Information Security Risk Manager — 2LoD & ISO27001 Lead

MultiSafepay

Málaga

On-site

EUR 70,000 - 100,000

Full time

2 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Salary & benefits package
Free Spanish classes
Professional growth
International team

Job summary

MultiSafepay is seeking an Information Security Risk Manager to own the ICT risk management framework within the second line of defence. You will be responsible for day-to-day execution, monitoring, and reporting of ICT risk and information security activities in line with DORA, ISO 27001, and PCI DSS requirements.

You will own the Eramba GRC platform, ISMS policy suite, and the ICT risk register, providing technical ICT risk input to leadership.

Qualifications

  • 5-8 years of experience in ICT risk management or information security in regulated financial institutions.
  • Experience with DORA ICT risk management chapter, ISO/IEC 27001, and PCI DSS v4.0.
  • Hands-on experience with a GRC platform such as Eramba, including RCSA execution and KRI reporting.
  • Strong ability to translate technical risks into clear stakeholder reporting.

Responsibilities

  • Maintain and develop the ICT risk register and monitor ICT controls (KRI dashboards).
  • Own the ISMS policy suite in line with ISO 27001 and DORA; coordinate 2LoD security monitoring.
  • Support DORA Chapter II obligations including incident classification and reporting.
  • Lead PCI DSS 2LoD governance and coordinate PCI-3DS as a project stream.
  • Own the Eramba GRC platform and rollout to new modules and processes.
  • Advise on ICT third-party risk and support EY IT audits and risk reporting.

Skills

DORA ICT risk management
ISO/IEC 27001
PCI DSS v4.0
GRC platforms (Eramba)
Reporting to stakeholders
English communication

Education

Bachelor's or Master's degree in Information Security / Computer Science / Risk Management

Tools

Eramba GRC

Job description

MultiSafepay is seeking an Information Security Risk Manager to own the ICT risk management framework within the second line of defence. You will be responsible for day-to-day execution, monitoring, and reporting of ICT risk and information security activities in line with DORA, ISO 27001, and PCI DSS requirements.

You will own the Eramba GRC platform, ISMS policy suite, and the ICT risk register, providing technical ICT risk input to leadership.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior ICT Risk & InfoSec Manager (DORA/ISO27001)
Senior ICT Risk & InfoSec Manager (DORA/ISO27001)

Multisafepay BV • Estepona

Hybrid
EUR 70,000 - 100,000
Competitive salary & benefits
Free Spanish classes
Growth opportunities
+1
Information Security Risk Manager
Information Security Risk Manager

MultiSafepay • Málaga

On-site
EUR 70,000 - 100,000
Salary & benefits package
Free Spanish classes
Professional growth
+1
Information Security Risk Manager
Information Security Risk Manager

Multisafepay BV • Estepona

Hybrid
EUR 70,000 - 100,000
Competitive salary & benefits
Free Spanish classes
Growth opportunities
+1
Remote Information Security Manager — AWS, ISO 27001, SOC 2
Remote Information Security Manager — AWS, ISO 27001, SOC 2

Sovendus GmbH • Barcelona

On-site
EUR 60,000 - 90,000
Remote work
Workation
External training
+1
Senior 2LOD Risk Assurance Lead – Madrid
Senior 2LOD Risk Assurance Lead – Madrid

Monzo • Madrid

Hybrid
EUR 53,000 - 65,000
Salary range
Hybrid work model
Annual leave 38 days
+3
IT Risk & Cyber Compliance Associate — Elevate Security
IT Risk & Cyber Compliance Associate — Elevate Security

Getnet • Madrid

On-site
EUR 60,000 - 85,000
Senior Cyber Risk & Tech Risk Specialist (2LoD)
Senior Cyber Risk & Tech Risk Specialist (2LoD)

Santander Corporate & Investment Banking • Boadilla del Monte

Hybrid
EUR 90,000 - 120,000
Hybrid work model
Training & certifications
Competitive rewards
IT Risk & Compliance Associate
IT Risk & Compliance Associate

Getnet • Boadilla del Monte

On-site
EUR 65,000 - 90,000
IT Risk & Compliance Associate
IT Risk & Compliance Associate

Getnet • Madrid

On-site
EUR 60,000 - 85,000
Information Security Manager
Information Security Manager

COLIBRIX ONE • Barcelona

On-site
EUR 60,000 - 90,000
Competitive salary
Flexible work arrangements
Continuous learning and development