04 ago
|
Tamarind Intelligence
|
Madrid
04 ago
Tamarind Intelligence
Madrid
Responsibilities
- Information Security Framework (ISF) Management: Design, implement, and maintain the ISF: policies, standards, procedures, and control baselines, aligned to business needs, regulatory obligations (e.g. NIS2, GDPR), industry standards (e.g. NIST CSF, ISO 27001), and customer contractual requirements.
- Regulatory Integration & Control Framework Alignment: Maintain inventory and traceability of external obligations (e.g. NIS2, GDPR, ISO/IEC 27001, IEC 62443) and customer requirements, integrating these into the ISF components.
- Governance Operations & Executive Engagement: Oversee ISF governance processes, including stakeholder coordination, approval workflows, and documentation.
- Collaborate and support the GRC platform service owner to deliver technology required to enable digital implementation of the information security framework.
- Collaborate and support the Customer Security Assurance Service owner by delivering governance which supports the business to comply with customer security requirements.
- Governance Metrics & Reporting: Design key risk and performance indicators, dashboards and report on the governance product and services relevant for management at the Liebherr group, divisions and companies.
Qualifications
- Bachelor's/Master's in Cybersecurity, Computer Science, or related field.
- 5+ years of working experience in global organizations including Governance,
GRC technology and customer security assurance services delivery.
- Following certificates are preferred: CISSP, CRISC, CISM, GSLC.
- Excellent written and verbal communication skills in English, German is a plus.
- Proven expertise in designing and maintaining information security governance frameworks using industry standards (e.g. NIST CSF, ISO/IEC 27001, IEC 62443) and requirements in security regulations (e.g. NIS2, GDPR, Defense contracting).
- Ability to lead multi-stakeholder governance processes across integral business units.
- Experience in applying agile principles to the delivery and evolution of governance services.
- Experience in owning and evolving enterprise GRC platforms.
- Strategic thinking combined with a pragmatic execution mindset.
- Highly desirable: experience in product ownership and service delivery using SAFe (Scaled Agile Framework) or similar agile methodologies.
Benefits
- Competitive compensation and benefits package.
- Flexible and hybrid working model (Madrid, at least 40% on-site).
- Creative freedom and responsibility to shape processes and solutions.
- Continuous learning and development with tailored training and certification opportunities.
- Meal vouchers.
- Life and accident insurance.
- Option to include a premium private health insurance package. xqbhyrx
- A safe, stable and international workplace.
#J-18808-Ljbffr
📌 Information Security Governance Product Owner (m/f/d) (Madrid)
🏢 Tamarind Intelligence
📍 Madrid