Information Security Officer

4 Months ago • All levels • Cyber Security

Job Summary

Job Description

Mimacom-Flowable Group seeks an Information Security Officer with expertise in ISO 27001, SOC2, TISAX, and security incident management to lead and enhance the security awareness program, manage security incidents, and implement security standards & frameworks.
Must have:
  • ISO 27001
  • Security Incident
  • Risk Management
  • Business Continuity
Good to have:
  • ISO 9001
  • GDPR Experience
  • Supplier Management
  • Security Assessments
Perks:
  • Flexible Working
  • Training Opportunities

Job Details

We are the Mimacom-Flowable Group. Our digital products enable businesses to achieve faster, simpler, and more impressive results. In banking, retail, manufacturing, healthcare, and other sectors. Our software solutions reach 50 million users - every day.

Behind each of our products is a brilliant group of people who share the same values and work together to create innovative solutions for real problems. As part of the Information Security Team in the company, you will be the co-owner and driver of multiple security standards and frameworks, such as ISO27001, TISAX, ISAE3402 or SOC2 Type 2 and shape the IS strategy, projects and processes.

Join our team as Information Security Officer in Valencia and let's create something great together!

What you’ll be doing:

  • Develop and maintain a strategic, comprehensive and pragmatic enterprise information security system compliant with ISO-27001 and ISO-9001.
  • Proactively improve the risk management system and business continuity management at group level and help the business units in their implementations.
  • Identification and management of security incidents together with IT, legal and business departments, including not only short-term reactive and proactive measures but also strategic projects (incl. budget planning and responsibility).
  • Lead and enhance the security awareness program in the organization.
  • Support the business units in their inquiries, such as suppliers' security assessments and providing information on our security policies for customer requests or reviewing contracts and agreements from a security perspective.
  • Planning and realization of internal audits, as well as ensuring the smooth running of external audits to achieve certifications.

Here is an overview of the topics you will have accomplished in the first year:

After 3 months

  • You know the stakeholders in our organization and their role regarding information security (Legal, IT, HR, process owners, management, etc.)
  • You know the current implementation of ISO-27001 and 9001 in our organization and have an overview of their strengths and weaknesses.
  • You have a plan for improving the current Information Security system for achieving its excellence while at the same time making it easier to be followed by the different stakeholders.
  • You own and live the security incident process (and if there was any security incident, you coordinated its mitigation and resolution)

After 6 months

  • You have a defined plan to improve the security awareness in the organization through different measures (improved policies, trainings, etc.)
  • You have already focused on an area to be improved (e.g. risk management, BCM or supplier management) and conducted the needed enhancements.
  • You have been able to support the business units in their inquiries, either for their own processes or specifically answering questions coming from potential customers during an RFP.

After 12 months

  • You conducted internal audits as part of the continuous improvement and as preparation of the external audits.
  • We have defined, planned and worked on the action plans to address findings coming from our different certification processes: ISO, SOC2, TISAX, ISAE 3402.
  • You have contributed and planned the roadmap 2025 and beyond with the different initiatives to keep improving our Information Security system.

What you bring:

Are you an analytical problem solver who is motivated by learning and by working on practical and strategic topics? Can you build relationships with ease, influence stakeholders, set up guidelines and train users?

If this sounds like you, look at the role requirements below:

  • Experience in a similar role with information security framework and associated certification, incl. risk management, business continuity management, etc.
  • Experience in at least one of the IS certifications like ISO 27001, SOC2, Tisax is a must.
  • Experience in security incident management and process implementation.
  • IT security understanding and experience to power your work together with the IT department.
  • Good communication skills and not only experience reporting and consulting to C-levels but also influencing stakeholders in the whole organization.
  • Experience in ISO 9001 and GDPR experience is a plus.
  • English fluency is essential (at least C1 level)

What you can expect:

You will enjoy flexible working hours, training, and home-office possibilities. However, we think these are the most interesting advantages of working at Mimacom-Flowable:

  • Holidays & Flextime – You will enjoy 30 days of vacation. We understand that while you love your work, it’s just one part of a whole person. That’s why we allow you to work in a way that accommodates your lifestyle and other commitments.
  • Hybrid set-up – You’ll have the chance to work from home and from the office in the configuration that best suits your schedule.
  • Power role with high visibility and influence – Your ideas and experience will help us shape our information security system and awareness on all departments.
  •  Career growth – We are a young company where you will be given the room to develop yourself and learn new things intensively while the company grows.
  • Dynamic Team – You will be joining a core department within the company that prides itself on excellent team culture where you will get great results whilst having fun.

Similar Jobs

ByteDance - Content Designer - Global Payment

ByteDance

Singapore (On-Site)
3 Months ago
PTW - English LQA - Game Tester

PTW

Braga, Braga, Portugal (On-Site)
7 Months ago
Niantic - Computer Vision Software Engineer

Niantic

Seattle, Washington, United States (Hybrid)
4 Months ago
Fusie Engineers - Junior Naval Architect

Fusie Engineers

Kochi, Kerala, India (On-Site)
5 Months ago
PwC - Senior Experimentado - Application support analyst

PwC

Buenos Aires, Buenos Aires, Argentina (On-Site)
3 Months ago
PwC - Manager expérimenté / Directeur CTI  | CDI | H/F

PwC

Neuilly-sur-Seine, Île-de-France, France (On-Site)
4 Months ago
PwC - IT Associate - Jordan

PwC

Amman, Amman Governorate, Jordan (On-Site)
4 Months ago
PlayStation Global - Information Security Analyst-Security Awareness

PlayStation Global

Carlsbad, California, United States (On-Site)
3 Months ago
Devoteam - Telecom & Media | Vulnerability Analyst

Devoteam

(Remote)
3 Months ago
Google - Senior Security Engineer, Google Cloud

Google

Bengaluru, Karnataka, India (On-Site)
3 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

CD PROJEKT RED - Lead Mission Designer

CD PROJEKT RED

Boston, Massachusetts, United States (Hybrid)
4 Months ago
Warner Bros. Discovery - Software Engineering Intern – Summer 2025

Warner Bros. Discovery

Stockholm, Stockholm County, Sweden (On-Site)
2 Months ago
Token Metrics - Tech Lead - Crypto & AI (Hanoi-Remote)

Token Metrics

Hanoi, Hanoi, Vietnam (Remote)
3 Months ago
Postman - Senior Frontend Engineer, Flows

Postman

San Francisco, California, United States (On-Site)
3 Months ago
Autodesk - Chief of Staff

Autodesk

San Francisco, California, United States (On-Site)
4 Months ago
Cloudhire - Industry Head

Cloudhire

New York, New York, United States (On-Site)
3 Months ago
T-Minus Zero - Senior UI Designer (Contract)

T-Minus Zero

United States (Remote)
3 Months ago
Bristol Myers Squibb - Manager, GPS Global Technical Services IT Systems (Maximo)

Bristol Myers Squibb

Hyderabad, Telangana, India (On-Site)
3 Months ago
PwC - Assurance - External Audit Senior Associate - Jeddah

PwC

Jeddah, Makkah Province, Saudi Arabia (On-Site)
3 Months ago
undefined - Staff Software Developer - Embedded System Integration

Bengaluru, Karnataka, India (On-Site)
3 Months ago

Get notifed when new similar jobs are uploaded

Jobs in Valencia, Valencian Community, Spain

Voodoo - Senior Game Economy Designer - Match3 Games

Voodoo

Barcelona, Catalonia, Spain (Remote)
3 Months ago
31st Union - Associate Studio Director

31st Union

Valencia, Valencian Community, Spain (On-Site)
6 Months ago
Gaming Innovation Group  - Senior .NET Backend Developer

Gaming Innovation Group

Andalusia, Spain (Hybrid)
4 Months ago
PwC - Asistente B

PwC

Santiago De Compostela, Spain (On-Site)
4 Months ago
Stream Hatchet - Senior Data Engineer

Stream Hatchet

Barcelona, Catalonia, Spain (Hybrid)
4 Months ago
Localsoft, S.L. - Game Tester: Brazilian Portuguese

Localsoft, S.L.

Málaga, Andalusia, Spain (On-Site)
3 Months ago
Larian Studios - Engine Programmer

Larian Studios

Barcelona, Catalonia, Spain (On-Site)
4 Months ago
Mimacom - Business Analyst

Mimacom

Valencia, Valencian Community, Spain (On-Site)
4 Months ago
Localsoft, S.L. - Game Tester: Arabic

Localsoft, S.L.

Málaga, Andalusia, Spain (On-Site)
3 Months ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

Trellix - Sr. Solutions Engineer

Trellix

Montreal, Quebec, Canada (On-Site)
3 Months ago
Rockstar Games - Director, Security Operations

Rockstar Games

New York, New York, United States (On-Site)
4 Months ago
Vimeo - Sr. Application Security Engineer

Vimeo

Bengaluru, Karnataka, India (Remote)
4 Months ago
Palo Alto Networks - Principal Solutions Consultant-iGSI

Palo Alto Networks

Bengaluru, Karnataka, India (Remote)
3 Months ago
PwC - IN-Senior Associate_ S&G _IT Risk _Advisory_ Pune

PwC

Pune, Maharashtra, India (On-Site)
4 Months ago
Luxoft - Senior System Engineer (Desktop Security)

Luxoft

Warsaw, Masovian Voivodeship, Poland (On-Site)
2 Months ago
Axinous - Principal Software Engineer - Automation, Python

Axinous

Bengaluru, Karnataka, India (Hybrid)
3 Months ago
Rackspace - Security Risk and Compliance Management Specialist III

Rackspace

Aguascalientes, Aguascalientes, Mexico (Remote)
3 Months ago

Get notifed when new similar jobs are uploaded