Lead Data Platform & Technical Office
Lead the definition and implementation of a Data Technical Office focused on governance and industrialization.
The English-language job board for Spain
87,000+ live jobsRemote from Spain·Added 27 days ago
Still open when we checked on 26 Sept
1401 open roles
Fully remote
Per the ad.
Have the right to work in Spain
No sponsorship mentioned, and this kind of work is rarely sponsored in Spain.
Have 3+ years of experience
Mid-level role.
This job was automatically translated to English.
3-5 years of experience in Governance, Risk & Compliance, risk management, compliance, or information security.
Experience in architecture and design of GRC models.
Experience in managing risks, controls, audits, and compliance.
Knowledge of ISO and NIST frameworks.
Experience working with audit and evidence management processes.
Ability to define processes, controls, indicators, and improvement plans.
Ability to work with technical and business teams.
Experience with GRC tools and platforms.
Experience in automating compliance and reporting processes.
Knowledge of regulations such as GDPR, SOX, HIPAA, or PCI-DSS, depending on the sector.
We are looking for a GRC Architect to design, implement, and optimize the Governance, Risk & Compliance architecture, ensuring that the organization's processes, controls, and tools are aligned with regulatory requirements and information security standards.
Define and evolve the GRC model, integrating governance, risk management, regulatory compliance, and information security, guaranteeing traceability, efficiency, control, and continuous improvement.
Evaluate the current maturity of the GRC model and define the evolution roadmap.
Design the architecture of GRC processes, controls, and tools.
Develop and implement risk management frameworks.
Manage risk registers, controls, and mitigation plans.
Align processes with frameworks such as ISO 31000, ISO 27005, and NIST.
Guarantee compliance with applicable regulations and standards.
Coordinate internal and external audits and manage compliance evidence.
Design and integrate automated workflows for monitoring and reporting.
Define GRC KPIs, metrics, and reporting.
Participate in continuous improvement initiatives for governance, risk, and compliance.
Drive GRC awareness and culture programs within the organization.
Diagnosis → Architecture design → Phased implementation → Monitoring and continuous improvement
Tecdata Engineering (TECDATA ENGINEERING) is a technology consulting and services provider specialized in global technology projects, with a portfolio covering custom software development, legacy modernization, managed services, cloud infrastructure, Salesforce, cybersecurity (including SOC, pentesting and NIS2 compliance), and data & AI services, alongside IT talent services such as headhunting and staff augmentation. The company reports being founded in 2012 with around 500 employees ("Compañeros 500") and 5M in billing, and forms part of a broader technology consulting group with more than 550 consultants across 5 countries. It states it is present in major economic sectors including banking, telecommunications, and insurance.
In Spain, Tecdata Engineering hires across multiple locations including Madrid, Barcelona, and Bilbao, with a significant share of openings marked "Completamente remoto" (fully remote) or hybrid. Its careers portal organizes vacancies into departments such as Desarrollo y QA, Ciberseguridad, Cloud, DevOps, Sistemas y Producción, Gestión de Proyectos, Comercial, and RRHH, and current openings range from COBOL and mainframe-adjacent banking roles to data engineering, Salesforce, SAP, cybersecurity, and air traffic management QA. For international professionals considering a move to Spain, the volume of remote-eligible roles across the country is notable, though the company's careers and website content is published in Spanish.
or browse Security·Mid-level·Remote·Cybersecurity·IT Services