Barcelona
Overview As Freighotos Chief Information Security Officer, you will guard trust across the platform, products, and data while enabling innovation and growth. You’ll shape a comprehensive cybersecurity program spanning risk management, governance, and security operations. You’ll balance strong protection with business acceleration, driving security as a strategic enabler for a global trade platform. This hybrid leadership role offers influence from the board to on‑site cross‑functional partners in Barcelona. Responsabilidades • Develop and refine enterprise cybersecurity strategy, policies, and governance, • Lead the security program to protect information confidentiality, integrity, and availability, • Assess and manage cybersecurity risk with appropriate controls, • Oversee security operations: threat monitoring, vulnerability management, incident response, remediation, • Direct incident response, disaster recovery, and business continuity planning, • Maintain security architecture across cloud, network, endpoint, application, and data, • Ensure compliance with laws, regulations, and audits; support audits, • Develop security policies, awareness programs, and culture, • Advise executives and the Board on strategy, threats, and investments, • Lead and mentor the information security team; manage budgets and investments, • Oversee IAM, data protection, encryption, and privileged access controls, • Collaborate with SRE, IT, R&D, legal, and business leaders to embed security, • Manage third-party risk assessments with vendors, • Monitor threat landscape and elevate security maturity Requisitos principales, • Bachelor's degree in Information Security, Computer Science, Information Technology, Cybersecurity, or related field, • 10+ years of progressive information security experience, • 5+ years of leadership experience in security teams/programs, • Strong understanding of NIST CSF, ISO/IEC 27001, CIS Controls, COBIT, • Experience presenting security strategy to executives and Boards, • Cloud security experience (AWS and Google Cloud), • Experience managing security operations, incident response, vulnerability management, IAM, governance, • Strong risk management and regulatory compliance knowledge, • Excellent leadership, communication, and stakeholder management skills, • leadership, • communication, • stakeholder management, • cloud security (AWS, Google Cloud), • security operations, • incident response