04 ago
|
Tamarind Intelligence
|
Madrid
04 ago
Tamarind Intelligence
Madrid
ph3Responsibilities /h3ullibInformation Security Framework (ISF) Management: /b Design, implement, and maintain the ISF: policies, standards, procedures, and control baselines, aligned to business needs, regulatory obligations (e.g. NIS2, GDPR), industry standards (e.g. NIST CSF, ISO 27001), and customer contractual requirements. /lilibRegulatory Integration Control Framework Alignment: /b Maintain inventory and traceability of external obligations (e.g. NIS2, GDPR, ISO/IEC 27001, IEC 62443) and customer requirements, integrating these into the ISF components. /lilibGovernance Operations Executive Engagement: /b Oversee ISF governance processes, including stakeholder coordination, approval workflows, and documentation. /liliCollaborate and support the GRC platform service owner to deliver technology required to enable digital implementation of the information security framework. /liliCollaborate and support the Customer Security Assurance Service owner by delivering governance which supports the business to comply with customer security requirements. /lilibGovernance Metrics Reporting: /b Design key risk and performance indicators, dashboards and report on the governance product and services relevant for management at the Liebherr group, divisions and companies. /li /ulh3Qualifications /h3ulliBachelor's/Master's in Cybersecurity, Computer Science, or related field. /lili5+ years of working experience in global organizations including Governance,
GRC technology and customer security assurance services delivery. /liliFollowing certificates are preferred: CISSP, CRISC, CISM, GSLC. /liliExcellent written and verbal communication skills in English, German is a plus. /liliProven expertise in designing and maintaining information security governance frameworks using industry standards (e.g. NIST CSF, ISO/IEC 27001, IEC 62443) and requirements in security regulations (e.g. NIS2, GDPR, Defense contracting). /liliAbility to lead multi-stakeholder governance processes across general business units. /liliExperience in applying agile principles to the delivery and evolution of governance services. /liliExperience in owning and evolving enterprise GRC platforms. /liliStrategic thinking combined with a pragmatic execution mindset. /liliHighly desirable: experience in product ownership and service delivery using SAFe (Scaled Agile Framework) or similar agile methodologies. /li /ulh3Benefits /h3ulliCompetitive compensation and benefits package. /liliFlexible and hybrid working model (Madrid, at least 40% on-site). /liliCreative freedom and responsibility to shape processes and solutions. /liliContinuous learning and development with tailored training and certification opportunities. /liliMeal vouchers. /liliLife and accident insurance. /liliOption to include a premium private health insurance package. /liliA safe, stable and international workplace. /li /ul /p #J-18808-Ljbffr
📌 Information Security Governance Product Owner (m/f/d) (Madrid)
🏢 Tamarind Intelligence
📍 Madrid