Security Risk Management Specialist

Lever, Inc.

Spain (TX)

On-site

EUR 60,000 - 90,000

Full time

3 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Remote-first
Learning budget
Travel opportunities
Annual review
Employee assistance
Paid leave
Global team sprints
Bonus potential

Job summary

Lever, Inc. is seeking a Security Risk Management Specialist based in Spain to shape risk standards and practices across a technology-driven environment.

You will combine industry methodologies with threat intelligence to model risk and influence engineering decisions, learning initiatives, and resilience across the organisation. You will collaborate with security leadership and teams to translate risk analyses into actionable business actions, develop indicators, and promote Secure Development

Qualifications

  • Bachelor's degree or equivalent discipline.
  • Strong knowledge of risk management frameworks and methodologies.
  • Experience with security risk assessments and threat modelling.
  • Ability to translate risk analyses into business actions.
  • Excellent written and verbal English.

Responsibilities

  • Define and improve security risk standards and playbooks.
  • Lead quantified security risk assessments using FAIR and other models.
  • Translate risk analyses into actionable business recommendations.
  • Collaborate with security leadership and engineering teams.
  • Develop risk indicators and governance materials.

Skills

Security risk management
Threat modelling
Quantitative analysis
Stakeholder influence
English proficiency

Education

Bachelor’s degree in Computer Science, STEM, or related field

Job description

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Security Risk Management Specialist based in Spain.

Join a global security risk management function focused on strengthening how organisations identify, quantify, assess, and reduce cyber risk. In this role, you will help shape security risk standards, frameworks, and practices across a complex, technology-driven environment. You will combine established industry methodologies with emerging threat intelligence and innovative approaches to risk modelling. Your work will influence security decisions, engineering practices, learning initiatives, and organisational resilience. You will collaborate closely with security leadership and teams across the organisation to turn risk analysis into actionable business decisions. The role also offers opportunities to contribute to the wider open source security ecosystem through knowledge sharing, industry engagement, and thought leadership.

Accountabilities:
  • Define and continuously improve security risk management standards, frameworks, playbooks, and operating practices.
  • Analyse existing security risk processes and identify opportunities to improve their effectiveness, consistency, and scalability.
  • Evaluate, select, and implement new security requirements, tools, methodologies, and risk management practices.
  • Lead quantified security risk assessments and apply statistical approaches such as FAIR, sensitivity analysis, and other risk modelling techniques.
  • Translate internal and external cybersecurity risk analyses into clear business terms and recommend appropriate courses of action.
  • Develop key risk indicators, control indicators, and performance indicators to measure security programs and capabilities.
  • Partner with security leadership to communicate risk insights, influence decisions, and drive organisational change.
  • Develop templates, guidance, and self-service materials that enable teams to manage security risks effectively.
  • Launch and support security assessment initiatives designed to identify and mitigate risks across the organisation.
  • Monitor risk management activities and continuously identify opportunities to strengthen processes and outcomes.
  • Contribute to security learning and development initiatives, including training materials, playbooks, and educational resources.
  • Collaborate with engineering and security teams to promote Secure Development Lifecycle and Security by Design practices.
  • Help grow security risk management thought leadership through industry engagement, presentations, knowledge sharing, and participation in relevant governance forums.
Requirements
  • Bachelor’s degree in Computer Science, STEM, or a related discipline, or a compelling alternative career and professional background.
  • Strong academic track record combined with a demonstrated drive to achieve high standards.
  • Professional experience in security risk management, security assessments, threat modelling, or a closely related field.
  • Strong knowledge of security risk management frameworks and methodologies, including experience applying quantitative and qualitative risk analysis.
  • Practical understanding of how to operationalise security risk management across technical and organisational environments.
  • Experience with Secure Development Lifecycle and Security by Design methodologies.
  • Strong technical understanding of cybersecurity assessments, risk analysis, and security controls.
  • Experience interpreting complex security and risk information and translating it into practical business recommendations.
  • Leadership and management capabilities, with the ability to influence stakeholders and drive improvements across teams.
  • Excellent written and verbal business English, with strong presentation and communication skills.
  • Strong analytical and problem-solving abilities, with a structured and detail-oriented approach to complex challenges.
  • Personal motivation to work at the forefront of technology security and continuously develop knowledge of emerging practices and threats.
  • A proactive mindset, demonstrated initiative, and a track record of exceeding expectations.
Benefits
  • Compensation tailored to geographical location, experience, and performance.
  • Performance-driven annual bonus in addition to base compensation.
  • Distributed, remote-first working environment.
  • Twice-yearly in-person team sprints and opportunities to collaborate with colleagues around the world.
  • USD 2,000 annual personal learning and development budget.
  • Annual compensation review, with more frequent reviews for graduates and associates.
  • Recognition and performance rewards.
  • Annual holiday leave.
  • Maternity and paternity leave.
  • Employee Assistance Programme.
  • Opportunities to travel internationally and meet colleagues in different locations.
  • Priority Pass and travel upgrades for long-haul company events.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Information Security Risk Manager
Information Security Risk Manager

Bloomberg • New York (NY)

On-site
USD 160,000 - 215,000
Medical, dental, vision
401(k) match
Life insurance
+1
Security Analyst
Security Analyst

DigitalXForce Corporation • United States

On-site
USD 70,000 - 110,000
Security Operations Analyst (Cyber Defense Operations)
Security Operations Analyst (Cyber Defense Operations)

Pragmatike • United States

Hybrid
USD 53,000 - 84,000
Principal Information Security Manager - remote working within Germany
Principal Information Security Manager - remote working within Germany

Remotely • United States

Remote
USD 140,000 - 200,000
LTIP (Long Term Incentive Plan)
Hybrid work option
Annual flex work allowance
+4
Senior Risk Data Scientist - Remote Work | REF#303850
Senior Risk Data Scientist - Remote Work | REF#303850

BairesDev • United States

On-site
CLP 112,570,000 - 178,236,000
Remote work
USD pay option
Hardware provided
+3
Senior Risk Data Scientist - Remote Work | REF#302347
Senior Risk Data Scientist - Remote Work | REF#302347

BairesDev • United States

Remote
MXN 2,037,000 - 3,055,000
100% remote work
Competitive USD compensation
Flexible hours
+3
Security Analyst
Security Analyst

Sonsoft Inc • Marysville (OH)

On-site
USD 80,000 - 120,000
Cyber Security Risk Analyst
Cyber Security Risk Analyst

Euroclear • Town of Poland (NY)

On-site
USD 80,000 - 120,000
Senior Consultant, Built Environment and Infrastructure
Senior Consultant, Built Environment and Infrastructure

Control Risks • Georgia

Hybrid
USD 115,000 - 130,000
Hybrid work arrangements
Medical benefits
Prescription benefits
+4
Manager Security Compliance and Risk Management
Manager Security Compliance and Risk Management

LexisNexis • Raleigh (NC)

On-site
USD 118,000 - 220,000