Information Security Manager
Ebury Malaga Office - Hybrid: 4 days in the office, 1 day working from home per week
What you’ll do
Governance & Compliance (BAU)
GRC Strategy & Architecture
- Risk Management Lifecycle : Own the risk assessment process - you will lead the quantification and communication of risk to business stakeholders to drive informed decision‑making.
- Audit Ownership : Lead and manage external audits as the primary liaison. This includes overseeing the remediation of findings and ensuring we remain continuously compliant across multiple jurisdictions.
- TPRM Leadership : Mature our Third‑Party Risk Management program. You will define the standards for vendor security and ensure high‑impact partners meet Ebury’s rigorous risk appetite.
- Regulatory Horizon Scanning : Proactively monitor the evolving fintech regulatory landscape (e.g., EU AI Act, NIS2, regional ...