐ผ About This Role
You'll spearhead global GRC initiatives and own the information security management system at a high-growth fintech scale-up. Your work will directly enable Ebury's international expansion while ensuring compliance with ISO 27001, GDPR, and DORA.
๐ฏ What You'll Do
- Design and mature global GRC framework aligned with ISO 27001, NIST, GDPR, DORA.
- Own the risk assessment process and communicate risk to business stakeholders.
- Lead external audits as primary liaison and oversee remediation of findings.
- Mature the Third-Party Risk Management program and define vendor security standards.
๐ Requirements
- 5+ years in Information Security, GRC, or Risk Management
- Strong knowledge of ISO 27001, SOC 2, GDPR, FCA/DORA, NIST
- Hands-on experience implementing risk management processes and control frameworks
- Industry certifications such as CISSP, CRISC, CISA, or ISO 27001 Lead Implementer/Auditor
โจ Nice to Have
- Familiarity with GRC platforms like OneTrust
- Experience with regulatory audits and working with financial regulators
๐ Benefits & Perks
- ๐ฐ Competitive Starting Salary with annual discretionary bonus
- ๐ Clear, Accelerated Career Progression pathways
- ๐งโ๐ซ Dedicated Mentorship from experienced managers
- ๐ข Central Madrid Office with excellent transport links
- ๐ฅ Generous Benefits Package including health care and social benefits
๐จ Hiring Process
Estimated timeline: 2-3 weeks ยท AI estimate
- 1Recruiter Screenยท 30 min
- 2Technical Interviewยท 45 min
- 3Leadership Interviewยท 45 min
0 0 0