REST Fintech Office

BrainRocket is a global company creating end-to-end tech products for clients across Fintech, iGaming, and Marketing. Young, ambitious, and unstoppable, we´ve already taken Cyprus, Malta, Portugal, Poland, and Serbia by storm. Our BRO team consists of...
BrainRocket is a global company creating end-to-end tech products for clients across Fintech, iGaming, and Marketing. Young, ambitious, and unstoppable, we´ve already taken Cyprus, Malta, Portugal, Poland, and Serbia by storm. Our BRO team consists of 1,300 bright minds creating innovative ideas and products. We don´t follow formats. We shape them. We build what works, launch it fast, and make sure it hits.

This is an on-site role. The office is in Valencia, Spain.
❌ No remote, ❌ no hybrid work.
The company assists with the relocation process if your location differs from the required.

We are seeking an Information Security Manager to join our team at our Valencia, Spain office

Responsibilities:
Security Audits & Governance
• Conduct internal security audits of systems, business processes, and new integrations.
• Review and challenge technical and organisational controls; identify weaknesses and improvement areas.
• Participate in security architecture discussions and proactively recommend control mechanisms.

Security Requirements & Control Design
• Define security requirements for internal systems, tools, and business processes.
• Work closely with engineering, infrastructure, and product teams to integrate controls into workflows and architectures.
• Validate that implemented controls meet design and compliance objectives.

Risk & Compliance Oversight
• Perform risk assessments for internal tools and third-party services (pre- and post-integration).
• Maintain the Risk Register and work with asset owners on risk mitigation plans aligned with ISO27001/27701 and other frameworks.
• Support audit readiness and evidence collection for ISO 27001, PCI DSS, and other certifications.

Data Protection & Access Control
• Analyze data flows and define appropriate protection strategies (e.g., encryption, masking, access management).
• Ensure logging, alerting, and monitoring controls are in place and passed to the SOC.
• Conduct periodic access reviews and role validations.

Security Awareness & Process Improvement
• Contribute to security awareness initiatives and training content.
• Collaborate with business and IT teams to optimise secure-by-design practices across departments.

Requirements:
• 3+ years of experience in information security, internal audit, GRC, or similar roles.
• Hands-on experience conducting internal audits, risk assessments, and designing/implementing security controls.
• Strong knowledge of ISO 27001/27701, PCI DSS, GDPR, and relevant security frameworks.
• Experience maintaining a Risk Register and working with asset owners on mitigation planning.
• Ability to define and validate security requirements for internal systems and processes.
• Understanding of data protection principles, including encryption, masking, and access control.
• Solid understanding of modern access management approaches such as RBAC, Just-in-Time (JIT) access, and Zero Trust.
• Strong analytical and documentation skills; ability to structure findings and communicate clearly across teams.
• Self-driven and structured approach to auditing, with the ability to work across technical and business functions.

Nice to have:
• Experience supporting external certification audits (ISO 27001, PCI DSS, etc.).
• Relevant certifications such as ISO 27001 Lead Auditor, CISA, CRISC, CISSP, or CompTIA Security+.
• Experience collaborating with a SOC team or working with log and alert management systems

We offer excellent benefits, including but not limited to: Learning and development opportunities and interesting, challenging tasks.
Opportunity to develop language skills, with partial compensation for the cost of Spanish classes (for localisation purposes).
Relocation package.
Global coverage health insurance.
Time for proper rest, with 23 working days of annual vacation and an additional 6 paid sick days.
Competitive remuneration level with annual review.
Teambuilding activities

Bold moves start here. Make yours. Apply today!

¡No te pierdas nada!

Únete a la comunidad de wijobs y recibe por email las mejores ofertas de empleo


Nunca compartiremos tu email con nadie y no te vamos a enviar spam

Suscríbete Ahora

Últimas ofertas de empleo de Informática e IT en València

agap2 España

Nos encontramos en la búsqueda de un/a Project Manager para unirse al equipo para participar en un proyecto de referencia...

QUICKIN

¿Eres de esas personas que disfrutan teniendo todo bajo control, resolviendo incidencias y haciendo que las cosas...

Inversiva

¿Eres de esas personas que disfrutan teniendo todo bajo control, resolviendo incidencias y haciendo que las cosas...

Lladró, S.A.

Tavernes Blanques, ES

PROJECT MANAGER DE DESARROLLO DE PRODUCTO (End-to-End) La empresa Lladró, multinacional especializada en la creación y...

Verdifresh

Riba-roja de Túria, ES

En Verdifresh (Grupo Foodiverse) buscamos incorporar un/a Técnico/a de Mejora Continua para nuestra planta de IV Gama ...

S2GRUPO

València, ES

¡Te queremos en nuestro equipo como SysAdmin ! 💼 ¿Qué vas a hacer aquí con nosotros? Administrar entornos Linux.

CFO

28 ene.

Anima Consultores

València, ES

The Role We’re looking for a CFO at ecosystem level to work closely with the CEO and Founder. This is not a traditional...

INGENIEROJOB

Pobla de Vallbona, la, ES

Descripción de la oferta Gestor/a de Proyectos En RNB buscamos una persona para incorporarse a nuestro equipo de...

Digital Talent Agency

Descripción Project Manager SAP ABAP en Valencia (Híbrido) - Zemsania En Zemsania, buscamos un/a Desarrollador/a SAP ABAP...

DHL eCommerce España

València, ES

En dependencia directa del Station Manager de Valencia, sus funciones serán: n Coordinar la actividad de la delegación...