06 ago
|
Amaris Consulting
|
Barcelona
06 ago
Amaris Consulting
Barcelona
Who are we?
Amaris Consulting is an independent technology consulting firm providing guidance and solutions to businesses worldwide. With more than 1,000 clients globally, we have been delivering impactful solutions across major projects for over a decade, supported by an international team of more than 7,600 professionals across 5 continents and 60+ countries.
Our expertise spans four key Business Lines: Information System & Digital, Telecom, Life Sciences, and Engineering. At Amaris Consulting, we are committed to building and nurturing a strong talent community where every team member can develop their skills, embrace new challenges, and achieve their full potential.
Joining Amaris means becoming part of an international environment where innovation, collaboration, and professional growth are at the heart of everything we do.
As a Security Program Director , you will join our team in Barcelona to lead and oversee a company-wide cybersecurity program within an international environment.
You will be responsible for defining the cybersecurity strategy, establishing security governance frameworks, managing complex security initiatives, and ensuring the protection of critical assets across multiple business units and geographies.
You will act as a strategic partner for executive stakeholders, translating cybersecurity risks, security metrics, and compliance requirements into business-oriented insights. You will drive security transformation initiatives, oversee operational security activities, and ensure alignment with international regulations and industry standards.
Your missions
- Define, implement, and oversee a comprehensive cybersecurity program aligned with business objectives
- Establish security governance frameworks, policies, processes, and operating models
- Lead cybersecurity initiatives across multiple business units, regions, and regulatory environments
- Manage relationships with executive stakeholders,
business leaders, technical teams, and external auditors
- Present security strategy, risk assessments, KPIs, and program status to senior leadership
- Ensure compliance with international security standards and regulations, including GDPR, DORA, ISO 27001, and SOC 2 requirements
- Oversee operational IT security domains, including infrastructure security, endpoint protection, access management, and security monitoring
- Drive incident response and crisis management activities, including coordination during major security incidents
- Support the continuous improvement of security capabilities, processes, and organizational maturity
- Manage security risks, vulnerabilities, and improvement initiatives through effective monitoring and reporting
- Promote security awareness and adoption of cybersecurity practices across the organization
Your profile
- Minimum 15 years of experience in cybersecurity, information security, or related fields
- At least 7-10 years of experience in leadership or director-level cybersecurity positions
- Proven experience managing enterprise-wide security programs across multiple business units and international environments
- Strong experience with cybersecurity governance, risk management, compliance, and audit programs
- Experience presenting security strategies, risks, and assessments to C-level stakeholders, executives, and external auditors
- Strong knowledge of cybersecurity frameworks and standards such as NIST CSF, ISO 27001/27002, CIS Controls, and COBIT
- Good understanding of security technologies including SIEM, EDR, vulnerability management, IAM, and DLP solutions
- Knowledge of network and infrastructure security principles, including firewalls, IDS/IPS, VPNs, and Zero Trust architectures
- Experience with application security and secure software development lifecycle (SDLC) practices
- Expertise in data protection, privacy principles, encryption, and data classification
- Experience defining security metrics, KPIs, and reporting models to measure program effectiveness
- Knowledge of cloud security architectures, especially Azure and AWS environments
- Experience with threat intelligence, risk assessments, vulnerability management, and threat modelling
- Strong leadership, communication, and stakeholder management skills
- Ability to operate effectively in international and multicultural environments
- Fluent English is mandatory
What we offer
- An international community bringing together more than 110 nationalities
- A collaborative environment where trust and autonomy are key values
- A strong learning culture supported by our internal Academy, with more than 250 training modules available
- A dynamic workplace with regular internal events, team-building activities, and opportunities to connect with colleagues
- The opportunity to work on challenging international projects with leading organizations across different industries
- A company culture focused on sustainability, innovation, and positive impact through our ESG initiatives
Amaris Consulting is proud to be an equal-opportunity employer. We are committed to fostering diversity and inclusion within our teams and welcome applications from all qualified candidates regardless of gender, sexual orientation, race, ethnicity, beliefs, age, marital status, disability, or any other characteristic protected by law.
📌 Security Program Manager (Barcelona)
🏢 Amaris Consulting
📍 Barcelona