Information Security Officer

9 Months ago • All levels • Cyber Security

Job Summary

Job Description

Mimacom-Flowable Group seeks an Information Security Officer in Valencia to develop and maintain a robust security system compliant with ISO-27001 and ISO-9001. You'll lead security incident management, risk management, business continuity management, and security awareness programs. Must-have experience in ISO 27001, SOC2, and security incident management.
Must have:
  • ISO 27001
  • SOC2
  • Security Incident
  • Risk Management
Good to have:
  • ISO 9001
  • GDPR
  • Supplier Management
  • Business Continuity
Perks:
  • Flexible Hours
  • Home Office

Job Details

We are the Mimacom-Flowable Group. Our digital products enable businesses to achieve faster, simpler, and more impressive results. In banking, retail, manufacturing, healthcare, and other sectors. Our software solutions reach 50 million users - every day.

Behind each of our products is a brilliant group of people who share the same values and work together to create innovative solutions for real problems. As part of the Information Security Team in the company, you will be the co-owner and driver of multiple security standards and frameworks, such as ISO27001, TISAX, ISAE3402 or SOC2 Type 2 and shape the IS strategy, projects and processes.

Join our team as Information Security Officer in Valencia and let's create something great together!

What you’ll be doing:

  • Develop and maintain a strategic, comprehensive and pragmatic enterprise information security system compliant with ISO-27001 and ISO-9001.
  • Proactively improve the risk management system and business continuity management at group level and help the business units in their implementations.
  • Identification and management of security incidents together with IT, legal and business departments, including not only short-term reactive and proactive measures but also strategic projects (incl. budget planning and responsibility).
  • Lead and enhance the security awareness program in the organization.
  • Support the business units in their inquiries, such as suppliers' security assessments and providing information on our security policies for customer requests or reviewing contracts and agreements from a security perspective.
  • Planning and realization of internal audits, as well as ensuring the smooth running of external audits to achieve certifications.

Here is an overview of the topics you will have accomplished in the first year:

After 3 months

  • You know the stakeholders in our organization and their role regarding information security (Legal, IT, HR, process owners, management, etc.)
  • You know the current implementation of ISO-27001 and 9001 in our organization and have an overview of their strengths and weaknesses.
  • You have a plan for improving the current Information Security system for achieving its excellence while at the same time making it easier to be followed by the different stakeholders.
  • You own and live the security incident process (and if there was any security incident, you coordinated its mitigation and resolution)

After 6 months

  • You have a defined plan to improve the security awareness in the organization through different measures (improved policies, trainings, etc.)
  • You have already focused on an area to be improved (e.g. risk management, BCM or supplier management) and conducted the needed enhancements.
  • You have been able to support the business units in their inquiries, either for their own processes or specifically answering questions coming from potential customers during an RFP.

After 12 months

  • You conducted internal audits as part of the continuous improvement and as preparation of the external audits.
  • We have defined, planned and worked on the action plans to address findings coming from our different certification processes: ISO, SOC2, TISAX, ISAE 3402.
  • You have contributed and planned the roadmap 2025 and beyond with the different initiatives to keep improving our Information Security system.

What you bring:

Are you an analytical problem solver who is motivated by learning and by working on practical and strategic topics? Can you build relationships with ease, influence stakeholders, set up guidelines and train users?

If this sounds like you, look at the role requirements below:

  • Experience in a similar role with information security framework and associated certification, incl. risk management, business continuity management, etc.
  • Experience in at least one of the IS certifications like ISO 27001, SOC2, Tisax is a must.
  • Experience in security incident management and process implementation.
  • IT security understanding and experience to power your work together with the IT department.
  • Good communication skills and not only experience reporting and consulting to C-levels but also influencing stakeholders in the whole organization.
  • Experience in ISO 9001 and GDPR experience is a plus.
  • English fluency is essential (at least C1 level)

What you can expect:

You will enjoy flexible working hours, training, and home-office possibilities. However, we think these are the most interesting advantages of working at Mimacom-Flowable:

  • Holidays & Flextime – You will enjoy 30 days of vacation. We understand that while you love your work, it’s just one part of a whole person. That’s why we allow you to work in a way that accommodates your lifestyle and other commitments.
  • Hybrid set-up – You’ll have the chance to work from home and from the office in the configuration that best suits your schedule.
  • Power role with high visibility and influence – Your ideas and experience will help us shape our information security system and awareness on all departments.
  •  Career growth – We are a young company where you will be given the room to develop yourself and learn new things intensively while the company grows.
  • Dynamic Team – You will be joining a core department within the company that prides itself on excellent team culture where you will get great results whilst having fun.

Similar Jobs

Beghou Consulting - Consultant

Beghou Consulting

Pune, Maharashtra, India (Hybrid)
8 Months ago
funko - Order Entry Coordinator

funko

Bentonville, Arkansas, United States (Hybrid)
7 Months ago
Coupa Software - Pre Sales Technical Consultant

Coupa Software

Colombia (On-Site)
8 Months ago
DraftKings - Lead Data Science Engineer

DraftKings

London, England, United Kingdom (On-Site)
9 Months ago
ION - Senior Linux Systems Administrator - Somerset, NJ

ION

Clifton, New Jersey, United States (Hybrid)
8 Months ago
Zynga - Application Security Engineer

Zynga

Bengaluru, Karnataka, India (On-Site)
8 Months ago
Redhorse Corp - Senior Cybersecurity SME - Active TS/SCI Clearance Required

Redhorse Corp

Fort Belvoir, Virginia, United States (On-Site)
8 Months ago
Trellix - Customer Success Engineering

Trellix

Kuala Lumpur, Federal Territory Of Kuala Lumpur, Malaysia (On-Site)
8 Months ago
Google - Program Manager III, Security, Google Cloud

Google

New York, New York, United States (On-Site)
7 Months ago
Lulalend - Senior Security Operations Engineer

Lulalend

Cape Town, Western Cape, South Africa (On-Site)
8 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Warner Bros. Discovery - Pega - SSA

Warner Bros. Discovery

Hyderabad, Telangana, India (On-Site)
9 Months ago
Warner Bros. Games - Staff Software Engineer

Warner Bros. Games

Hyderabad, Telangana, India (Hybrid)
10 Months ago
SSC Technologies - Senior Associate - Finance (Global Billing/ Invoicing)

SSC Technologies

Mumbai, Maharashtra, India (On-Site)
9 Months ago
Sprinklr - Lead Product Security Engineer

Sprinklr

Gurugram, Haryana, India (On-Site)
7 Months ago
PwC - Data Engineer-AWS SQL - Senior Associate

PwC

Hyderabad, Telangana, India (On-Site)
8 Months ago
Keywords Studios (Player Support) - IT Support Manager

Keywords Studios (Player Support)

Katowice, Silesian Voivodeship, Poland (On-Site)
7 Months ago
PwC - IN-Senior Associate_Data Management_Independence _IFS_Gurgaon

PwC

Gurugram, Haryana, India (On-Site)
9 Months ago
Google - Senior Financial Analyst, Network Equipment Capital Expenditure

Google

Austin, Texas, United States (On-Site)
7 Months ago
Attentive - Partner Development Manager

Attentive

United States (Remote)
8 Months ago
Token Metrics - Senior Front End Web Developer (Remote)

Token Metrics

Medellín, Antioquia, Colombia (Remote)
8 Months ago

Get notifed when new similar jobs are uploaded

Jobs in Valencia, Valencian Community, Spain

SYBO - Senior/Principal Software Engineer (Subway Surfers)

SYBO

Barcelona, Catalonia, Spain (Hybrid)
8 Months ago
Larian Studios - Internship - Graphics Programmer

Larian Studios

Barcelona, Catalonia, Spain (On-Site)
9 Months ago
Sporty Group - ES Social Media Manager

Sporty Group

Madrid, Community Of Madrid, Spain (Hybrid)
8 Months ago
Booming games - Animator

Booming games

Spain (Remote)
8 Months ago
HP - Cloud Full Stack / Typescript developer

HP

Sant Cugat Del Vallès, Catalonia, Spain (On-Site)
8 Months ago
Devoted Studios - Graphic Designer

Devoted Studios

Spain (Remote)
8 Months ago
PwC - Consultor detección de fraude SAS

PwC

Madrid, Community Of Madrid, Spain (On-Site)
8 Months ago
PwC - Consultor JR Workday – Tenerife

PwC

Santa Cruz De Tenerife, Canary Islands, Spain (On-Site)
9 Months ago
PwC - TLS | Senior Tax Reporting & Strategy (TRS)

PwC

Madrid, Community Of Madrid, Spain (On-Site)
9 Months ago
Hero Gaming - Senior Frontend Developer

Hero Gaming

Marbella, Andalusia, Spain (Hybrid)
9 Months ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

Fortra - Professional Services Consultant - Cybersecurity

Fortra

Saudi Arabia (On-Site)
8 Months ago
PwC - Senior Associate IT Auditor

PwC

Zagreb, Croatia (On-Site)
9 Months ago
PwC - WorkDay HCM Jr.

PwC

Buenos Aires, Buenos Aires, Argentina (On-Site)
9 Months ago
CAE - Information System Security Engineer

CAE

Arlington, Texas, United States (On-Site)
8 Months ago
Axinous - Senior Product Marketing Manager - Risk Management

Axinous

San Jose, California, United States (Hybrid)
7 Months ago
Sphere Entertainment Co. - Manager Event Security/Driver

Sphere Entertainment Co.

Las Vegas, Nevada, United States (On-Site)
7 Months ago
Google - Program Manager, CISO Remediations

Google

(On-Site)
7 Months ago
Google - Security Engineer, Product Security, Cloud CISO

Google

Málaga, Andalusia, Spain (On-Site)
7 Months ago
PwC - IN-Associate _ Hybrid Platform Modernization_OneCloud_Advisory_Bangalore

PwC

Bengaluru, Karnataka, India (Hybrid)
9 Months ago

Get notifed when new similar jobs are uploaded

About The Company

Want to create meaningful solutions to everyday challenges? Our team shapes digital progress to help our customers find their competitive edge. With software projects built on bright ideas, we simplify how business is done. Join Mimacom and develop software that makes a difference. From banking to retail, manufacturing to telecoms, to the organizations that shape society, our software is a part of the daily lives of people all over the world. It makes things faster, easier, and delivers better results.

Madrid, Community Of Madrid, Spain (On-Site)

Zürich, Zurich, Switzerland (Hybrid)

Stuttgart, Baden-Württemberg, Germany (Hybrid)

Stuttgart, Baden-Württemberg, Germany (Hybrid)

Stuttgart, Baden-Württemberg, Germany (Hybrid)

Madrid, Community Of Madrid, Spain (Hybrid)

View All Jobs

Get notified when new jobs are added by Flowable

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug