Who are we?Amaris Consulting is an independent technology consulting firm providing guidance and solutions to businesses worldwide. ¿Quiere presentar una candidatura? Asegúrese de que su CV está actualizado y luego lea atentamente las siguientes especificaciones del puesto antes de solicitar. With more than 1,000 clients globally, we have been delivering impactful solutions across major projects for over a decade, supported by an international team of more than 7,600 professionals across 5 continents and 60+ countries.Our expertise spans four key Business Lines: Information System & Digital, Telecom, Life Sciences, and Engineering. At Amaris Consulting, we are committed to building and nurturing a strong talent community where every team member can develop their skills, embrace new challenges, and achieve their full potential.Joining Amaris means becoming part of an international environment where innovation, collaboration, and professional growth are at the heart of everything we do.Job DescriptionAs a Security Program Director, you will join our team in Barcelona to lead and oversee a company-wide cybersecurity program within an international environment.You will be responsible for defining the cybersecurity strategy, establishing security governance frameworks, managing complex security initiatives, and ensuring the protection of critical assets across multiple business units and geographies.You will act as a strategic partner for executive stakeholders, translating cybersecurity risks, security metrics, and compliance requirements into business-oriented insights. You will drive security transformation initiatives, oversee operational security activities, and ensure alignment with international regulations and industry standards.Your missionsDefine, implement, and oversee a comprehensive cybersecurity program aligned with business objectivesEstablish security governance frameworks, policies, processes,
and operating modelsLead cybersecurity initiatives across multiple business units, regions, and regulatory environmentsManage relationships with executive stakeholders, business leaders, technical teams, and external auditorsPresent security strategy, risk assessments, KPIs, and program status to senior leadershipEnsure compliance with international security standards and regulations, including GDPR, DORA, ISO 27001, and SOC 2 requirementsOversee operational IT security domains, including infrastructure security, endpoint protection, access management, and security monitoringDrive incident response and crisis management activities, including coordination during major security incidentsSupport the continuous improvement of security capabilities, processes, and organizational maturityManage security risks, vulnerabilities, and improvement initiatives through effective monitoring and reportingPromote security awareness and adoption of cybersecurity practices across the organizationYour profileMinimum 15 years of experience in cybersecurity, information security, or related fieldsAt least 7-10 years of experience in leadership or director-level cybersecurity positionsProven experience managing enterprise-wide security programs across multiple business units and international environmentsStrong experience with cybersecurity governance, risk management, compliance, and audit programsExperience presenting security strategies, risks, and assessments to C-level stakeholders, executives,
and external auditorsStrong knowledge of cybersecurity frameworks and standards such as NIST CSF, ISO 27001/27002, CIS Controls, and COBITGood understanding of security technologies including SIEM, EDR, vulnerability management, IAM, and DLP solutionsKnowledge of network and infrastructure security principles, including firewalls, IDS/IPS, VPNs, and Zero Trust architecturesExperience with application security and secure software development lifecycle (SDLC) practicesExpertise in data protection, privacy principles, encryption, and data classificationExperience defining security metrics, KPIs, and reporting models to measure program xqysrnh effectivenessKnowledge of cloud security architectures, especially Azure and AWS environmentsExperience with threat intelligence, risk assessments, vulnerability management, and threat modellingStrong leadership, communication, and stakeholder management skillsAbility to operate effectively in international and multicultural environmentsFluent English is mandatoryWhat we offerAn international community bringing together more than 110 nationalitiesA collaborative environment where trust and autonomy are key valuesA strong learning culture supported by our internal Academy, with more than 250 training modules availableA dynamic workplace with regular internal events, team-building activities, and opportunities to connect with colleaguesThe opportunity to work on challenging international projects with leading organizations across different industriesA company culture focused on sustainability, innovation, and positive impact through our ESG initiativesAmaris Consulting is proud to be an equal-opportunity employer. We are committed to fostering diversity and inclusion within our teams and welcome applications from all qualified candidates regardless of gender, sexual orientation, race, ethnicity, beliefs, age, marital status, disability, or any other characteristic protected by law.
📌 Security Program Manager (España)
🏢 Amaris
📍 España