CrawlJobs Logo

Security Governance Specialist

gipo.it Logo

Gipo

Location Icon

Location:
Spain , Barcelona

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

The Security Governance Specialist is a critical member of the Information Security team responsible for developing and maintaining the governance framework, policies, procedures, and standards that guide the organization's information security practices. This role plays a pivotal role in ensuring that security efforts align with business objectives and comply with relevant regulations and industry standards.

Job Responsibility:

  • Develop and maintain information security policies, procedures, and standards in alignment with industry best practices, regulatory requirements, and organizational goals
  • Collaborate with stakeholders across the organization to ensure policies meet business needs while maintaining security standards
  • Establish and manage the security governance framework, ensuring consistency and accountability in security practices
  • Define and communicate governance-related roles and responsibilities within the organization
  • Assist in identifying and understanding regulatory requirements and standards relevant to the organization (e.g., SOC 2, ISO 27001)
  • Ensure that security practices and policies align with compliance requirements and facilitate compliance assessments and audits
  • Contribute to the development of security awareness programs and training materials
  • Collaborate with the Security Awareness and Training Specialist to educate employees about security policies and best practices
  • Maintain a repository of security policies, procedures, and standards
  • Prepare and distribute reports on compliance status, governance efforts, and security metrics to management
  • Integrate risk management principles across the business
  • Ensure that security governance efforts address identified risks appropriately
  • Stay informed about emerging security threats, regulations, and best practices
  • Propose and implement improvements to the security governance framework based on industry trends and organizational needs
  • Integrate with Tech and Product teams to identify and assess new development initiatives or projects
  • Bridge communication between the security and engineering teams ensuring needs and expectations are understood and managed

Requirements:

  • ISO 27001 Lead Auditor or Implementer certification is highly desirable (but not essential)
  • Experience leading or taking part in internal and or external audits
  • 5+ years of experience in information security governance
  • Knowledge of relevant security standards and frameworks (e.g., ISO 27001, NIST, SOC 2)
  • Experience of continuous compliance tooling (eg Vanta or Drata)
  • Strong understanding of regulatory requirements, such as GDPR
  • Excellent communication and collaboration skills, with the ability to work across various departments
  • Strong analytical and problem-solving skills
  • Detail-oriented with a commitment to maintaining accuracy in documentation
  • Ability to adapt to a dynamic and fast-paced environment
  • Self-starter and free thinker
What we offer:
  • True flexibility and work-life balance
  • Remote or hybrid work model with our hub in Barcelona
  • Flexible working hours
  • Summer intensive schedule during July and August (work 7 hours, finish earlier)
  • 23 paid holidays, with exchangeable local bank holidays
  • Additional paid holiday on your birthday or work anniversary (you choose what you want to celebrate)
  • Private healthcare plan with Adeslas for you and subsidized for your family (medical and dental)
  • Access to hundreds of gyms for a symbolic fee in partnership for you and your family
  • Access to iFeel, a technological platform for mental wellness offering online psychological support and counseling
  • Free English and Spanish classes

Additional Information:

Job Posted:
February 04, 2026

Employment Type:
Fulltime
Work Type:
Remote work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Security Governance Specialist

Security Vetting Specialist

We are seeking a Security Vetting Specialist to support and process Bulgarian Go...
Location
Location
Bulgaria , Sofia
Salary
Salary:
Not provided
https://www.hpe.com/ Logo
Hewlett Packard Enterprise
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Prior knowledge and experience with Bulgarian government security vetting
  • at least 1 year in a similar role is an advantage
  • Understanding of EU GDPR and the Personal Data Protection Act (PDPA)
  • Background in roles requiring strict confidentiality and secure handling of sensitive information
  • University degree preferred
  • Ability to develop effective working relationships with colleagues, partners, and authorities
  • Professionalism in handling adversarial or sensitive situations
  • Strong risk identification and evaluation skills, with capacity for proportionate action
  • Ability to interpret and apply regulations and guidance to specific activities
  • Skilled in the use of IT packages, systems, and databases
Job Responsibility
Job Responsibility
  • Provide support and process all types of security vetting required by the Bulgarian Government, EU, and NATO (new applications, transfers, extensions, renewals)
  • Liaise with the Bulgarian Government, particularly the State Commission on Information Security (SCIS), and other security authorities as appropriate
  • Support the business with advice and guidance in coordination with Government Security Services (GSS)
  • Maintain physical and electronic vetting records, ensuring timely renewals
  • Manage record keeping and control of Aftercare Incident Reporting
  • Attend internal and external stakeholder meetings
  • Assist applicants and act as SME in collating required documentation for the clearance process, including questionnaires, consents, diplomas, certificates, official notes, medical documentation, and notarized declarations, as mandated by Bulgarian law.
What we offer
What we offer
  • Comprehensive suite of benefits that supports physical, financial, and emotional wellbeing
  • Specific programs for personal and professional development
  • Flexibility to manage work and personal needs
  • Inclusive culture that celebrates individual uniqueness.
  • Fulltime
Read More
Arrow Right

Physical Security Specialist

STR is seeking an experienced Physical Security Specialist to lead the design, d...
Location
Location
United States , Woburn
Salary
Salary:
135774.00 - 186688.00 USD / Year
str.us Logo
STR
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 6–8+ years of experience managing/accrediting SCIFs, SAPFs, or collateral spaces under ICD 705 and national security standards
  • Extensive knowledge of RF shielding, TEMPEST, Protected Distribution Systems (PDS), Red/Black signal separation, and physical security frameworks (e.g., CNSSI 7003, UL2050)
  • Proven experience creating and managing secure facility documentation (e.g., CSPs, FFCs, security checklists)
  • Ability to conduct physical inspections, including climbing ladders and lifting to 25 lbs
  • Travel required up to 25–50% for secure facility assessments and inspections
Job Responsibility
Job Responsibility
  • Develop, implement, and maintain documentation for secure facility design and management
  • Guide and review architectural drawings, schematics, and as-built diagrams to confirm adherence to physical security requirements
  • Collaborate with government representatives, architects, engineers, and contractors to ensure compliance
  • Represent STR during physical security reviews, audits, and accreditation processes
  • Interpret, and implement DD254s and supporting documentation
  • Conduct inspections, identify vulnerabilities, and implement solutions
  • Ensure protection of communication systems by enforcing CNSSAM TEMPEST/1-13 and CNSSI 7003 standards
  • Develop and implement emergency preparedness plans
  • Conduct security education programs to train employees and contractors
  • Fulltime
Read More
Arrow Right

IT Security Specialist

This Contract-to-permanent position focuses on ensuring compliance with industry...
Location
Location
United States , Irvine
Salary
Salary:
Not provided
https://www.roberthalf.com Logo
Robert Half
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Associate’s degree or equivalent experience demonstrating attention to detail in IT security or a related field
  • Minimum of 3 years of experience working with DoD and government security protocols
  • Strong understanding of security frameworks such as NIST 800-53, NIST 800-171, and other industry standards
  • Proven ability to align organizational policies with best security practices and regulatory frameworks
  • Excellent project management and time management skills
  • Strong communication skills, with the ability to engage effectively at all organizational levels
  • Preferred certifications include CISSP, CISA, or GSEC
  • Commitment to delivering exceptional customer service and maintaining high-quality standards
Job Responsibility
Job Responsibility
  • Lead and manage information security projects to ensure compliance with established frameworks and regulatory standards
  • Oversee the execution and coordination of security testing and self-assessments, ensuring all processes meet organizational requirements
  • Develop, maintain, and update security documentation, including System Security Plans, Configuration Management Plans, and Incident Response Plans
  • Stay informed about industry trends and advancements to enhance service offerings and improve security measures
  • Act as the primary liaison with external auditors, ensuring all requests and deliverables are completed accurately and promptly
  • Provide expert guidance on security documentation and recommend enhancements or remediation steps
  • Proactively define and manage the self-testing process, obtaining approval for all associated deliverables
  • Offer consultative reviews of organizational security policies, aligning them with industry best practices and regulatory requirements
  • Monitor and oversee compliance programs, ensuring consistent adherence to organizational and industry standards
  • Collaborate with cross-functional teams to ensure effective communication and implementation of security measures
What we offer
What we offer
  • medical, vision, dental, and life and disability insurance
  • eligible to enroll in our company 401(k) plan
  • Fulltime
Read More
Arrow Right

Physical Security Specialist

STR is seeking an experienced Physical Security Specialist to lead the design, d...
Location
Location
United States , Arlington
Salary
Salary:
135774.00 - 186688.00 USD / Year
str.us Logo
STR
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 6–8+ years of experience managing/accrediting SCIFs, SAPFs, or collateral spaces under ICD 705 and national security standards
  • Extensive knowledge of RF shielding, TEMPEST, Protected Distribution Systems (PDS), Red/Black signal separation, and physical security frameworks (e.g., CNSSI 7003, UL2050)
  • Proven experience creating and managing secure facility documentation (e.g., CSPs, FFCs, security checklists)
  • Ability to conduct physical inspections, including climbing ladders and lifting to 25 lbs
  • Travel required up to 25–50% for secure facility assessments and inspections
Job Responsibility
Job Responsibility
  • Develop, implement, and maintain documentation for secure facility design and management
  • Guide and review architectural drawings, schematics, and as-built diagrams to confirm adherence to physical security requirements
  • Collaborate with government representatives, architects, engineers, and contractors to ensure compliance with security protocols
  • Represent STR during physical security reviews, audits, and accreditation processes
  • Interpret, and implement DD254s and supporting documentation
  • Conduct inspections, identify vulnerabilities, and implement solutions such as RF shielding and TEMPEST countermeasures
  • Ensure protection of communication systems by enforcing CNSSAM TEMPEST/1-13 and CNSSI 7003 standards
  • Develop and implement emergency preparedness plans, including crisis management strategies
  • Conduct security education programs to train employees and contractors on compliance with classified environment policies
  • Fulltime
Read More
Arrow Right

Senior Information Security Specialist

As a Senior Information Security Specialist, you will play a critical role in pr...
Location
Location
United States , Clarksburg
Salary
Salary:
Not provided
imts.us Logo
Innovative Management & Technology Services
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related field, or equivalent experience
  • Minimum 7 years of experience in information security, IT risk management, or related roles, preferably in federal or state government environments
  • Strong knowledge of federal cybersecurity frameworks including NIST SP 800-53, OWASP Top 10, DISA STIGs, and Common Criteria
  • Hands-on experience with networking concepts, system administration, and software development practices
  • Proficiency in using Splunk or comparable SIEM tools for security event monitoring, audit log analysis, and incident response
  • Experience working within Agile or Scaled Agile Framework (SAFe) teams and integrating security in fast-paced development environments
  • Excellent communication skills with the ability to convey complex security concepts to technical and non-technical audiences
  • Active Top Secret clearance is required
  • U.S. Citizenship is required
Job Responsibility
Job Responsibility
  • Lead comprehensive reviews of management, operational, personnel, and technical security controls to verify their effectiveness during all phases of the system lifecycle
  • Identify, evaluate, and mitigate technical and operational security risks, threats, vulnerabilities, and weaknesses across diverse information systems
  • Drive compliance efforts with government standards and industry best practices, including NIST, OWASP, Common Criteria, DISA, and SANS Institute guidelines
  • Collaborate within Agile development teams to integrate security throughout the software development lifecycle, supporting secure design, testing, and deployment
  • Utilize hands-on expertise in networking, system administration, and software development to analyze security impacts and recommend improvements
  • Oversee audit log reviews and system alerting using Splunk or similar SIEM platforms to detect, investigate, and respond to security incidents
  • Communicate security findings clearly and effectively to technical teams and leadership, fostering a culture of security awareness and continuous improvement
What we offer
What we offer
  • competitive compensation
  • excellent benefits including tuition reimbursement and employer-contributed 401K
  • referral bonuses
  • Fulltime
Read More
Arrow Right

Security Program Specialist II

At WHOOP, we're on a mission to unlock human performance and healthspan. WHOOP e...
Location
Location
United States , Boston
Salary
Salary:
85000.00 - 135000.00 USD / Year
whoop.com Logo
Whoop
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 2–4 years of professional experience in a security, privacy, compliance, or technical support role
  • Familiarity with security and privacy concepts such as vulnerability reporting, data protection, and regulatory compliance (SOC 2, GDPR, etc.)
  • Strong organizational skills with the ability to coordinate across multiple teams and stakeholders
  • Technical aptitude to perform basic analysis of security reports (e.g., reviewing proof-of-concept exploits, testing reproduction steps)
  • Excellent written and verbal communication skills, with the ability to explain technical issues to non-technical stakeholders
  • Interest in growing your career in either engineering (security/product) or information security (governance, risk, and compliance)
Job Responsibility
Job Responsibility
  • Triage and evaluate bug bounty submissions, escalating valid vulnerabilities to engineering for remediation and coordinating response
  • Perform level 1 troubleshooting for member-reported privacy or security concerns, ensuring issues are routed appropriately
  • Coordinate responses to auditor and regulator requests, including gathering SOC and compliance evidence
  • Partner with Product Security Engineers to organize and document threat modeling sessions, leaning on technical experts for deep technical details
  • Track and communicate the status of security issues, ensuring timely follow-up and resolution
  • Support process improvements to make WHOOP’s security and privacy operations more efficient
  • Develop, maintain, and track KPIs that measure the effectiveness of product security programs and provide visibility into team performance and risk reduction
  • Work closely with software teams across the department to adopt and rollout new tooling and security process changes
What we offer
What we offer
  • equity
  • benefits
  • Fulltime
Read More
Arrow Right

Logistics Management Specialist

Serves as a Logistics Management Specialist, with responsibility for Developing/...
Location
Location
United States , Sterling Heights
Salary
Salary:
Not provided
dcscorp.com Logo
DCS Corporation
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • U.S. Citizenship
  • Must be able to obtain and maintain a secret security clearance
  • A Bachelors Degree from an accredited college or university with at least 12 years experience providing support to engineering organizations or in Programmatic, Financial, or Technical support of the research, development, test, or evaluation complex systems
  • Comprehensive knowledge of logistics management concepts, policies, methods and regulatory requirements (especially integrated logistics support)
  • Knowledge of the Army’s and Marine Corps field maintenance system
  • Knowledge of the detailed logistics milestones to support schedules
  • Knowledge of the development of new vehicle systems and the associated impact upon the Army and Marine Corps logistics system
  • Financial knowledge to support budget cycles
  • Knowledge of the logistics requirements to support initial deployment planning
  • Knowledge of the processing system to receive units both in CONUS and OCONUS
Job Responsibility
Job Responsibility
  • Develops integrated logistics support plans
  • Monitors the logistics support analysis program
  • Monitors program execution
  • Coordinates with technical specialists
  • Assures availability of logistics support information
  • Oversees materiel fielding
  • Develops/coordinates contract scopes of work for logistics support
  • Performs technical evaluation of contract proposals
  • Develops independent government cost estimates
  • Serves as a monitor of contractor ILS performance
  • Fulltime
Read More
Arrow Right

Training and Development Specialist

The Training and Development Specialist provides personnel support and will also...
Location
Location
United States , El Segundo
Salary
Salary:
70000.00 - 90000.00 USD / Year
tecolote.com Logo
Tecolote Research
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 10 years of combined experience in industry and federal government, with experience supporting the USAF, USSF, and/or SSC
  • Experience supporting training initiatives in the DoD, NASA, NRO, or the commercial/civil sector space industry supporting federal Government acquisition in a space acquisition program
  • Familiarity with training requirements for Government personnel IAW 5 U.S.C. Chapter 41, 5 CFR, 410, and 5 CFR 412 is strongly preferred
  • Must be able perform all duties independently
  • Associate's Degree required
  • U.S. citizenship required
  • Active Secret security clearance required
  • Ability to work 5 days/week on-site in El Segundo, CA
  • Strong communication skills to collaborate effectively with colleagues, managers, and government customers
  • Accountability
Job Responsibility
Job Responsibility
  • Training program support: Ensure personnel training history is complete, accurate, and in line with regulatory guidelines
  • Track development: Monitor and track Basic Developmental Education (BDE), Acquisition Program Development Plan (APDP), and Individual Development Plans (IDP)
  • Database maintenance: Maintain and update training data in databases
  • Metric reporting: Utilize government approved status reporting tools to communicate metrics and personnel status
  • Announce opportunities: Coordinate and announce developmental opportunities to personnel
  • Regulatory compliance: Ensure training meets regulatory requirements consistent with career goals
  • Other related and administrative tasks as directed by the Customer and Tecolote Management
What we offer
What we offer
  • Health & Welfare: Company Paid Major Medical Insurance for employees and family members
  • Dental Insurance for employees and family members
  • Vision Insurance for employees (employee-paid for family members)
  • Group Life Insurance
  • Accidental Death and Dismemberment Insurance
  • Travel Accident Insurance
  • Long-Term Disability
  • Voluntary: Short-Term Disability
  • Supplemental Life Insurance
  • Flexible Spending Account (pre-tax deferrals for health care expenses)
  • Fulltime
Read More
Arrow Right