TL;DR
Information Security Manager: Leading security audits, risk assessments, and control design for internal systems and processes with an accent on compliance with ISO27001, PCI DSS, and GDPR. Focus on designing security requirements, risk mitigation, and integrating controls across engineering and product teams in an on-site role.
Location: On-site in Valencia, Spain with relocation assistance
Company
hirify.global is a global product company delivering tech solutions across Fintech, iGaming, and Marketing with offices in multiple European countries.
What you will do
- Conduct internal security audits and review technical and organizational controls.
- Define and validate security requirements for systems and business processes.
- Perform risk assessments and maintain the Risk Register aligned with ISO27001/27701 and other frameworks.
- Support audit readiness for ISO 27001, PCI DSS, and other certifications.
- Analyze data protection strategies including encryption, masking, and access control.
- Contribute to security awareness initiatives and collaborate on secure-by-design practices.
Requirements
- Must have 3+ years experience in information security, internal audit, or GRC roles.
- Strong knowledge of ISO 27001/27701, PCI DSS, GDPR, and security frameworks.
- Experience with risk mitigation planning and maintaining Risk Registers.
- Understanding of modern access management approaches such as RBAC, JIT access, and Zero Trust.
- Strong analytical, documentation, and communication skills.
- English proficiency at least B2 level.
Nice to have
- Experience supporting external certification audits.
- Relevant certifications like ISO 27001 Lead Auditor, CISA, CRISC, CISSP, or CompTIA Security+.
- Experience working with SOC teams and log/alert management systems.
Culture & Benefits
- Learning and development opportunities with challenging tasks.
- Partial compensation for Spanish language classes.
- Relocation package for candidates outside Spain.
- Global health insurance coverage.
- 23 working days annual vacation plus 6 paid sick days.
- Competitive remuneration with annual review and team-building activities.
Будьте осторожны: если вас просят войти в iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →