Information Security Manager

TUI Group
Madrid, Spain
5 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours

Tech stack

Amazon Web Services Microsoft Azure Cloud Computing Cyber Security Microsoft Security Essentials Software Vulnerability Management Office365 Vulnerability Analysis

Job description

Experteer Overview In this role you will promote a security-first culture across multiple technology domains within TUI, shaping and maintaining an information security programme that addresses evolving business risks.You will drive adoption of policies, standards, and controls, providing expert guidance to stakeholders.You will ensure effective assurance, testing, and incident learning, and manage risk pragmatically with ongoing vulnerability management.You will report on KPIs and collaborate with global teams to drive continuous improvement.This is a chance to influence security across a multinational organisation and contribute to a mission of protecting information assets.Compensaciones / Beneficios - Promote a security-first culture within the Domains and contribute to the information security programme - Drive adoption of security policies, standards, and controls with stakeholder guidance - Ensure appropriate assurance and rigorous testing, tracking lessons learned from security incidents - Manage risk in a pragmatic, cost-effective way, keeping controls like vulnerability scanning and patching effective - Protect integrity, availability, and confidentiality of information and data and report on programme effectiveness against KPIs - Build strong working relationships across business and IT teams to influence others and drive continuous improvementResponsabilidades - Proven experience leading an information security capability and governance, risk and compliance for a large business unit - Strong communication and influencing skills with ability to engage diverse stakeholders and gain board-level commitment - Strong understanding of Microsoft security best practices for cloud and on-premises tech, with Azure, MS365 and Copilot experience - Knowledge of security practices in Amazon Web Services and international regulatory contexts, especially data privacy - CISSP/CISM/CISA certification preferred; familiarity with ISO**, NIST CSF, PCI - Excellent planning, organisation and interpersonal skills to work with technical and non-technical colleagues globallyRequisitos principales - Attractive remuneration - discretionary bonus schemes - travel benefits - health u* well-being support - flexible working - learning hub access

Requirements

This is a chance to influence security across a multinational organisation and contribute to a mission of protecting information assets.Compensaciones / Beneficios - Promote a security-first culture within the Domains and contribute to the information security programme - Drive adoption of security policies, standards, and controls with stakeholder guidance - Ensure appropriate assurance and rigorous testing, tracking lessons learned from security incidents - Manage risk in a pragmatic, cost-effective way, keeping controls like vulnerability scanning and patching effective - Protect integrity, availability, and confidentiality of information and data and report on programme effectiveness against KPIs - Build strong working relationships across business and IT teams to influence others and drive continuous improvementResponsabilidades - Proven experience leading an information security capability and governance, risk and compliance for a large business unit - Strong communication and influencing skills with ability to engage diverse stakeholders and gain board-level commitment - Strong understanding of Microsoft security best practices for cloud and on-premises tech, with Azure, MS365 and Copilot experience - Knowledge of security practices in Amazon Web Services and international regulatory contexts, especially data privacy - CISSP/CISM/CISA certification preferred; familiarity with ISO**, NIST CSF, PCI - Excellent planning, organisation and interpersonal skills to work with technical and non-technical colleagues globallyRequisitos principales - Attractive remuneration - discretionary bonus schemes - travel benefits - health u* well-being support - flexible working - learning hub access

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.buscojobs.com.es

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:06 min

Outline of free tools for Microsoft Azure

Radu Vunvulea Radu Vunvulea · World Congress 2022

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

2:47 min

Exploring career opportunities and recruitment open positions

Kurt Eder · LIVE

5:01 min

Container hosting options available on Microsoft Azure

Federico Fregosi · World Congress 2022

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

Videos

See all

Related articles

See all