π GRC Cybersecurity Expert (ISO 27001 & ENS) β 100% remote work
π GRC Cybersecurity Expert (ISO 27001 & ENS) β 100% remote work
This job was originally posted in Spanish and automatically translated to English. You'll most likely need Spanish to apply.
Job Description
We are knowmad mood!
We are a leading digital transformation company, constantly evolving and at the forefront of technology. We were born to provoke real change through innovation and sustainable development, with the mission of adding value to clients and driving our talent.
Made up of more than 3,000 creative, digital, and innovative people connected to a purpose and capable of generating connections with people all over the world. A responsible, flexible team with a high capacity to adapt to the needs of our clients and the market, while providing value, vision, creativity, expertise, professionalism, and a passion for technology in every project.
The values that mark our course and guide us toward excellence are collaboration, innovation, commitment, fun, and trust.
π― What will be your mission?
We are looking for a senior Cybersecurity Governance (GRC) expert to take full responsibility for the ISMS and lead regulatory compliance and ENS recertification processes in a highly regulated corporate environment.
You will join us to fill a critical role requiring total autonomy from day one, actively participating in improving the organization's security posture.
What will be your mission?
Lead the governance of the Information Security Management System (ISMS)
Manage ENS (National Security Framework) certification and recertification processes
Define, implement, and maintain security policies, regulations, and procedures
Design and execute cybersecurity master plans
Comprehensive management of information security risks
Define and monitor KPIs / KRIs and executive reporting
Liaise with internal stakeholders and provide support during audits
Develop strategic roadmaps aligned with the business
Essential Requirements
Solid experience (+5 years) in GRC and cybersecurity governance
Demonstrable experience in:
ISO 27001 (implementation, maintenance, and auditing)
ENS (experience leading certifications or recertifications is highly valued)
ISMS Management
Experience in regulated environments (insurance, banking, public sector, etc.)
Ability to work with high autonomy and responsibility
Experience in defining security policies and risk management
β Desirable Requirements
Certifications:
ISO 27001 Lead Auditor / Lead Implementer
CISM, CISSP or other related certifications
Experience with frameworks:
NIST, ISO 27005, ISO 31000
Experience in leadership or governance roles
π§ Key Competencies
Strategic vision and business orientation
Ability for leadership and influence
Decision-making skills
Excellent communication skills
Proactivity and autonomy
And with us, you can enjoy:
β Permanent Contract
β 100% REMOTE
β Internal training and access to certifications β» Check our calendar here:
https://www.knowmadmood.com/es/talento/formacion
β Flexible remuneration plan (health insurance, transport, childcare vouchers, restaurant vouchers)
β Brand Ambassador through our referral plan
Recommend your friends and get an extra bonus!
β Events, meetups, techdays, talks... and much more!
β 26 days of rest (22 vacation days, 2 personal days, and December 24th and 31st as default holidays)
β Schedule: 8:30 AM to 6:00 PM (flexible) Mon-Thu and Fri 8:00 AM to 3:00 PM, and Summer Intensive in July and August from 8:00 AM to 3:00 PM
To stay up to date with our news, follow us here -> knowmad mood
At knowmad mood we are committed to equal opportunity and respect for diversity. We apply our Equality Plan and the principle of non-discrimination in all our selection processes.
View original advert (Spanish)
We are knowmad mood!
Somos una compaΓ±Γa lΓder en transformaciΓ³n digital, en constante evoluciΓ³n y a la vanguardia de la tecnologΓa. Nacimos para provocar un cambio real a travΓ©s de la innovaciΓ³n y el desarrollo sostenible, con la misiΓ³n de aportar valor a los clientes e impulsar nuestro talento.
Formado por mΓ‘s de 3.000 personas creativas, digitales e innovadoras conectadas a un propΓ³sito y capaces de generar conexiones con personas de todo el mundo. Un equipo responsable, flexible y con alta capacidad de adaptaciΓ³n a las necesidades de nuestros clientes y del mercado, a la vez que proporciona valor, visiΓ³n, creatividad, expertise, profesionalidad y pasiΓ³n por la tecnologΓa en cada proyecto.
Los valores que marcan nuestro rumbo y nos guΓan hacia la excelencia son la colaboraciΓ³n, la innovaciΓ³n, el compromiso, la diversiΓ³n y la conο¬anza.
π― ΒΏCuΓ‘l serΓ‘ tu misiΓ³n?
Buscamos un/a experto/a senior en Gobierno de Ciberseguridad (GRC) que asuma la responsabilidad completa del SGSI y lidere procesos de cumplimiento normativo y recertificaciΓ³n ENS en un entorno corporativo altamente regulado.
Te incorporarΓ‘s para cubrir un rol crΓtico con necesidad de autonomΓa total desde el primer dΓa, participando activamente en la mejora de la postura de seguridad de la organizaciΓ³n.
ΒΏCuΓ‘l serΓ‘ tu misiΓ³n?
Liderar el gobierno del Sistema de GestiΓ³n de Seguridad de la InformaciΓ³n (SGSI)
Gestionar procesos de certificaciΓ³n y recertificaciΓ³n ENS (Esquema Nacional de Seguridad)
Definir, implantar y mantener polΓticas, normativas y procedimientos de seguridad
DiseΓ±ar y ejecutar planes directores de ciberseguridad
GestiΓ³n integral de riesgos de seguridad de la informaciΓ³n
Definir y monitorizar KPIs / KRIs y reporting ejecutivo
InterlocuciΓ³n con stakeholders internos y soporte en auditorΓas
ElaboraciΓ³n de roadmaps estratΓ©gicos alineados con negocio
Requisitos imprescindibles
Experiencia sΓ³lida (+5 aΓ±os) en GRC y gobierno de ciberseguridad
Experiencia demostrable en:
ISO 27001 (implantaciΓ³n, mantenimiento y auditorΓa)
ENS (muy valorable haber liderado certificaciones o recertificaciones)
GestiΓ³n de SGSI
Experiencia en entornos regulados (seguros, banca, sector pΓΊblico, etc.)
Capacidad para trabajar con alta autonomΓa y responsabilidad
Experiencia en definiciΓ³n de polΓticas de seguridad y gestiΓ³n de riesgos
β Requisitos valorables
Certificaciones:
ISO 27001 Lead Auditor / Lead Implementer
CISM, CISSP u otras relacionadas
Experiencia en frameworks:
NIST, ISO 27005, ISO 31000
Experiencia en roles de liderazgo o gobierno
π§ Competencias clave
VisiΓ³n estratΓ©gica y orientaciΓ³n a negocio
Capacidad de liderazgo e influencia
Habilidad para la toma de decisiones
Excelentes capacidades de comunicaciΓ³n
Proactividad y autonomΓa
Y con nosotros podrΓ‘s disfrutar de:
β Contrato Indefinido
β 100% REMOTO
β FormaciΓ³n interna y acceso a certificaciones β»Consulta nuestro calendario aquΓ:
https://www.knowmadmood.com/es/talento/formacion
β Plan de retribuciΓ³n flexible (seguro mΓ©dico, transporte, tickets guarderΓa, tickets restaurante)
β Embajador de nuestra marca, a travΓ©s de nuestro plan amigo
Β‘Recomienda a tus amigos y llΓ©vate un extra!
β Β‘Eventos, meetups, techdays, charlas...y mucho mΓ‘s!
β 26 dΓas de descanso (22 dΓas vacaciones, 2 dΓas de libre disposiciΓ³n y 24 y 31 diciembre festivos por defecto)
β Horario: 8.30 a 18h ( flexible) L-J y V 8 a 15h e Intensiva de Verano Julio y Agosto de 8 a 15h
Para estar al corriente de nuestras novedades sΓguenos aquΓ -> knowmad mood
En knowmad mood nos comprometemos con la igualdad de oportunidades y el respeto a la diversidad. Aplicamos nuestro Plan de Igualdad y el principio de no discriminaciΓ³n en todos nuestros procesos de selecciΓ³n.