Senior Consultant GRC
Senior Consultant GRC
Senior Consultant GRC
Need a visa? No sponsorship mentioned here. Browse visa jobs.
About the role
We are looking for a Senior GRC Consultant to join us on a permanent basis.
The work model is on-site in Getafe.
Main duties:
- Management and execution of GRC activities.
- Security governance, regulatory compliance, control framework, and technology risk.
- Participation in internal/external audits (ISO 27001, NIST, ENS, GDPR...).
- Preparation of executive reports and technical documentation.
- Coordination with the client's global teams.
- Monitoring of action plans, KPIs, and security maturity.
Technologies and frameworks:
- Frameworks and standards: ISO 27001/27002, NIST CSF, ENS
- Regulation: GDPR
- Corporate GRC tools: Archer, ServiceNow GRC, OneTrust
Education & certifications
Master's degree in Cybersecurity or equivalent certifications (CISM, CISA, CISSP, ISO 27001 Lead Auditor, ENS, etc.)
Languages
English: B2
How you'll work
full-time
remote
About the company & team
Devoteam is a leading European consultancy focused on digital strategy, technology platforms, cybersecurity, and business transformation through technology.
Technology is in our DNA, and we believe in it as a lever capable of driving change for the better, maintaining a balance that allows us to offer our client portfolio first-class technological tools, always with the closeness and professionalism of a team that acts as a guide along the way.
Devoteam has been committed to technology at the service of people for more than 25 years. With more than 10,000 people in the group, in 20 countries across Europe, the Middle East, and Africa.
Trust & Cybersecurity
About the role
Buscamos para incorporar de forma estable un Consultor Senior GRC.
La modalidad de trabajo es presencial en Getafe.
Funciones principales:
- Gestión y ejecución de actividades de GRC.
- Gobierno de seguridad, cumplimiento normativo, control framework y riesgo tecnológico.
- Participación en auditorías internas/externas (ISO 27001, NIST, ENS, GDPR...).
- Elaboración de informes ejecutivos y documentación técnica.
- Coordinación con los equipos globales del cliente.
- Seguimiento de planes de acción, KPIs y madurez de seguridad.
Tecnologías y marcos:
- Marcos y estándares: ISO 27001/27002, NIST CSF, ENS
- Regulación: GDPR
- Herramientas GRC corporativas: Archer, ServiceNow GRC, OneTrust
Education & certifications
Máster en Ciberseguridad o certificaciones equivalentes (CISM, CISA, CISSP, ISO 27001 Lead Auditor, ENS, etc.)
Languages
English: B2
How you'll work
full-time
remote
About the company & team
Devoteam es una consultora europea líder enfocada en estrategia digital, plataformas tecnológicas, ciberseguridad y transformación empresarial a través de la tecnología.
La Tecnología está en nuestro ADN y creemos en ella como una palanca capaz de impulsar el cambio para mejorar, manteniendo un equilibrio que nos permite ofrecer a nuestra cartera de clientes herramientas tecnológicas de primer nivel pero siempre con la cercanía y profesionalidad de un equipo que actúa como guía durante el camino.
Devoteam lleva más de 25 años comprometidos con la tecnología al servicio de las personas. Con más de 10.000 personas en el grupo, en 20 países de Europa, Oriente Medio y África.
Trust & Cybersecurity
This job was automatically translated to English, .