
Posted 22 days ago
IT Risk and Compliance Specialist
IberdrolaESPECIALISTA EN RIESGOS Y CUMPLIMIENTO IT
Perks & benefits
Health InsurancePaid LeaveRelocation Allowance
Requirements
Degree in Computer Engineering or Telecommunications, 6 years of similar experience, Expertise in Risk Analysis and Management, Knowledge of ISO 2700x, NIST, and SANS20, Expertise in ISO 9001, ITIL, and CMMI, Expertise in GDPR and LOPD, Expertise in Archer GRC, English B2-C1 level
Skills
risk managementISO 27001GDPRISO 9001ITIL
About the role
Responsibilities
- Elaborate control framework proposals to meet various regulatory requirements and new regulations
- Lead the creation, maintenance, and governance of the IT control catalog (ITGCs)
- Assist technical teams in implementing ITGCs and evaluating them, including defining remediation plans for deficiencies
- Define and implement the IT Quality Management System (QMS) to maintain ISO-9001 certification
- Manage and maintain the IT Process Map in collaboration with IT sponsors, owners, and process managers
- Monitor the status, compliance level, and performance of internal IT processes
- Define, maintain, and evaluate IT Risk methodologies, ensuring alignment across different countries and corporate risk methodologies
- Lead the IT risk identification process, maintaining the risk register and proposing action plans
- Participate in defining requirements and implementing tools for risk management and action plan tracking
- Identify compliance obligations and translate them into system requirements, defining periodic evaluation processes
Requirements
- Degree in Computer Engineering, Telecommunications Engineering, or a similar field
- Approximately 6 years of experience in a similar IT risk and compliance role
- Expert knowledge in Risk Analysis and Management
- Proficiency in standards and methodologies including ISO 2700x, NIST CSF, NIST 800, and SANS20
- Expert knowledge of quality standards such as ISO 9001, ITIL, and CMMI
- Expert knowledge of data protection regulations including GDPR and LOPD
- Extensive experience using Archer GRC tools
- Strong technical knowledge of infrastructure, cloud environments, security tools, and development
- English proficiency at a B2-C1 level
- Certifications such as CISA, CISM, CISR, CGEIT, or ISO Lead Auditor are highly valued
Benefits
- Competitive salary and social benefits
- Work-life balance measures including flexible entry and exit times
- Opportunity to work in a dynamic, highly qualified, and international team
- Comprehensive welcome program to learn about the company's global operations
- Continuous training opportunities through the Iberdrola Campus
About the Company
Iberdrola is a global energy leader, the world's largest wind producer, and one of the largest electric companies by market capitalization. The group supplies energy to nearly 100 million people across dozens of countries, including Spain, the United Kingdom, the United States, Brazil, Germany, Portugal, Italy, and France. Iberdrola leads the energy transition toward a sustainable model through investments in renewable energy, smart grids, and large-scale energy storage.
ScoutJobs Agent
Get matches like this delivered daily
Sign up free — we'll pull jobs that fit your CV from across the web and rank them for you.
Get started — it's freeIT Risk and Compliance Specialist
Iberdrola · Madrid
