HimalayasHimalayas logo
StellenangeboteST

Information Security Coordinator for Governance, Risk and Compliance

Drees & Sommer is an international consulting firm for the construction and real estate sector, focusing on sustainability, digitalization, and innovative project management.

Stellenangebote

Employee count: 5000+

Spain only

Stay safe on Himalayas

Never send money to companies. Jobs on Himalayas will never require payment from applicants.

The Information Security Coordinator for GRC is a seasoned professional with extensive expertise in Governance, Risk, and Compliance (GRC), bringing a deep understanding of global cybersecurity frameworks, regulations and best practices. With a strong track record in executing certification programs and embedding cybersecurity controls within large-scale and multinational environments, this expert role supports Drees & Sommer’s mission to ensure regulatory compliance, business continuity, and long-term information security maturity. Support yearly internal and external audit programme in alignment with the head of the department. Support the development, implementation and maintenance of the company’s BCM framework.

Core Responsibilities

  • GRC Execution & Advisory: Support the development and maintenance of cybersecurity governance, risk, and compliance frameworks in alignment with ISO/IEC 27001, 27701, 22301, TISAX, NIS2 and other relevant standards.
  • Audit Preparation & Support: Conduct and drive internal security assessments and support external audits by preparing documentation, identifying non-conformities, and ensuring implementation of corrective actions.
  • Policy Implementation: Draft, maintain, and ensure the correct application of cybersecurity policies and procedures based on industry standards across business units.
  • Risk & Control Assessment: Execute technical risk assessments and control effectiveness evaluations; support continuous improvement of risk treatment plans.
  • BCM Program Coordination: Support the development, implementation, and maintenance of the company’s BCM framework.
  • Business Impact Analysis (BIA): Assist in conducting and updating BIAs to assess the impact of potential disruptions.
  • Continuity Planning: Help develop and maintain business continuity and disaster recovery plans. Ensure alignment of continuity plans with information security and risk management strategies.
  • Compliance Monitoring: Ensure adherence to data protection regulations (e.g., GDPR), IT security laws, and internal security guidelines.
  • Project Involvement: Act as a cybersecurity expert in cross-functional projects, ensuring that new initiatives are aligned with cybersecurity requirements.
  • Documentation & Reporting: Maintain high-quality documentation for compliance purposes; support reporting to the cybersecurity steering committee or auditors.
  • Security Tools & Processes: Support the use of GRC tools, risk dashboards, and internal control platforms.
  • Deep knowledge of international cybersecurity standards and frameworks (ISO/IEC 27001, 27017, 27701, 22301, NIST, GDPR)
  • Expertise in compliance program execution and audit readiness
  • Practical experience with risk assessments and mitigation planning
  • Proficiency in policy and process implementation
  • Strong technical writing and documentation skills
  • Awareness of operational security practices in IT and industrial environments
  • Strong analytical thinking and attention to detail
  • Fluent in English is a must (equivalent to C1)

Certifications & Qualifications

  • Certified in ISO 27001/27701/22301 Implementer or Auditor
  • ITIL Certified
  • IPMO – International Project Management Officer
  • A dynamic and collaborative environment where cybersecurity is a strategic priority
  • A team that values creativity, initiative, and continuous improvement
  • To ensure your work-life balance, we offer the option of mobile working
  • We promote your professional and personal development through individual training and further education at the Drees & Sommer Academy
  • We support your health with a bonus for sports enthusiasts. We offer the possibility of subscribing to a private health insurance policy
  • Employees benefit from tax advantages related to their commuting expenses for the office
  • Fiscal advantages for employees expenses in meal costs during the worktime. Employee referral program with attractive bonus scheme
  • Supporting career and family by receiving tax benefits for kindergarten expenses

Creating a future worth living for future generations gets us out of bed every morning. Depending on the project, we are consultants, implementers, or both for sustainable, innovative and economical solutions for real estate, industry, energy and infrastructure. Our more than 6,500 employees at 70 locations worldwide support our customers in interdisciplinary teams. Our thinking is both visionary and realistic. We work independently and as part of a team. With passion and the latest technologies. We unite. Join us at Dreso and let’s create a world we want to live in.

About the job

Apply before

Posted on

Job type

Full Time

Experience level

Location requirements

Hiring timezones

Spain +/- 0 hours

About Stellenangebote

Learn more about Stellenangebote and their company culture.

View company profile

Drees & Sommer is an international consulting company for the construction and real estate sector, headquartered in Stuttgart, Germany. Founded in 1970 by Gerhard Drees and Hans Sommer, the firm has grown from a small engineering office into a global enterprise with over 6,000 employees across more than 70 locations worldwide. The company provides a comprehensive range of services, including development and process consulting, infrastructure consulting, project management, and engineering. Drees & Sommer supports private and public clients in all matters relating to real estate, infrastructure, and industry, accompanying projects from the initial idea through to operation and revitalization.

The company is renowned for its forward-looking approach, often referred to as 'the blue way', which integrates economic efficiency with ecological sustainability. Drees & Sommer is a pioneer in the application of innovative methods such as Building Information Modeling (BIM), Lean Construction Management (LCM), and Cradle to Cradle design principles. By combining strategic consulting with technical expertise, the firm delivers solutions that are not only profitable but also sustainable and user-centric. Their interdisciplinary teams work on complex large-scale projects, ensuring that buildings and infrastructure are future-proof, digitalized, and environmentally responsible.

Employee benefits

Learn about the employee benefits and perks provided at Stellenangebote.

View benefits

Team events

Regular team workshops and events.

Mobile working

Options for mobile working and home office.

Food and drinks

Provision of food and drinks at the workplace.

Corporate Benefits

Access to discount offers from various brands.

View Stellenangebote's employee benefits
Claim this profileStellenangebote logoST

Stellenangebote

View company profile

Similar remote jobs

Here are other jobs you might want to apply for.

View all remote jobs

7 remote jobs at Stellenangebote

Explore the variety of open remote roles at Stellenangebote, offering flexible work options across multiple disciplines and skill levels.

View all jobs at Stellenangebote

Remote companies like Stellenangebote

Find your next opportunity by exploring profiles of companies that are similar to Stellenangebote. Compare culture, benefits, and job openings on Himalayas.

View all companies

Find your dream job

Sign up now and join over 100,000 remote workers who receive personalized job alerts, curated job matches, and more for free!

Sign up
Himalayas profile for an example user named Frankie Sullivan