Senior ICT Risk & InfoSec Manager (DORA/ISO27001)

Multisafepay BV

Estepona

Híbrido

EUR 70.000 - 100.000

Jornada completa

14 días+
Generador de candidaturas

Una candidatura hecha para este puesto de trabajo — un currículum y una carta de presentación adaptados que responden directamente a la oferta.

Supera los filtros ATS

Ventajas ofrecidas por este puesto de trabajo

Competitive salary & benefits
Free Spanish classes
Growth opportunities
International team culture

Descripción de la vacante

MultiSafepay BV is seeking an Information Security Risk Manager to own the ICT risk management framework in the second line of defence. You will manage the Eramba GRC platform, ISMS policy suite, and ICT risk register, reporting to the Head of Risk & Compliance for board-level insights.

You will monitor RCSA cycles, ICT controls, and 2LoD governance, ensuring DORA and PCI DSS alignment while coordinating with external auditors and internal stakeholders. Strong English required.

Formación

  • 5–8 years of ICT risk management in a regulated financial institution
  • Experience with DORA ICT risk management, ISO/IEC 27001, and PCI DSS v4.0
  • Hands-on with a GRC platform such as Eramba, including RCSA execution and KRI reporting
  • Bachelor's or Master's degree in Information Security, Computer Science, Risk Management, or equivalent
  • Ability to translate complex technical risks into clear reporting for non-technical stakeholders
  • Ability to challenge first line of defence on ICT risk and security topics
  • Strong written and verbal English communication

Responsabilidades

  • Maintain and develop the ICT risk register; execute RCSA cycles and monitor ICT controls
  • Own the ISMS policy suite in line with ISO 27001, DORA and organizational standards
  • Support DORA Chapter II obligations including incident classification and major incident reporting
  • Lead PCI DSS 2LoD governance; coordinate PCI-3DS projects; liaise with QSA and stakeholders
  • Own Eramba GRC platform configuration and rollout to new modules
  • Provide second line of defence oversight of ICT third‑party risk and support EY audit and IT risk reporting cycles

Conocimientos

DORA ICT risk management
ISO 27001
PCI DSS v4.0
GRC platforms (Eramba)
RCSA and control monitoring
Stakeholder communication
English communication

Educación

Bachelor's or Master's in Information Security/Computer Science/Risk Management

Herramientas

Eramba

Descripción del empleo

MultiSafepay BV is seeking an Information Security Risk Manager to own the ICT risk management framework in the second line of defence. You will manage the Eramba GRC platform, ISMS policy suite, and ICT risk register, reporting to the Head of Risk & Compliance for board-level insights.

You will monitor RCSA cycles, ICT controls, and 2LoD governance, ensuring DORA and PCI DSS alignment while coordinating with external auditors and internal stakeholders. Strong English required.

Consigue la evaluación confidencial y gratuita de tu currículum.

o arrastra y suelta tu archivo aquí

Similar jobs

Puestos de trabajo similares que vale la pena comparar

Information Security Risk Manager
Information Security Risk Manager

Multisafepay BV • Estepona

Híbrido
EUR 70.000 - 100.000
Competitive salary & benefits
Free Spanish classes
Growth opportunities
+1
IT Risk & Compliance Associate
IT Risk & Compliance Associate

Getnet • Madrid

Presencial
EUR 60.000 - 85.000
IT Risk & Compliance Associate
IT Risk & Compliance Associate

Getnet • Boadilla del Monte

Presencial
EUR 65.000 - 90.000
Information Security Grc Analyst - Verisure
Information Security Grc Analyst - Verisure

Verisure • Madrid

Presencial
EUR 60.000 - 90.000
Senior It Risk Officer - Barcelona
Senior It Risk Officer - Barcelona

Eurofins • Barcelona

Presencial
EUR 70.000 - 110.000
Remote Information Security Manager — AWS, ISO 27001, SOC 2
Remote Information Security Manager — AWS, ISO 27001, SOC 2

Sovendus GmbH • Barcelona

Presencial
EUR 60.000 - 90.000
Remote work
Workation
External training
+1
Remote Cyber Security Governance Specialist
Remote Cyber Security Governance Specialist

Helloprima • Madrid

Híbrido
EUR 45.000 - 65.000
Private healthcare
Gym discounts
Wellbeing programs
+1
IT Risk & Cyber Compliance Associate — Elevate Security
IT Risk & Cyber Compliance Associate — Elevate Security

Getnet • Madrid

Presencial
EUR 60.000 - 85.000
Global GRC Project Manager – Cybersecurity & Compliance
Global GRC Project Manager – Cybersecurity & Compliance

Drees & Sommer • España

Presencial
EUR 55.000 - 75.000
Mobile working
Training & development
Private health insurance
+4
Especialista PCI DSS, DORA y GRC | Seguridad Cibernética
Especialista PCI DSS, DORA y GRC | Seguridad Cibernética

IndraMind Cybersecurity • España

Presencial
EUR 60.000 - 90.000
Estabilidad y futuro
Proyectos innovadores
Ambiente colaborativo
+5