Governance, Risk & Compliance Manager

coches.net

Barcelona

Híbrido

EUR 70.000 - 110.000

Jornada completa

hace 37 horas
Sé de los primeros/as/es en solicitar esta vacante
Generador de candidaturas

Consigue una respuesta de este empleador — un currículum y una carta de presentación adaptados exactamente a lo que busca la empresa.

Supera los filtros ATS

Ventajas ofrecidas por este puesto de trabajo

Hybrid work policy
Competitive salary

Descripción de la vacante

Adevinta Information Services is building a modern, AI-first cybersecurity organization. We seek a proactive GRC Manager to own governance, risk and compliance and enable the business to move securely and efficiently.

You will lead the ISMS, oversee ISO 27001 and other certifications, coordinate audits, and drive risk management across our marketplaces. This role demands collaboration with Legal, Privacy, Procurement, Engineering and Product teams.

Formación

  • Experience leading GRC or information security governance in a technology company.
  • Strong understanding of ISO 27001, ENS, NIST or similar frameworks.
  • Experience managing external audits.
  • Experience with Vendor Risk Management.
  • Excellent communication skills with technical and non-technical stakeholders.
  • Pragmatic mindset focused on reducing business risk and autonomous initiative.

Responsabilidades

  • Own the Governance, Risk & Compliance function across Adevinta Information Services and support marketplaces in maintaining a strong security posture.
  • Lead ISO 27001, ENS and other security certifications and audits.
  • Coordinate cybersecurity assessments from internal stakeholders, EQT and external auditors.
  • Drive Third-Party Risk Management across suppliers and strategic partners.
  • Define and maintain security policies, standards and governance processes.
  • Lead security awareness and phishing programmes across the company.
  • Track security risks and remediation plans with business owners.
  • Build executive dashboards and security KPIs for senior leadership.
  • Coordinate Business Continuity and security governance activities.
  • Partner with Legal, Privacy, Procurement, Engineering and Product teams to embed security into business processes.
  • Help scale governance through automation and AI where possible.

Conocimientos

GRC leadership
ISO 27001
Security audits
Vendor risk management
Effective communication
Automation/AI in governance

Herramientas

GRC platforms

Descripción del empleo

Job Description

About Adevinta Information Services At Adevinta Information Services, we build and operate some of Spain's largest digital marketplaces, including InfoJobs, Milanuncios, Coches.net and Motos.net.

We're building a modern, AI-first cybersecurity organisation from the ground up following our separation from the global organisation. This is a unique opportunity to shape governance, compliance and cyber risk for a fast-moving technology company.

We're looking for a proactive and pragmatic GRC Manager who enjoys working close to the business and turning governance into an enabler rather than a blocker.

What you'll do

You will own the Governance, Risk & Compliance function across Adevinta Information Services and support our marketplaces in maintaining a strong security posture.

Responsibilities Include
  • Own the Information Security Management System (ISMS)
  • Lead ISO 27001, ENS and other security certifications and audits
  • Coordinate cybersecurity assessments from internal stakeholders, EQT and external auditors
  • Drive Third-Party Risk Management across suppliers and strategic partners
  • Define and maintain security policies, standards and governance processes
  • Lead security awareness and phishing programmes across the company
  • Track security risks and remediation plans with business owners
  • Build executive dashboards and security KPIs for senior leadership
  • Coordinate Business Continuity and security governance activities
  • Partner with Legal, Privacy, Procurement, Engineering and Product teams to embed security into business processes
  • Help scale governance through automation and AI where possible
What we're looking for
  • Experience leading GRC or Information Security Governance in a technology company
  • Strong understanding of ISO 27001, ENS, NIST or similar frameworks
  • Experience managing external audits
  • Experience with Vendor Risk Management
  • Excellent communication skills with technical and non-technical stakeholders
  • Pragmatic mindset focused on reducing business riskAbility to work autonomously and drive initiatives end-to-end
Nice To Have
  • Experience in SaaS, cloud-native or digital marketplace environments
  • Experience with GRC platforms
  • Security certifications (CISM, CRISC, ISO Lead Auditor...)
Why join us?
  • Build a cybersecurity organisation from scratch
  • High ownership and impact
  • Work with modern cloud technologies
  • AI-first security strategy
  • Flexible hybrid environment
  • International technology company
  • Competitive salary and benefits
Consigue la evaluación confidencial y gratuita de tu currículum.

o arrastra y suelta tu archivo aquí

Similar jobs

Puestos de trabajo similares que vale la pena comparar

GRC & InfoSec Leader: Build an AI-First Security Culture
GRC & InfoSec Leader: Build an AI-First Security Culture

coches.net • Barcelona

Híbrido
EUR 70.000 - 110.000
Hybrid work policy
Competitive salary
Cybersecurity Governance Risk & Compliance Lead (Madrid - Hybrid)
Cybersecurity Governance Risk & Compliance Lead (Madrid - Hybrid)

Montarelo Recruiting • Madrid

Presencial
EUR 70.000 - 100.000
Security Operations Engineering Lead
Security Operations Engineering Lead

coches.net • Barcelona

Híbrido
EUR 90.000 - 130.000
Private health insurance
Wellbeing resources
Hybrid working model
+9
GRC Security Expert
GRC Security Expert

Leadtech Group • Barcelona

A distancia
EUR 30.000 - 54.000
Private health insurance
Flexible hours
Remote work option
+5
Defensive Security Engineer (IR)
Defensive Security Engineer (IR)

Tamarind Intelligence • Barcelona

Presencial
EUR 70.000 - 110.000
Base Salary
Annual bonus
Work From Anywhere
+2
Junior Cybersecurity, Risk and Regulatory Compliance Consultant
Junior Cybersecurity, Risk and Regulatory Compliance Consultant

GMV • Tres Cantos

Híbrido
EUR 38.000 - 60.000
Hybrid work model
Remote work 8 weeks/year outside usual
Relocation package
+2
Information Security Analyst, GRC & ISMS
Information Security Analyst, GRC & ISMS

GMV • Tres Cantos

Híbrido
EUR 45.000 - 65.000
Hybrid working model
Flexible working hours
Career development support
+2
Information Security GRC Specialist (f/m/d)
Information Security GRC Specialist (f/m/d)

Awin Global • Madrid

Presencial
EUR 40.000 - 60.000
Flexible four-day work week
Remote Working Allowance
Health and Wellness initiatives
+1
Junior Cybersecurity, Risk and Regulatory Compliance Consultant
Junior Cybersecurity, Risk and Regulatory Compliance Consultant

GMV Spain • Madrid

Híbrido
EUR 30.000 - 50.000
Hybrid work model
Flexible working hours
Competitive compensation
+3
Cybersecurity, Risk and Regulatory Compliance Consultant
Cybersecurity, Risk and Regulatory Compliance Consultant

GMV Spain • Madrid

Híbrido
EUR 60.000 - 90.000
Hybrid work model
Remote work (8 weeks/yr)
Flexible hours
+4