The English-language job board for Spain
Information Security and Compliance Manager
On-site in Madrid·Full-time·Added 5 days ago
5 open roles
Overview
Job details
€35,000 a year
Gross, as stated in the ad.
About €2,200 a month after tax.
Full-time hours
Per the ad.
Requirements
Have the right to work in Spain
No sponsorship mentioned, and this kind of work is rarely sponsored in Spain.
Work in English
English is required, per the ad.
Work on-site in Madrid
No relocation package mentioned.
This job was automatically translated to English.
Pay & benefits
What you'll get
€35.000,0
Requirements
What we're looking for
- With 1-3 years of experience in functions related to information security, GRC, regulatory compliance, auditing, risk management, or process analysis and improvement.
- Good command of office software tools.
- Minimum English level required: B2.
- High capacity for organization, planning, and monitoring.
- Attention to detail and analytical capacity.
- Initiative and autonomy in task monitoring.
- Communication skills and the ability to work cross-functionally with different areas.
- Interest in developing professionally in the field of information security.
Nice to have
- Experience or knowledge in ISO/IEC 27001 and Information Security Management Systems (ISMS) and training or certifications related to regulatory compliance, auditing, or risk management will be valued.
The role
Information Security and Compliance Manager. Madrid.
We are looking to join our Madrid office a person to support the information security officer in the maintenance, monitoring, and continuous improvement of the ISMS (Information Security Management System), ensuring correct document management, monitoring of controls, task tracking, metrics, indicators, etc., and coordination between the different areas of the firm involved.
What you'll do
ISMS support and maintenance
- Control, monitoring, and updating of records, policies, procedures, and processes related to the ISMS.
- Preparation and collection of evidence for audits, reviews, and other control activities.
- Participation in improvement and maturity projects.
- Support in the preparation of new certifications or scope extensions.
Operational monitoring and control
- Periodic monitoring of compliance with established policies, procedures, and controls, identifying possible deviations and monitoring the actions necessary for their correction.
- Monitoring of actions derived from internal and external audits, penetration testing exercises, vulnerability analyses, and other technical reviews.
- Monitoring of information security training and awareness activities.
Administrative risk management
- Support in the maintenance and updating of the information security risk analysis.
- Monitoring of treatment plans and associated actions.
Participation in strategic initiatives and control reviews
- Collaboration in internal reviews of technological processes within the IT Area.
- Participation in new technological projects and initiatives with an impact on information security.
- Identification and proposal of improvement opportunities in processes, controls, and the information security model.
Support in the establishment of internal procedures and the preparation of policies and other regulatory compliance documents for Uría Menéndez regarding data protection, cybersecurity, and artificial intelligence.
About Uría Menéndez
In their own words
Additional information
Uría Menéndez: commitment to equality and diversity
Tags
More jobs like this
or browse Security·Junior·Cybersecurity·Community of Madrid




