This job was originally posted in Spanish and automatically translated to English. You'll most likely need Spanish to apply.

Job Description

ENS / GRC Cybersecurity Consultant (Technical Profile) Specialist in Governance, Risk, and Compliance (GRC) and cybersecurity with experience in adaptation, implementation, and certification projects for the National Security Scheme (ENS) in public administration and public sector entities. A profile with both regulatory and technical knowledge, capable of acting as a bridge between security, infrastructure, architecture, and business areas. Key responsibilities - Execution of ENS adaptation projects (Basic, Medium, and High categories), including GAP analysis, adaptation plans, and monitoring of measures. - Development and maintenance of risk analyses using the MAGERIT methodology and PILAR tool. - Definition and review of security policies, procedures, standards, and instructions aligned with ENS, ISO 27001, and cybersecurity best practices. - Identification, design, and validation of technical and organizational security measures for infrastructures, systems, and services. - Coordination of ENS compliance audits, management of findings, and definition of remediation plans. - Preparation of security documentation, asset inventories, statements of applicability, and compliance evidence. - Monitoring of risks, non-conformities, and action plans, ensuring traceability until closure. - Preparation of executive reports and dashboards for security managers and senior leadership. - Liaison with technical teams, suppliers, service owners, and public bodies. Knowledge and experience - Demonstrable experience in ENS adaptation and certification projects in Public Administrations or entities subject to ENS. - Solid knowledge of MAGERIT, risk analysis and management, and use of PILAR. - Knowledge of security regulations and standards: ENS, ISO/IEC 27001, ISO/IEC 27002, NIST CSF, and GDPR. - Ability to translate regulatory requirements into technical controls and implementable security measures. - Technical knowledge in system architecture, networks, cloud infrastructure, identity management, endpoint protection, and security monitoring. - Experience collaborating with infrastructure, operations, development, and architecture teams. - Strong technical writing skills and ability to produce compliance documentation. - English level B1 or higher. Required experience - Between 2 and 6 years of experience in cybersecurity, risk management, or regulatory compliance. - Participation in at least 2-3 ENS adaptation or audit projects. - Previous experience in public bodies, local entities, regional administrations, or service providers for Public Administration. Desirable: Certifications such as CISA, ISO 27001 Lead Implementer/Auditor, ENS, CCSK, Security+, as well as experience with NIS2, DORA, or business continuity.

.

About Accenture

Accenture is a leading global professional services company that helps the world's leading businesses, governments and other organizations build their digital core, optimize their operations, accelerate revenue growth and enhance citizen services-creating tangible value at speed and scale. We are a talent- and innovation-led company with approximately 791,000 people serving clients in more than 120 countries. Technology is at the core of change today, and we are one of the world's leaders in helping drive that change, with strong ecosystem relationships. We combine our strength in technology and leadership in cloud, data and AI with unmatched industry experience, functional expertise and global delivery capability. Our broad range of services, solutions and assets across Strategy & Consulting, Technology, Operations, Industry X and Song, together with our culture of shared success and commitment to creating 360° value, enable us to help our clients reinvent and build trusted, lasting relationships. We measure our success by the 360° value we create for our clients, each other, our shareholders, partners and communities.

Visit us atwww.accenture.com

Equal Opportunity Employment Statement

We believe that no one should be discriminated against because of their differences. All employment decisions will be made without regard to age, race, creed, color, religion, sex, national origin, ancestry, disability status, veteran status, sexual orientation, gender identity or expression, genetic information, marital status, citizenship status or any other basis protected by applicable law. Our rich diversity makes us more innovative, competitive and creative, which helps us better serve our clients and communities.

DevOps Architect - Remote

Las Rozas - Madrid / A Coruña / Asturias / Barcelona / Cádiz / Canarias / España / Huelva / Madrid / Málaga / Murcia / Palma de Mallorca / Sevilla / Valencia / Zaragoza
🇪🇸
New
Need a visa? No sponsorship mentioned, and this kind of work is rarely sponsored in Spain. See which routes exist