It Risk & Compliance Specialist
Role details
Job location
Tech stack
Job description
About RavenPack RavenPack is a leading data analytics provider for the financial industry, operating the Bigdata.com platform - a real-time AI-powered research assistant serving institutional investors, banks, and asset managers globally.We process vast amounts of unstructured data through cutting-edge AI and NLP technologies, making information security and regulatory compliance central to our operations and client trust.The Opportunity We are looking for a Compliance Specialist to join our IT Risk Spanish is a plus.Preferred Professional certifications such as CISA, CISM, ISO ***** Lead Auditor/Implementer, or CRISC.Experience in financial services, fintech, or data analytics environments where client DDQs and regulatory scrutiny are routine.Familiarity with security tooling such as CrowdStrike, Okta, and vulnerability management workflows.Experience with Jira/Confluence for compliance workflow management and documentation.Python scripting skills for automation of compliance operations (e.g., vulnerability acknowledgement, scope synchronisation).Understanding of the NIST Cybersecurity Framework 2.0.Who You'll Work With Director of IT Operations / CISO - Reporting line, strategic direction, budget Steering Committee - CTO, COO, Legal Counsel (governance approvals, strategic alignment) Monitoring Committee - Operational security oversight, risk posture reporting Legal, Finance, Cybersecurity, and IT Support teams - Cross-functional collaboration on vendor management, incident response, and access reviews What We Offer A high-impact role in a growing compliance function with direct visibility to executive leadership.The opportunity to shape and mature the ISMS of a globally recognised AI and data analytics company.Collaboration with a small, focused team that values quality over throughput and structured operating principles.An environment where compliance is recognised as a strategic business enabler - 56% of clients request ISO/SOC 2 adherence, with compliance having a direct impact in the business goals.Marbella, Spain location with a collaborative, international team.
Requirements
Preferred Professional certifications such as CISA, CISM, ISO ***** Lead Auditor/Implementer, or CRISC. Experience in financial services, fintech, or data analytics environments where client DDQs and regulatory scrutiny are routine. Familiarity with security tooling such as CrowdStrike, Okta, and vulnerability management workflows. Experience with Jira/Confluence for compliance workflow management and documentation. Python scripting skills for automation of compliance operations (e.g., vulnerability acknowledgement, scope synchronisation). Understanding of the NIST Cybersecurity Framework 2.0.