Interim Cyber Security Portfolio Manager
hace 21 horas
Barcelona
Role Overview The Interim Cyber Security Portfolio Manager will lead, structure, and execute a complex portfolio of cyber security programmes across the organisation. Acting as the central point of coordination, this role ensures initiatives are strategically aligned, well‑governed, and delivered on time to strengthen the company’s overall security posture during a period of transformation and elevated threat landscape. The ideal candidate brings deep cybersecurity delivery experience, strong programme/portfolio governance capabilities, and the ability to operate in fast‑paced, international tech environments. Reports to: Chief Information Security Officer (CISO) 100-110 Euro per hour Key Responsibilities • Oversee and manage the full cyber security project portfolio covering infrastructure security, application security, identity & access management (IAM), cloud hardening, and regulatory compliance., • Establish and maintain portfolio governance frameworks, reporting structures, RAID logs, KPIs, and resource planning., • Prioritise initiatives based on business impact, risk exposure, and strategic objectives., • Ensure stakeholders have clear visibility on progress, risks, budget usage, and blockers., • Lead delivery of major cybersecurity initiatives such as Zero Trust adoption, SOC enhancements, vulnerability management uplift, penetration testing cycles, and security tool upgrades., • Drive cross-functional coordination with engineering, IT operations, data, DevSecOps, product teams, and external vendors., • Ensure programmes adhere to security standards (ISO 27001, NIST CSF, CIS Controls, GDPR, etc.)., • Remove execution barriers and mentor project teams to maintain delivery velocity., • Support ongoing risk assessments, audits, and remediation plans., • Ensure policies, controls, and documentation are updated, communicated, and embedded across the organisation., • Translate complex cyber risks into clear business language for leadership and board-level audiences., • Partner closely with the CISO and senior leadership to shape the security roadmap., • Provide regular briefings and portfolio updates to executives and key business stakeholders., • Manage third‑party vendors, consultancies, and MSSPs as required. Required Experience & Skills • Strong understanding of cyber security domains: cloud security (AWS/Azure/GCP), data protection, IAM, network security, endpoint security, and security architecture., • Experience overseeing portfolios of across multiple workstreams., • Solid grasp of security frameworks and regulatory requirements (ISO 27001, NIST, GDPR, SOC2)., • Programme & Portfolio Expertise, • Proven track record in cyber portfolio or transformation programme management within a tech environment., • Expertise in PMO disciplines, including governance, budgeting, resource allocation, and vendor management.