IT Security Officer I&O
Location - Madrid (hybrid mode)
The Security Officer for Infrastructure & Operations (I&O) is responsible for ensuring information security and compliance across the Global Infrastructure & Operations (GIO) landscape. This role supports the development and execution of long-term security strategies, ensuring alignment with global standards, risk management practices, and regulatory requirements.
Key Responsibilities :
- Risk Management : Conduct risk assessments for new projects and tools, manage risk registers, and collaborate on global threat responses.
- Compliance : Support audits, evidence collection, and control process development in coordination with global GRC teams.
- Project & Change Support : Review and approve security aspects of changes, projects, and initiatives;
represent security in change advisory boards.
Security Operations (Protect, Detect, Respond) : Oversee patch management, backup, disaster recovery, malware protection, and network security configurations.Lead vulnerability management and coordinate threat hunting with third parties.
Manage security incidents, including major incidents and forensic investigations.
Job Dimensions :
Scope : Security and compliance for GIO services.Stakeholders : Internal IT teams, security operations centers, auditors, and external service providers.Candidate Profile :
Education : Bachelor’s in Computer Science / Engineering or related field;security certifications(e.G., CISSP, CISM, ISO 27001) preferred.
Experience : 10+ years in IT security, with expertise in risk management, audits, and security operations.Skills : Strong technical knowledge in infrastructure, cloud, and network security;project management;regulatory compliance (e.G., ISO 27001, GDPR).
Competencies : Strong communication, leadership, decision-making, and stakeholder management skills.Languages : Fluent in English;additional languages are a plus.
Specific expertise in one or more of the following would be a plus :
Cloud Security → CCSP / GCSANetwork Security → CND / CCNP / CCNA Security / CEHSystem / Infrastructure Security → CISSP / CISM / CISAIndustrial Technology (OT) Security → CDSE / GICSP / ISP / ISOC#J-18808-Ljbffr