> Markdown version of [/jobs/ext/1368322-information-security-manager](https://www.wearedevelopers.com/jobs/ext/1368322-information-security-manager). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information Security Manager - **Company:** Nido Living - **Location:** Madrid, Spain - **Salary:** €60,000.0 - €90,000.0 - **Contract:** Permanent contract - **Skills:** Cyber Security, Disaster Recovery, Identity and Access Management, Microsoft Dynamics, Information Security Management System, Cloud Platform System, Information Technology - **Published:** July 21, 2026 - **Apply:** https://www.adzuna.es/contact-us.html ## About the Role + Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field. + Minimum of 3 years in information security or cybersecurity roles, with a proven track record in implementing and maintaining Information Security Management Systems (ISMS) and driving compliance initiatives (e.g., ISO 27001, GDPR). + Strong understanding of information security frameworks such as ISO 27001, NIST, and ENS. + Practical experience with risk assessment methodologies, security governance, and incident response. + Solid technical knowledge of networks, systems, and cloud environments. + In-depth understanding of data protection and privacy regulations (e.g., GDPR). + Relevant industry certifications such as CISM, CISSP, ISO 27001 Lead Implementer, DPO, or equivalent are highly desirable. + Fluency in English is essential. Knowledge of German and/or Italian is considered a strong advantage. KEY PERSONAL SKILLS & TRAITS + Integrity: Commitment to upholding ethical standards, honesty, and integrity in managing sensitive information and ensuring compliance with security and data protection regulations, fostering a culture of transparency and accountability. + Analytical Thinking: Proficiency in analysing complex security risks, threats, and vulnerabilities, and interpreting technical findings to support strategic decision-making. + Problem-Solving: Capacity to identify security issues, assess alternative solutions, and implement effective remediation strategies to address threats, incidents, and control gaps. + Resilience: Ability to remain composed and focused under pressure, demonstrating resilience in managing security incidents, regulatory audits, and multiple projects simultaneously under tight deadlines. + Collaboration and Communication: Excellent communication skills with the ability to explain technical security matters clearly to both technical and non-technical stakeholders, and to collaborate effectively with IT, legal, compliance, and business teams across multiple locations. + Personality: Proactive, self-motivated, and results-oriented, with a strong sense of ownership and accountability in driving security initiatives ## Description As we grow our footprint, we are looking for an experienced Information Security Manager to lead the design, implementation, and continuous improvement of the organisation's information security strategy. This role is critical to ensuring the protection of sensitive data, regulatory compliance, and business continuity in a rapidly evolving digital environment. The Information Security Manager will oversee the governance of information security across all departments, coordinate risk assessments, define internal security policies and procedures, and act as the main point of contact for all matters related to data protection and security. KEY TASKS & RESPONSIBILITIES (include but are not limited to) + Define, implement, and maintain the Information Security Management System (ISMS) in line with standards such as ISO/IEC 27001, NIST, and GDPR. + Conduct regular risk assessments and manage mitigation plans across the organization. + Develop and enforce security policies, standards, and procedures. + Coordinate and support internal and external security audits and ensure follow-up on findings. + Ensure the implementation of technical and administrative controls to protect the organization's information assets. + Design, implement, and maintain Segregation of Duties (SoD) within Microsoft Dynamics F&O to strengthen internal control and minimize risks associated with access management. + Develop and manage a comprehensive Business Continuity framework that goes beyond technical disaster recovery, ensuring organisational resilience and effective response to potential disruptions. + Lead the incident response process, including investigation, documentation, mitigation, and reporting. + Work closely with IT to ensure systems, networks, and applications meet security requirements. + Promote security awareness and training across all employees. + Produce reports and dashboards on security posture, risks, and KPIs for executive management. + Manage relationships with third parties, vendors, and auditors in matters of security. + Stay current with evolving threats, technologies, and compliance requirements. ## Related Videos - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Systems Thinking for Performance: How to Diagnose and Fix Slow Systems without Guessing](https://www.wearedevelopers.com/videos/2103-systems-thinking-for-performance-how-to-diagnose-and-fix-slow-systems-without-guessing) - [Convincing Product teams to Adopt Gitops in a Large Org](https://www.wearedevelopers.com/videos/1936-convincing-product-teams-to-adopt-gitops-in-a-large-org) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [The Most Popular IT Jobs on the Market](https://www.wearedevelopers.com/magazine/376-the-most-popular-it-jobs-on-the-market) - [Top-Paying Tech Jobs (with Salaries)](https://www.wearedevelopers.com/magazine/372-top-paying-tech-jobs-with-salaries) - [IT Salaries in Germany](https://www.wearedevelopers.com/magazine/287-it-salaries-in-germany) - [Spanish Business Culture and Etiquette](https://www.wearedevelopers.com/magazine/353-spanish-business-culture-and-etiquette) - [System change: restart as developer?](https://www.wearedevelopers.com/magazine/39-system-change-restart-as-developer) - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers)