yandex
feverup
Страна
Испания
+500% приглашений

Откликайтесь
на вакансии с ИИ

Ускорим процесс поиска работы
ГибридПолная занятость

Information Security, Risk & Compliance Manager

Оценка ИИ

Привлекательная позиция в международной компании-единороге с сильным брендом. Предлагается отличный пакет бенефитов, включая релокацию и гибкий график, а также возможность реально влиять на безопасность глобального продукта.


Вакансия из Quick Offer Global, списка международных компаний
Пожаловаться

Сложность вакансии

ЛегкоСложно
Оценка ИИ

Роль требует глубоких знаний в области комплаенса (ISO 27001, ENS) и опыта управления рисками в облачных средах. Высокая планка ответственности за аудит и работу с вендорами в быстрорастущей компании повышает сложность.

Анализ зарплаты

Медиана65 000 €
Рынок50 000 € – 80 000 €
Оценка ИИ

Зарплата в вакансии не указана, но для позиции уровня Manager в сфере кибербезопасности в Мадриде рыночный диапазон составляет от 55 000 до 75 000 евро в год. Fever позиционирует пакет как 'привлекательный' с бонусами, что обычно соответствует верхней границе рынка для талантливых специалистов.

Сопроводительное письмо

I am writing to express my strong interest in the Information Security, Risk & Compliance Manager position at Fever. With over 4 years of experience in GRC and a deep understanding of ISO 27001 and NIST frameworks, I am confident in my ability to strengthen Fever's security posture and manage the compliance roadmap effectively. My background in conducting risk assessments and managing third-party vendor reviews aligns perfectly with the responsibilities outlined for this role.

Throughout my career, I have successfully led projects to maintain key security certifications and have worked closely with cross-functional teams to integrate security policies into fast-paced environments. I am particularly impressed by Fever's data-driven approach to democratizing culture and would welcome the opportunity to apply my analytical skills and technical expertise to support your mission. I am eager to bring my hands-on mindset to your international team in Madrid and contribute to the continued success of your global platform.

+250% к просмотрам

Составьте идеальное письмо к вакансии с ИИ-агентом

Составьте идеальное письмо к вакансии с ИИ-агентом

Откликнитесь в feverup уже сейчас

Присоединяйтесь к Fever и станьте ключевым звеном в обеспечении безопасности ведущей мировой платформы развлечений!

Описание вакансии

Hey there!

We’re Fever, the world’s leading tech platform for culture and live entertainment,

Our mission? To democratize access to culture and entertainment. With our proprietary cutting-edge technology and data-driven approach, we’re revolutionizing the way people engage with live entertainment.

Every month, our platform inspires over 300 million people in +40 countries (and counting) to discover unforgettable experiences while also empowering event creators with our data and technology, helping them scale, innovate, and enhance their events to reach new audiences.

Our results? We’ve teamed up with major industry leaders like Netflix, F.C. Barcelona, and Primavera Sound, presented international award-winning experiences, and are backed by several leading global investors! Impressive, right?

To achieve our mission, we are looking for bar-raisers with a hands-on mindset who are eager to help shape the future of entertainment!

Ready to be part of the experience?

Now, let’s discuss this role and what you will do to help achieve Fever’s mission.

About the role:

The Information Security, Risk & Compliance Specialist will play a key role in developing and executing the information security and cybersecurity compliance roadmap, focusing on maintaining key certifications such as ISO 27001, ENS, among others and driving the company’s commitment to achieving the highest security standards.

The successful candidate will work closely with internal teams to review and maintain information security policies, conduct risk assessments, ensure alignment with governance frameworks and to manage and respond to security questionnaires. Furthermore, it will assist in preparing for external audits and actively work to strengthen the organization's security posture by identifying areas for compliance improvement. The position requires a solid understanding of security frameworks, governance processes, and risk management to ensure the organization's certifications and policies remain up to date.

Join us if you thrive in a fast-paced environment and are excited about pushing the boundaries of what's possible. This is an opportunity to have a real impact in a high-growth global category leader.

What would you do at Fever?

On your first month in Fever:

  • You will be fully integrated into the team. You will participate in planning and follow-up meetings with other areas.
  • You will have met the departments of Fever.
  • You will get familiar with Fever's technological structure and ecosystem (applications, infrastructure, architecture, etc.)
  • You will get familiar with Fever’s Information Security and Cyber Security Programme, GRC tools and documentation.

After 3 months in Fever:

  • You will participate in the review and development of the documentation framework and standards.
  • You will start collaborating with various internal teams in the preparation and response to security questionnaires and/or requirements.
  • You will perform due diligence reviews on third-party vendors and service providers to evaluate their cybersecurity posture.
  • You will start participating in the risk management process for information security and cybersecurity risks.

On your 6th month in Fever:

  • You will develop a solid understanding of the information security and cybersecurity program, including its standards, governance structure and risk management methodology.
  • You will manage processes related to security questionnaires and requirements coordinating with both internal and external stakeholders.
  • You will manage the cybersecurity review process for third-party vendors.
  • You will have full visibility into the compliance roadmap and actively participate in achieving its objectives.

Qualifications:

Must have:

  • Bachelor or Master’s Degree in Computer Science, Information Security, Risk Management or another similar relevant degree (or equivalent experience in an GRC Security role).
  • 4+ years of relevant experience on Information Security, Governance, Risk and Compliance projects, managing or owning the execution of the projects.
  • Strong understanding of security frameworks and standards, such as ISO 27001, NIST, SOC2, or similar.
  • Strong understanding of Cloud environments.
  • Proven experience in conducting security assessments, risk assessments and security vendors review.
  • Analytical skills, autonomy and accountability.
  • Fluent in english.
  • Excellent communication skills.

It would be a plus if you have:

  • Relevant technical and industry certifications are a plus (e.g. CISA, CISM, ISO 27001 Lead Implementer/Auditor, CISSP, CRISC, etc).
  • Familiarity with cybersecurity tools and technologies (e.g., vulnerability assessment tools, incident response and alerting platforms, etc).

Benefits & Perks

  • Opportunity to have a real impact in a high-growth global category leader
  • 40% discount on all Fever events and experiences
  • Position based in Madrid, home office friendly.
  • Relocation package for international candidates
  • Responsibility from day one and professional and personal growth
  • Great work environment with a young, international team of talented people to work with!
  • Health insurance and other benefits such as Flexible remuneration with a 100% tax exemption through Cobee.
  • English Lessons
  • Gympass Membership
  • Possibility to receive in advance part of your salary by Payflow.
  • Attractive compensation package consisting of base salary and the potential to earn a significant bonus for top performance.

Thank you for considering joining Fever. We cannot wait to learn more about you!

If you want to learn more about us: Fever's Blog | Tech.Eu |TechCrunch

Fever is committed to creating an inclusive and diverse workspace where everyone's background and ideas count. Our main goal is to find the best possible talent regardless of place of birth, racial or ethnic origin, gender, gender identity, religion, opinion, sexual orientation, disability, pregnancy, marital status, age or caring responsibilities. We encourage everyone to apply!

If you require any kind of accommodation during the selection process please contact our Talent team so we can help you by providing a welcoming and seamless journey.

If you want to know more about how Fever processes your personal data, click here Fever - Candidate Privacy Notice

+400% к собеседованиям

Создайте идеальное резюме с помощью ИИ-агента

Создайте идеальное резюме с помощью ИИ-агента

Навыки

  • ISO 27001
  • NIST
  • SOC2
  • Cloud Security
  • Risk Management
  • Compliance
  • Information Security
  • CISA
  • CISM
  • CISSP
  • Vulnerability Assessment

Возможные вопросы на собеседовании

Проверка практического опыта внедрения стандартов, указанных в вакансии.

Опишите ваш опыт подготовки организации к сертификации по стандарту ISO 27001: с какими основными трудностями вы столкнулись?

Важно понять, как кандидат оценивает риски в динамичной среде.

Как вы приоритизируете риски информационной безопасности в условиях быстрорастущего технологического стека?

Вакансия предполагает работу с внешними контрагентами.

Каков ваш процесс проведения due diligence для сторонних облачных провайдеров? На какие метрики вы обращаете внимание в первую очередь?

Проверка навыков взаимодействия с техническими командами.

Как вы убеждаете команду разработки внедрять контроли безопасности, которые могут замедлить процесс выпуска продукта?

Оценка способности кандидата реагировать на инциденты с точки зрения комплаенса.

Какова роль GRC-менеджера в процессе реагирования на инциденты информационной безопасности?

Похожие вакансии

Атом Безопасность
200 000 ₽ – 400 000 ₽

Application Security Еngineer (AppSec)

УдалённоРоссия
C++ · Rust · JavaScript · Python · TypeScript · SAST · DAST · SCA · ASOC · CI/CD · GitLab CI · Docker · Fuzzing · Threat Modeling
+14 навыков
NDA
Не указана

Head of SOC (Центр мониторинга кибербезопасности)

HeadВ офисеКыргызстан
SoC · SIEM · Incident Response · Cybersecurity Strategy · Security Architecture · Team Management
+6 навыков
HaaS Platform
от 400 000 ₽

Pentester (Offensive Security)

SeniorУдалённоРоссия
Pentesting · Linux · Python · Bash · Burp Suite · NMAP · OWASP Top 10 · Network Security · Red Team · Vulnerability Assessment · Go · JavaScript · C++
+13 навыков
СберАвто
200 000 ₽ – 350 000 ₽

Специалист по информационной безопасности

SeniorУдалённоРоссия
Fortinet · Palo Alto Networks · Check Point · ELK stack · Splunk · Cisco Prime · MaxPatrol · ArcSight · SolarWinds · VPN · PKI · OSPF · EIGRP · BGP · Kaspersky Security Center · Cortex XDR · Solar Dozor · Ansible · Terraform · Vulnerability Management · Patch Management
+21 навыков
Крупная международная ИТ компания
Не указана

Solution Sales Consultant (Cybersecurity)

В офисеУзбекистан
Cybersecurity · Solution Sales · Discovery Sessions · Business Analysis · English · Russian · Uzbek
+7 навыков
СберАвто
Не указана

Application security specialist

SeniorУдалённоРоссия
SAST · DAST · IAST · RASP · SCA · WAF · SSDLC · DevSecOps · OWASP · Linux · Python · Go · Threat Modeling
+13 навыков
более 1000 офферов получено
4.9

1000+ офферов получено

Устали искать работу? Мы найдём её за вас

Quick Offer улучшит ваше резюме, подберёт лучшие вакансии и откликнется за вас. Результат — в 3 раза больше приглашений на собеседования и никакой рутины!

feverup
Страна
Испания