Cybersecurity GRC Consultant

AMARIS GROUP SA

Madrid

Hybrid

EUR 42,000 - 64,000

Full time

22 hours ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Remote work options
Transit tickets
Restaurant tickets
Kindergarten support
Private health insurance

Job summary

Amaris Consulting is seeking a Cybersecurity GRC Analyst (SAP focus) to join an international team. You will contribute to security governance, assess SAP security risks and ensure remediation actions align with business objectives across Operations and Finance.

The role requires 2-4 years in cybersecurity with GRC, strong SAP/GRC experience, and good English for meetings and documentation. A collaborative bridge between IT and business units is essential.

Qualifications

  • 2-4 years of experience in Cybersecurity with a focus on GRC, governance or risk analysis.
  • Proven experience assessing security risks for business applications.
  • Ability to review CIA criteria and follow up on remediation plans.
  • Experience contributing to cybersecurity clauses in contracts is a strong plus.
  • Comfortable preparing security committees, KPIs and risk documentation for stakeholders.
  • SAP security / SAP GRC experience is a strong plus.
  • Good level of English for meetings, documentation and committees.

Responsibilities

  • Support and contribute to security governance activities across the application landscape.
  • Assess application security risks, especially for SAP and other key business applications.
  • Review confidentiality, integrity and availability requirements and ensure appropriate controls.
  • Follow up on remediation plans, tracking progress and ensuring timely closure of findings.
  • Contribute to the review of cybersecurity clauses in contracts with vendors.
  • Prepare and support security committees, including dashboards, KPIs and risk reports.
  • Maintain and update the security status of the application portfolio.
  • Act as an interface between IT owners and the RSSI/CISO, aligning on risks and controls.
  • Contribute to continuous improvement of security processes, standards and documentation.

Skills

Cybersecurity
GRC
Governance
Risk analysis
SAP
SAP GRC
English proficiency
Stakeholder management

Tools

SAP
SAP GRC

Job description

Take your career to the next level with Amaris Consulting as a Cybersecurity GRC Analyst (SAP focus). Become part of an international team, thrive in a global group with €800M turnover and 1,000+ clients worldwide, and an agile environment by planning the kickoff and follow up on projects. Join Amaris Consulting, where you can develop your potential and make a difference within the company.

  • 2-4 years of experience in Cybersecurity, with a focus on GRC, governance or risk analysis (senior profiles also welcome).
  • Proven experience assessing security risks for business applications.
  • Strong ability to review confidentiality, integrity and availability (CIA) criteria and follow up on remediation plans.
  • Experience contributing to or reviewing cybersecurity clauses in contracts is a strong plus.
  • Comfortable preparing security committees, KPIs and risk documentation for stakeholders.
  • Ability to collaborate with IT owners, business teams and the RSSI/CISO, acting as a bridge between technical and business areas.
  • SAP security / SAP GRC experience is a strong plus.
  • Good level of English (spoken and written) for meetings, documentation and committees.
  • Strong communication, stakeholder management and organizational skills.

As a GRC Security Assistant, you will support the RSSI/CISO in security governance and risk analysis activities across Operations and Finance, with a particular focus on SAP applications:

  • Support and contribute to security governance activities across the application landscape.
  • Assess application security risks, especially for SAP and other key business applications.
  • Review and challenge confidentiality, integrity and availability requirements and ensure appropriate controls are in place.
  • Follow up on remediation plans, tracking progress and ensuring timely closure of security findings.
  • Contribute to the review of cybersecurity clauses in contracts with vendors and partners.
  • Prepare and support security committees, including the creation of dashboards, KPIs and risk reports.
  • Maintain and update the security status of the application portfolio.
  • Act as an interface between IT owners and the RSSI/CISO, ensuring alignment on risks, controls and action plans.
  • Contribute to the continuous improvement of security processes, standards and documentation.

Join our dynamic team of talented individuals and experience a world of growth and opportunities. Here's what we offer:

  • Grow rapidly with a tailored career path and salary evaluation. 70% of our senior leaders started at entry level.
  • Enhance your skills through our Tech Academy catalog, Udemy E-learning Platform, Languages Sessions, webinars, and workshops.
  • Take charge of your training with an annual personal budget and company-paid certifications.
  • Enjoy flexible policies, remote work options, and fantastic social benefits like transit and restaurant tickets, kindergarten support, and private health insurance.
  • Benefit from our WeCare program, supporting employees in critical situations.
  • Unleash your full potential, both professionally and personally.

Amaris Consulting is proud to be an equal-opportunity workplace. We are committed to promoting diversity within the workforce and creating an inclusive working environment. For this purpose, we welcome applications from all qualified candidates regardless of gender, sexual orientation, race, ethnicity, beliefs, age, marital status, disability, or other characteristics.

Who are we?

Amaris Consulting is an independent technology consulting firm providing guidance and solutions to businesses. With more than 1,000 clients across the globe, we have been rolling out solutions in major projects for over a decade – this is made possible by an international team of 7,600 people spread across 5 continents and more than 60 countries. Our solutions focus on four different Business Lines: Information System & Digital, Telecom, Life Sciences and Engineering. We are focused on building and nurturing a top talent community where all our team members can achieve their full potential. Amaris is your steppingstone to cross rivers of change, meet challenges and achieve all your projects with success.

At Amaris, we strive to provide our candidates with the best possible recruitment experience. We like to get to know our candidates, challenge them, and be able to give them proper feedback as quickly as possible. Here's what our recruitment process looks like:

Brief Call: Our process typically begins with a brief virtual/phone conversation to get to know you! The objective? Learn about you, understand your motivations, and make sure we have the right job for you!

Interviews: (the average number of interviews is 3 - the number may vary depending on the level of seniority required for the position). During the interviews, you will meet people from our team: your line manager of course, but also other people related to your future role. We will talk in depth about you, your experience, and skills, but also about the position and what will be expected of you. Of course, you will also get to know Amaris: our culture, our roots, our teams, and your career opportunities!

Case study: Depending on the position, we may ask you to take a test. This could be a role play, a technical assessment, a problem-solving scenario, etc.

As you know, every person is different and so is every role in a company. That is why we have to adapt accordingly, and the process may differ slightly at times. However, please know that we always put ourselves in the candidate's shoes to ensure they have the best possible experience.

We look forward to meeting you!

Job description

Take your career to the next level with Amaris Consulting as a Cybersecurity GRC Analyst (SAP focus). Become part of an international team, thrive in a global group with €800M turnover and 1,000+ clients worldwide, and an agile environment by planning the kickoff and follow up on projects. Join Amaris Consulting, where you can develop your potential and make a difference within the company.

WHAT WOULD YOU NEED?

  • 2-4 years of experience in Cybersecurity, with a focus on GRC, governance or risk analysis (senior profiles also welcome).
  • Proven experience assessing security risks for business applications.
  • Strong ability to review confidentiality, integrity and availability (CIA) criteria and follow up on remediation plans.
  • Experience contributing to or reviewing cybersecurity clauses in contracts is a strong plus.
  • Comfortable preparing security committees, KPIs and risk documentation for stakeholders.
  • Ability to collaborate with IT owners, business teams and the RSSI/CISO, acting as a bridge between technical and business areas.
  • SAP security / SAP GRC experience is a strong plus.
  • Good level of English (spoken and written) for meetings, documentation and committees.
  • Strong communication, stakeholder management and organizational skills.

WHAT WILL YOU DO?

As a GRC Security Assistant, you will support the RSSI/CISO in security governance and risk analysis activities across Operations and Finance, with a particular focus on SAP applications:

  • Support and contribute to security governance activities across the application landscape.
  • Assess application security risks, especially for SAP and other key business applications.
  • Review and challenge confidentiality, integrity and availability requirements and ensure appropriate controls are in place.
  • Follow up on remediation plans, tracking progress and ensuring timely closure of security findings.
  • Contribute to the review of cybersecurity clauses in contracts with vendors and partners.
  • Prepare and support security committees, including the creation of dashboards, KPIs and risk reports.
  • Maintain and update the security status of the application portfolio.
  • Act as an interface between IT owners and the RSSI/CISO, ensuring alignment on risks, controls and action plans.
  • Contribute to the continuous improvement of security processes, standards and documentation.

WHY US?

Join our dynamic team of talented individuals and experience a world of growth and opportunities. Here's what we offer:

  • Grow rapidly with a tailored career path and salary evaluation. 70% of our senior leaders started at entry level.
  • Enhance your skills through our Tech Academy catalog, Udemy E-learning Platform, Languages Sessions, webinars, and workshops.
  • Take charge of your training with an annual personal budget and company-paid certifications.
  • Enjoy flexible policies, remote work options, and fantastic social benefits like transit and restaurant tickets, kindergarten support, and private health insurance.
  • Benefit from our WeCare program, supporting employees in critical situations.
  • Unleash your full potential, both professionally and personally.

Amaris Consulting is proud to be an equal-opportunity workplace. We are committed to promoting diversity within the workforce and creating an inclusive working environment. For this purpose, we welcome applications from all qualified candidates regardless of gender, sexual orientation, race, ethnicity, beliefs, age, marital status, disability, or other characteristics.

Who are we?
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cyber Security GRC Specialist
Cyber Security GRC Specialist

Amaris Consulting | Part of Mantu • Madrid

Hybrid
EUR 60,000 - 85,000
Remote work options
Private health insurance
Transit and restaurant tickets
+2
Senior Network Engineer
Senior Network Engineer

Amaris Consulting • Barcelona

On-site
EUR 40,000 - 55,000
Private health insurance
Transit and restaurant tickets
Kindergarten support
+2
Senior Network Engineer
Senior Network Engineer

AMARIS GROUP SA • Bellprat

On-site
EUR 45,000 - 65,000
Private health insurance
Annual training budget
Company-paid certifications
+5
Senior PM Cibersecurity at Amaris Consulting
Senior PM Cibersecurity at Amaris Consulting

Amaris Consulting • Madrid

Hybrid
EUR 90,000 - 130,000
Hybrid work environment
IoT Quality Lead
IoT Quality Lead

Amaris Consulting • Madrid

Hybrid
EUR 60,000 - 90,000
Flexible policies
Remote work options
Transit and restaurant tickets
+2
Disaster Recovery Engineer
Disaster Recovery Engineer

AMARIS GROUP SA • Madrid

Hybrid
EUR 40,000 - 70,000
Remote work options
Transport and restaurant tickets
Private health insurance
+1
Junior PM Cibersecurit CRM B2B
Junior PM Cibersecurit CRM B2B

MANTU GROUP SA • Spain

Remote
EUR 28,000 - 42,000
Career growth
Continuous learning
Flexible work options
+2
Junior PM Cibersecurit CRM B2B
Junior PM Cibersecurit CRM B2B

AMARIS GROUP SA • Madrid

Hybrid
EUR 32,000 - 46,000
Meal vouchers
Transport
Childcare support
+1
Digital & Ecommerce Project Lead – Mobile Apps
Digital & Ecommerce Project Lead – Mobile Apps

Amaris Consulting • Barcelona

On-site
EUR 70,000 - 95,000
Remote work options
Transit and restaurant tickets
Kindergarten support
+2
Data Engineer - Spanish speaker
Data Engineer - Spanish speaker

AMARIS GROUP SA • Cerdanyola del Vallés

Hybrid
EUR 48,000 - 72,000