¡Activa las notificaciones laborales por email!

Analista de Seguridad de la Información y Cumplimiento

GMV

Tres Cantos

Presencial

EUR 30.000 - 50.000

Jornada completa

Hace 20 días

Descripción de la vacante

A technology company in Tres Cantos is seeking a Cybersecurity Engineer to join their information security team. The role involves internal audits and compliance with ISO standards and the European NIS2 directive. Candidates should have at least one year of experience in information security and familiarity with risk analysis tools. The company offers a hybrid work model, competitive compensation, and robust wellbeing programs.

Servicios

Flexible working hours
Personalized career development
Health and dental insurance
Relocation package

Formación

  • At least one year's experience in information security.
  • Familiarity with cybersecurity regulations such as NIST2.
  • Ability to produce specific documentation.

Responsabilidades

  • Conduct internal audits for standards like ISO 27001.
  • Ensure compliance with European NIS2 directive.
  • Update the corporate business continuity management system.

Conocimientos

Experience in information security audit processes
Knowledge of ISO27001
Knowledge of risk analysis tools
Experience in conducting internal audits

Herramientas

GRC tools
Vulnerability management tools
Descripción del empleo
Responsibilities

In our team you will be involved in all GMV's corporate information security-related tasks. Among other tasks, you will take part in :

  • Internal audits for standards such as ISO 27001 or ENS, among others.
  • Adaptation to compliance with the European NIS2 directive and the corresponding local transpositions in the European countries where GMV is present.
  • Rollout of the corporate business continuity management system and the supply chain system.
  • Updating to the latest version of ISO27001.
Qualifications

We are looking for a cybersecurity engineer with at least one year's experience working in information security audit processes. We would like you to have experience and knowledge in :

  • Specific information security regulations, such as ISO27001, National Security Scheme or NIST2.
  • Elaboration of specific documentation, with appropriate language.
  • Information Security Management Systems

We will also appreciate that you have knowledge of software tools associated with risk analysis, GRC, vulnerability management, etc., as well as experience in conducting internal audits of management systems.

What we offer

Hybrid

working model and 8 weeks per year of teleworking outside your usual geographical area.

Flexible start and finish times, and intensive working hours Fridays and in summer.

Personalized career plan development, training and language learning support.

National and international mobility. Do you come from another country?

We can offer you a relocation package.

Competitive compensation with ongoing reviews, flexible compensation and discount on brands.

Wellbeing

program : Health, dental and accident insurance; free fruit and coffee, physical, mental and financial health training, and much more!

Consigue la evaluación confidencial y gratuita de tu currículum.
o arrastra un archivo en formato PDF, DOC, DOCX, ODT o PAGES de hasta 5 MB.