Experteer Overview
In this role, you will own and operate the governance backbone of ALS's security programme, turning strategy into auditable policies, controls, and compliance artefacts. You will collaborate across the business to embed governance into everyday operations and support the security programme roadmap. The role focuses on policy development, control mapping to frameworks, and coordinating audits and certifications. You will act as a trusted governance partner for new initiatives and drive continuous improvement from incident reviews to remediation. This is a meaningful opportunity to shape scalable, risk-aware security governance in a global organization.
Compensaciones / Ventajas
• Develop and maintain information security policies, standards, and procedures aligned to ISO 27001 and other frameworks
• Manage the security governance calendar including policy reviews and management reviews
• Support design and evolution of the security strategy and multi-year programme roadmap
• Administer the end-to-end security exception/waiver process and track remediation
• Maintain the control framework catalogue with mapping to ISO 27001 Annex A, NIST CSF, and CIS Controls; flag gaps for risk assessment
• Coordinate internal and external audits and certification cycles (e.g., ISO 27001) and track remediation
• Map controls to regulatory/contractual obligations (GDPR, PCI-DSS, HIPAA)
• Maintain defensible audit trails for governance decisions and provide executive reporting
• Serve as a governance contact for business units on new initiatives and post-incident remediation inputs
• Support cross-functional initiatives such as data protection projects and security awareness
Responsabilidades
• experience in information security governance and policy management
• familiarity with ISO 27001 and other cybersecurity frameworks
• ability to coordinate audits and certification cycles
• ability to map controls to regulatory requirements (GDPR, PCI-DSS, HIPAA)
• strong stakeholder collaboration and reporting skills
• risk assessment awareness and ability to work with risk specialists
Requisitos principales
• safe, flexible and rewarding career
• programs and opportunities that help you build a diverse career
• equal opportunity employer
• reasonable adjustments available during recruitment
📌 Information Security Governance Specialist (Madrid)
🏢 ALS
📍 Madrid
Postulate a este anuncio
Muestra tus habilidades a la empresa, rellenar el formulario y deja un toque personal en la carta, ayudará el reclutador en la elección del candidato.