At a Glance
- Tasks: Lead risk management, audits, and security strategies in a dynamic fintech environment.
- Company: Join Ebury, a high-growth fintech scale-up with a collaborative culture.
- Benefits: Competitive salary, annual bonus, mentorship, and generous benefits package.
- Other info: Work in central Madrid with excellent transport links and a supportive team.
- Why this job: Make a real impact on security while advancing your career in a cutting-edge tech space.
- Qualifications: 5+ years in Information Security, strong knowledge of regulations, and industry certifications preferred.
The predicted salary is between 70000 - 85000 ÂŁ per year.
This is an opportunity to be a strategic part of an experienced infosec team at a high-growth fintech scale-up.
- Governance & Compliance (BAU)
- Risk Management Lifecycle: Own the risk assessment process – lead quantification and communication of risk to business stakeholders.
- Audit Ownership: Lead and manage external audits, oversee remediation of findings, ensuring continuous compliance across multiple jurisdictions.
- TPRM Leadership: Mature our Third‑Party Risk Management program, define vendor security standards and ensure partners meet risk appetite.
- Regulatory Horizon Scanning: Monitor evolving fintech regulatory landscape and design roadmaps to keep Ebury ahead of the curve.
- GRC Strategy & Architecture: Design, implement and mature the global GRC framework, collaborating with other teams to align it with ISO 27001, NIST, GDPR, and DORA.
- Strategic Projects & Process Maturation
- GRC Automation: Lead selection and implementation of automated GRC platforms to enhance operational robustness.
- Strategic Advisory: Act as a high‑level consultant for new product launches and international expansions, ensuring “Security by Design” is baked into strategic moves.
- Cultural Leadership: Design and champion advanced security awareness programs that shift organizational behavior through metrics‑driven insights.
What you’ll need:
- 5+ years of experience in Information Security, GRC or Risk Management roles.
- Strong knowledge of information security standards and regulations (ISO 27001, SOC 2, GDPR, FCA/DORA, NIST, etc.).
- Analytical skills: ability to assess a security exception, experience with regulatory audits and working with financial regulators.
- Hands‑on experience implementing risk management processes, control frameworks, and security metrics; familiarity with GRC or risk platforms (e.g. OneTrust).
- Team player with exceptional communication and stakeholder management skills.
- Industry certifications such as CISSP, CRISC, CISA, or ISO 27001. Lead Implementer/Auditor are preferred.
Why Ebury?
- Competitive Starting Salary with an annual discretionary bonus that rewards performance from day one.
- Dedicated Mentorship: Learn directly from experienced managers invested in your success.
- Cutting‑Edge Technology: Leverage state‑of‑the‑art tools and systems.
- Clear, Accelerated Career Progression: Defined pathways to leadership and specialist roles.
- Dynamic & Supportive Culture: Collaborative environment prioritising teamwork and growth.
- Generous Benefits Package: Health care and social benefits tailored to location.
- Central Madrid Office: Fantastic location with excellent transport links.
Ebury is an equal opportunity employer. We believe in inclusion and stand against discrimination in all forms.
Senior Information Security Manager employer: Ebury
Contact Detail:
Ebury Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Senior Information Security Manager
✨Tip Number 1
Network like a pro! Reach out to current employees at Ebury on LinkedIn or through mutual connections. A friendly chat can give you insider info and might just get your foot in the door.
✨Tip Number 2
Prepare for the interview by brushing up on your knowledge of ISO 27001, GDPR, and other relevant standards. We want to see that you’re not just familiar with them but can also discuss how they apply to real-world scenarios.
✨Tip Number 3
Showcase your leadership skills! Think of examples where you've led projects or teams, especially in risk management or compliance. We love candidates who can demonstrate their ability to drive change and influence others.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining our team at Ebury.
We think you need these skills to ace Senior Information Security Manager
Some tips for your application 🫡
Tailor Your CV: Make sure your CV speaks directly to the role of Senior Information Security Manager. Highlight your experience in GRC, risk management, and any relevant certifications like CISSP or ISO 27001. We want to see how your skills align with what we’re looking for!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to tell us why you’re passionate about information security and how you can contribute to our team at Ebury. Be specific about your achievements and how they relate to the job description.
Showcase Your Analytical Skills: Since this role involves assessing security exceptions and managing audits, make sure to include examples of your analytical skills in your application. We love seeing how you’ve tackled challenges in the past and what impact you made!
Apply Through Our Website: We encourage you to apply through our website for a smoother process. It helps us keep track of applications and ensures you don’t miss out on any important updates. Plus, it’s super easy!
How to prepare for a job interview at Ebury
✨Know Your Stuff
Make sure you brush up on your knowledge of information security standards and regulations like ISO 27001, GDPR, and NIST. Be ready to discuss how you've applied these in your previous roles, especially in risk management and compliance.
✨Showcase Your Leadership Skills
Since this role involves leading audits and managing third-party risk, prepare examples that highlight your leadership experience. Think about times when you successfully led a team through a challenging audit or improved a risk management process.
✨Be a Problem Solver
Ebury is looking for someone who can think critically and solve problems. Prepare to discuss specific challenges you've faced in your previous roles and how you approached them. Use the STAR method (Situation, Task, Action, Result) to structure your answers.
✨Cultural Fit Matters
Ebury values a dynamic and supportive culture, so be ready to talk about how you’ve contributed to team environments in the past. Share examples of how you've fostered collaboration and security awareness within your teams.