Cyber Security Analyst (Hybrid in Barcelona)

Barcelona Permanente Remoto / híbrido Ver descripción del puesto
The Senior Cyber Security Analyst will support cyber security governance, risk management, compliance, vendor security, and security awareness across a global organisation. Working closely with business, technology, and security teams, the role focuses on managing cyber risks, supporting ISO 27001 and audit activities, assessing third-party security, and strengthening the organisation's overall security posture.

Added 09/10/2026

  • Strategic visibility and business impact
  • Broad GRC exposure in a mature security environment

¿Dónde vas a trabajar?

Multinational company.

Descripción

    • Identify, assess, document, and manage cyber security risks across technology, business processes, projects, and third parties.
    • Maintain and improve the Cyber Security Risk Management framework aligned with NIST, ISO 27001, CIS, and business requirements.
    • Support business stakeholders in understanding and managing security risks.
    • Support the development, maintenance, and continuous improvement of the Information Security Management System (ISMS).
    • Assist with ISO 27001 certification activities, surveillance audits, and internal control reviews.
    • Monitor compliance with security policies, standards, and regulatory obligations.
    • Perform security assessments of suppliers, partners, and service providers.
    • Work with Procurement, Legal, Privacy, and Technology teams to ensure third-party risks are appropriately managed.
    • Support ongoing monitoring of critical vendor security posture.
    • Support the delivery of the global Cyber Security Awareness Programme.
    • Create and maintain awareness content, campaigns, phishing simulations, communications, and training materials.
    • Promote a positive security culture across the organisation.
    • Develop, review, and maintain security policies, standards, procedures, and guidelines.
    • Ensure documentation remains aligned to industry standards and business objectives.
    • Assist business and technology teams with policy interpretation and implementation.
    • Collaborate with Cyber Security Operations and Cyber Security Architecture teams to improve the overall security posture.



¿A quién buscamos (H/M/D)?

Essential

  • Experience working in Cyber Security Governance, Risk & Compliance (GRC), Security Management, or Information Security roles.
  • Experience with ISO 27001, NIST Cybersecurity Framework, CIS Controls, or similar frameworks.
  • Experience conducting security risk assessments and security control reviews.
  • Experience supporting audits, compliance activities, and assurance programmes.
  • Experience performing vendor or third-party security assessments.
  • Strong understanding of information security principles and cyber risk management.



Desirable

  • ISO 27001 Lead Implementer or Lead Auditor certification.
  • CISSP, CISM, CRISC, or equivalent certification.
  • Experience with OneTrust, CyberVadis, ServiceNow, Jira, or GRC platforms.
  • Experience delivering security awareness programmes.
  • Experience supporting Data Protection Impact Assessments (DPIAs).



Skills & Competencies

  • Strong analytical and problem-solving skills.
  • Excellent written and verbal communication skills.
  • Ability to translate technical security concepts into business language.
  • Strong stakeholder management and influencing skills.
  • Ability to work independently and manage multiple priorities.
  • High attention to detail and quality.
  • Strong presentation and reporting capabilities.
  • Collaborative mindset with experience working in global, multicultural environments.



¿Cuáles son tus beneficios?

  • Competitive salary aligned with your experience
  • Permanent, full-time contract
  • Meal vouchers
  • Private health insurance
  • Life Insurance
  • Hybrid working model (2 days of home office/week)
  • Multicultural environment
  • Training and internal development opportunities
  • A vibrant and dynamic international workplace located in Barcelona
Ver más ofertas de empleo
Jordi Aluma
Indicar número de referencia para la oferta
JN-102026-7122940

Resumen de empleo

Sector
Tecnología
Sub Sector
Seguridad
Industria
Technology & Telecoms
Localización
Barcelona
Tipo de Contracto
Permanente
Nombre del consultor
Jordi Aluma
Número de referencia
JN-102026-7122940
Modalidad de trabajo
Remoto / híbrido

En Michael Page creemos en la diversidad e inclusión. Defendemos la igualdad de oportunidades sin discriminar por género, raza, edad, religión ni orientación sexual o por cualquier otro aspecto que pudiera ser considerado excluyente.