Social network you want to login/join with:
VML THE COCKTAIL is a global design consultancy, part of VML. Genuinely engaging with bold organisations to grow another type of business: more human, more transcendent. We combine creativity, design, technology, and data to create products, brands, services, and companies that relate to people, delivering impactful stories for the future.
About the role:
- Member of an IT/Data team providing IT service delivery to a multinational company in Madrid, supporting hybrid work models with remote activities.
- Operate in a highly globalized environment with outsourced operations through third parties.
- Support a Business Center, including a Call Center, within a client-facing ecosystem with predominantly remote agents.
Responsibilities:
- Create and manage remediation plans for audit findings and compliance violations, monitoring evidence collection.
- Provide strategic risk guidance for IT projects and product management, including security assessments.
- Assist in developing and implementing new projects with a Privacy by Design approach, ensuring compliance with policies and data protection procedures.
- Regularly audit procedures, practices, and documents to identify risks or weaknesses.
- Establish new procedures, protocols, and internal policies.
- Prepare and manage compliance training to raise awareness on Information Security and Data Protection.
- Investigate, report, and correct compliance issues, irregularities, and violations.
- Act promptly in security incidents or breaches, collaborating with the Compliance Manager to ensure legal and regulatory compliance.
- Provide legal advice on data protection for employees regarding commercial communications.
- Manage Third Party Risk, assessing and mitigating risks with vendors and external parties, collaborating with DPO and Legal Department.
Requirements:
- Based in Madrid.
- At least 2 years of experience in risk management, privacy, information security, or IT roles.
- Strong work ethic with a passion for legal advice and new technologies.
- Fluent in English, capable of working effectively in the language.
- Bachelor's degree or equivalent in engineering.
- Experience in validation, risk management, and change control.
- Knowledge of legal and regulatory standards such as GDPR, ISO27001, NIST.
- Excellent analytical skills, capable of managing multiple projects under tight deadlines.
- Experience with database security (SQL, Oracle, Azure) is desirable.