Job Description
We are looking to hire a Senior GRC Consultant with a strong track record in projects involving the implementation, adaptation, and auditing of information security management frameworks, business continuity, and regulatory compliance. The selected candidate will lead client projects from start to finish, acting as the client's technical lead, with a direct reporting line to the GRC Manager.
What you’ll do
- Lead the implementation and maintenance of ISMS projects in accordance with ISO/IEC 27001:2022 and ISO/IEC 27002 controls. Similarly, lead projects related to ISO 27701 and/or GDPR.
- Manage adaptation processes to the National Security Framework (Royal Decree 311/2022 and CCN-STIC 800, specifically sections 803, 804, 808, and 817), including the statement of applicability, risk analysis, and adaptation plan.
- Design and implement Business Continuity Management Systems (BCMS) according to ISO 22301, including BIA, continuity risk analysi...