> Markdown version of [/jobs/ext/3497168-security-architect-for-isms](https://www.wearedevelopers.com/jobs/ext/3497168-security-architect-for-isms). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Architect For Isms - **Company:** Airbus - **Location:** Getafe, Spain - **Contract:** Permanent contract - **Skills:** Control Objectives for Information and Related Technology (COBIT), Cyber Security, Identity and Access Management, Intrusion Detection Systems, Security Information and Event Management, Software Vulnerability Management, Information Security Management System, In-Plane Switching (IPS), Firewalls (Computer Science), Information Technology - **Published:** September 21, 2026 - **Apply:** https://www.adzuna.es/contact-us.html ## About the Role Bachelor's degree in Computer Science, Information Security, or a related field. Master's degree preferred. Minimum of 5 years of experience in information security, with at least 3 years in a Security Architect role specifically focused on ISMS. Strong expertise in ISO *****, ENS (Esquema Nacional de Seguridad) implementation and auditing. In-depth knowledge of information security principles, frameworks, and best practices (e.g., NIST, COBIT, NIS2, ENS). Proven experience in security risk assessment methodologies and tools (MAGERIT/PILAR, EBIOS/FENCE) applied to IT/OT environments. Familiarity with various security technologies such as firewalls, IDS/IPS, SIEM, IAM, and data encryption. Knowledge of EASA part 21 and Approved organisations in an aeronautical environment. Excellent analytical, problem-solving, and communication skills, with the ability to articulate complex security concepts to technical and non?technical audiences. Fluency in English is required; Spanish proficiency is a plus. ## Description We are seeking a highly skilled and experienced Security Architect to contribute in the design, implementation, and maintainance of the Information Security Management System (ISMS) within Airbus Defence and Space, ensuring compliance with new Part IS regulation., Contribute to the ISMS implementation and maintenance; documenting and maintaining all the approved organisation key processes, procedures, roles and responsibilities; Contribute to the ISMS inventory through the analysis of their process / procedure and assets identification; Perform, review/update and technically approve security risk assessment on the assets of the Approved Organisation (IT/OT). Using Methods and tools like (MAGERIT/PILAR, EBIOS/FENCE) Define, propose, ensure decision and perform follow up on the security risk treatment plans; Communicate the outcome of the risk assessment and treatment plan to the ISMS manager, other personnel (as the Business Asset Owner), and other organisations sharing an interface (Security Incident Response Leader, Vulnerability Management Team, NISO), Analyse, Perform, review/update and technically approve security incident report on the assets of the Approved Organisation, Define, propose, ensure decision and perform follow up on information security incident response plan, Cooperate on investigations with other organisations that contribute to the information security of its own activities ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Enabling intelligent logistics automation: home-grown Industrial IoT platform at Austrian Post](https://www.wearedevelopers.com/videos/2018-enabling-intelligent-logistics-automation-home-grown-industrial-iot-platform-at-austrian-post) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [IP Authentication: A Tale of Performance Pitfalls and Challenges in Prod](https://www.wearedevelopers.com/videos/1413-ip-authentication-a-tale-of-performance-pitfalls-and-challenges-in-prod) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers) - [Top-Paying Tech Jobs (with Salaries)](https://www.wearedevelopers.com/magazine/372-top-paying-tech-jobs-with-salaries) - [Spanish Business Culture and Etiquette](https://www.wearedevelopers.com/magazine/353-spanish-business-culture-and-etiquette) - [The Most Popular IT Jobs on the Market](https://www.wearedevelopers.com/magazine/376-the-most-popular-it-jobs-on-the-market) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed)