Madrid
JOIN IBERIA TECH AS A CYBERSECURITY GRC SPECIALIST! Are you ready to take the next step in your career and help strengthen cybersecurity governance across a leading technology organization? Iberia Tech is looking for an experienced GRC Specialist to join our Cybersecurity team. If you have experience in cybersecurity governance, risk management, compliance, and audit activities, together with a strong analytical mindset and excellent stakeholder management skills, this is the perfect opportunity for you! What will you do in this exciting role? As a GRC Specialist, you will play a key role in supporting and coordinating cybersecurity governance, risk, and compliance activities across Iberia Tech. You will help ensure that cybersecurity risks, controls, and regulatory obligations are effectively monitored, documented, and managed, contributing to a strong and sustainable cybersecurity posture. Working closely with Cybersecurity, Technology, Risk, Compliance, Procurement, and business teams, you will support the implementation and continuous improvement of governance frameworks, risk management processes, audit activities, and third-party risk assessments. What you'll do day-to-day: • Support and coordinate cybersecurity compliance activities, internal audits, and control assessments, ensuring proper evidence management and follow-up of remediation actions., • Maintain and support the Cyber Risk Management process, including risk registers, risk reviews, treatment plans, and risk reporting., • Coordinate and monitor third-party cyber risk assessments, working with external service providers and internal stakeholders., • Support the maintenance and continuous improvement of cybersecurity policies, standards, controls, and exception management processes., • Prepare and validate governance, risk, compliance, and control reports for management and Group stakeholders., • Maintain information within GRC platforms and repositories, ensuring data quality, completeness, and traceability., • Monitor audit findings, remediation plans, and risk treatment activities, escalating overdue actions when necessary., • Collaborate with business, IT, cybersecurity, compliance, procurement, and leadership teams to support governance initiatives., • Identify opportunities to improve GRC processes, reporting, and automation capabilities., • Contribute to strengthening Iberia Tech's cybersecurity governance framework and compliance posture. What we’re looking for: • Bachelor's degree in Information Security, Computer Science, Risk Management, Business Administration, or a related field., • 3-5 years of experience in cybersecurity governance, risk management, compliance, audit, or related disciplines., • Experience working in regulated environments such as aviation, financial services, energy, telecommunications, or consulting., • Knowledge of cybersecurity risk management methodologies, frameworks, and standards., • Understanding of cybersecurity controls, compliance requirements, audit processes, and third-party risk management., • Familiarity with industry frameworks such as ISO 27005, or similar standards., • Strong analytical, problem-solving, and decision-making skills., • Excellent communication and stakeholder management abilities, with the confidence to interact across all organizational levels., • Ability to manage complex situations, negotiate risk treatment plans, and balance business and security requirements., • Professional level of English. What would be a plus: • Professional certifications such as Security+, CISA, CRISC, CGRC, ISO 27001 Lead Implementer/Auditor, or equivalent., • Previous experience in cybersecurity consulting firms or advisory environments., • Experience working with GRC tools and platforms., • Knowledge of regulatory and compliance requirements related to cybersecurity and information security., • Experience supporting third-party risk management and supplier security assessments. What We Offer at Iberia Tech: At Iberia Tech, we provide a dynamic and innovative work environment with opportunities for personal and professional growth. Here’s what you can expect when you join our team: • Innovation-driven culture: Be part of a forward-thinking company that is constantly evolving and pushing technological boundaries., • Training and development: Continuous learning opportunities to expand your skills and stay ahead in the industry., • Annual incentive (bonus): Performance-based bonus aligned with individual and company results., • Staff Travel: Exclusive travel benefits and discounts with Iberia., • Iberia Tech Flex: A flexible compensation package tailored to your lifestyle, offering ticket restaurant, transport and childcare benefits, together with the opportunity to voluntarily invest part of your gross salary in IAG shares through our All Employee Share Plan., • Hybrid working model: A flexible balance between office and remote work. In addition, you’ll benefit from a comprehensive package including private health insurance, life insurance, and a pension plan. Why join us? If you're looking for an exciting challenge where you can help manage cybersecurity risks, strengthen governance frameworks, influence key stakeholders, and contribute to the cybersecurity maturity of a leading organization, this role is for you. Apply now and take your career to the next level with Iberia Tech!