Hiring.Camp

Senior Cyber GRC Specialist - SCFGS

Santander Effect Our work touches

·

Today

Location
Pinar P01, Spain
Type
Full-time
Seniority
Senior
Experience
4+ years
Closing date
Today
Source
Workday

Description

Senior Cyber GRC Specialist - SCFGS

Country: Spain

Santander Consumer Finance Global Services is looking for a Senior Cyber GRC Specialist based out of Madrid.


As a Senior Cyber GRC Specialist, you will support the implementation and oversight of the Cyber Transformation Plan, ensuring alignment with corporate cybersecurity policies, regulatory requirements, and risk management frameworks across the organization. You will act as a key partner to local and global stakeholders, driving governance, risk, compliance, and cybersecurity oversight activities while promoting best practices and continuous improvement.

We’re shaping the way we work through innovation, cutting-edge technology, collaboration and the freedom to explore new ideas. To succeed in this role, you will be responsible for:

  • Reporting cybersecurity governance, risk and compliance status to Corporate Security Functions and Second Line of Defense stakeholders.
  • Supervising cybersecurity plans and supporting the definition, monitoring and optimization of cybersecurity budgets across entities.
  • Monitoring compliance with cybersecurity policies, standards, regulatory requirements and internal controls.
  • Defining, maintaining and tracking Key Risk Indicators (KRIs), Technology Health (ToH) maps and cybersecurity performance metrics.
  • Managing and overseeing the Cyber Risk Lifecycle, including risk identification, assessment, mitigation and reporting activities.
  • Coordinating the definition and execution of local Cybersecurity Director Plans, ensuring alignment with global cybersecurity strategies and corporate objectives.
  • Assessing existing cybersecurity governance practices and proposing improvements to strengthen security posture and operational effectiveness.
  • Promoting standardization, harmonization and optimization of cybersecurity services, processes and controls across countries.
  • Identifying, sharing and implementing best practices, lessons learned and synergies among local and global teams.
  • Ensuring the effective implementation of cybersecurity regulations, procedures and standards while maintaining strong collaboration with internal and external stakeholders.


WHAT YOU’LL BRING

Our people are our greatest strength. Every individual contributes unique perspectives that make us stronger as a team and as an organization. We’re enabling teams to go beyond by valuing who they are and empowering what they bring.

The following requirements represent the knowledge, skills, and abilities essential for success in this role. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.


Professional Experience

  • Minimum 4 years of experience in Cybersecurity Governance, Risk & Compliance (GRC), IT Risk Management, Information Security, Audit or related disciplines (Required).
  • Experience working within regulated environments (Required).
  • Experience coordinating cybersecurity governance activities across multiple stakeholders, business units or geographies (Required).

Language

  • English – Advanced level (minimum B2; C1 preferred) (Required).
  • Spanish – Professional working proficiency (Preferred).

Hard Skills

  • Strong understanding of cybersecurity threats, vulnerabilities, attack vectors and security control deficiencies (Required).
  • Cybersecurity Governance, Risk and Compliance frameworks, including risk assessments, KRIs, RCSA and cyber metrics (Required).
  • Knowledge of cybersecurity regulations, policies, standards and control environments applicable to financial institutions (Preferred).
  • Experience monitoring and managing cybersecurity audits, findings, remediation plans and recommendations (Preferred).
  • Understanding of cybersecurity budgeting and financial management concepts, including CAPEX and OPEX (Preferred).
  • Experience managing and overseeing cybersecurity vendors, contracts and third-party services (Preferred).
  • Knowledge of Business Continuity, Information Security Office governance and resilience frameworks (Preferred).
  • Professional certifications such as CISSP, CISM, CISA, CEH, CSX or equivalent (Preferred).
  • Experience collaborating with local Information Protection teams and global cybersecurity functions in international organizations (Preferred).

Soft Skills

  • Strong analytical and risk-based thinking.
  • Excellent stakeholder management and communication skills.
  • Governance and compliance-oriented mindset.
  • Ability to influence and drive alignment across multiple teams and geographies.
  • Continuous improvement and problem-solving mindset.
  • Strong organizational skills and attention to detail.
  • Proactive approach to risk identification and remediation.
  • Collaboration and teamwork in complex, matrixed environments.

If you want to know more about us, follow us on https://es.linkedin.com/company/banco-santander

Skills

CybersecurityRisk ManagementComplianceCISSP

Similar Jobs

10

Senior Cyber GRC Specialist - SCFGS

Santander·Pinar P01, Spain

Today

Senior Cyber GRC Analyst

Reagroup·Richmond, Melbourne VIC

1w ago

Senior Cyber Security GRC Consultant

Leidos·7169 Moore St Canberra ACT Australia·Onsite

1w ago

Senior Analyst, Cyber Governance, Risk and Compliance (GRC)

Higcapital·Coral Gables, US·Hybrid

3w ago

Senior GRC Consultant (Cyber & Information Security)

Implement Consulting Group·Hellerup, Denmark

2mo ago

Sr Director Analyst, Cyber GRC Tools and Technology (Remote Europe)

Gartner·Remote - United Kingdom +6·Remote

2mo ago

Sr Director Analyst, Cyber GRC Tools and Technology (Remote US)

Gartner·Remote - Texas, US·Remote

2mo ago

Senior Associate - Cyber Security Consultant (GRC/Pentest)

Pwc·Ho Chi Minh City, Vietnam +1

3mo ago

Cyber Governance, Risk & Compliance (GRC) – Senior Associate

Pwc·Singapore - Marina One

7mo ago

CDT - Senior Associate - Cyber Security GRC

Pwc·Riyadh - Laysen Valley, Saudi Arabia

1y+ ago