Security Governance Specialist

November 18

Apply Now
Logo of Syntax

Syntax

Enterprise • Cloud Computing • Professional Services

Syntax is a company that provides enterprise cloud solutions focused on SAP and Oracle EBS integrations. They cater to various industries, offering tailored services that enhance operational efficiency through solutions like Hybrid Cloud and Security Beyond ERP. Syntax also emphasizes the importance of professional networking and community engagement, aiming to connect talent with opportunities.

1001 - 5000 employees

Founded 1972

🏢 Enterprise

📋 Description

• Maintain and enhance the ISMS, ensuring processes are documented, monitored, and continuously improved. • Develop, review, and maintain security policies, standards, and procedures (including technical standards such as IAM, Logging, Cloud Security, and SDLC) in collaboration with engineering and operations teams. • Participate in technical security discussions (e.g., logging, cloud controls, IAM, PAM, endpoint security) to ensure governance requirements are realistic and enforceable. • Review proposed technical designs or projects for alignment with security policies and standards. • Coordinate with GRC during internal and external audits by preparing evidence, ensuring timely responses, and tracking corrective actions to closure. • Support Enterprise Risk Management (ERM) activities by contributing to risk assessments, risk treatment planning, and monitoring mitigation progress. • Develop and deliver governance and policy-related training to business units, functional leaders, and technical teams. • Translate technical requirements into control language that auditors and business leaders can understand. • Provide input into governance metrics by maintaining dashboards, contributing data points, and preparing summaries for management and stakeholders. • Contribute to supplier and third-party governance activities by ensuring minimum security requirements are addressed in procurement processes. • Engage directly with customers to support the development or enhancement of their security governance programs, ensuring alignment with recognized frameworks and Syntax practices.

🎯 Requirements

• 3–5 years of experience in information security governance, compliance, or risk management roles, with exposure to ISMS (ISO 27001). • Strong knowledge of security domains: identity & access management, network security, cloud security, vulnerability management, logging/monitoring, incident response. • Ability to engage in technical discussions with engineers while writing governance documents in clear, business-oriented terms. • Strong knowledge of regulatory frameworks and standards (ISO 27001, SOC 2, NIST CSF, GDPR, etc.). • Hands-on experience supporting audits, evidence preparation, and corrective action tracking. • Exceptional policy/standards writing and stakeholder management skills. • Analytical, problem-solving, and critical thinking skills, with eagerness to continuously learn. • Resourceful, self-motivated, and effective in team environments. • Professional certifications such as ISO 27001 Lead Implementer/Lead Auditor or similar are an advantage. • English fluency (written and spoken).

🏖️ Benefits

• 28 days holiday (23 days holiday + 4 days at Christmas from 15 December to 15 January + 1 day for your birthday)! • Windows laptop for work (Dell or Lenovo)! • Apple or Android smartphone...you choose! • Two lovely offices with a nice garden to relax and have a coffee • Free coffee and soft drinks • Kitchen facilities • Medical insurance with Sanitas • Training: Free AWS and SAP certifications, internal workshops and free access to Linkedin E-learning • Free online English, German, Spanish or French classes through a platform • Online Canteen 2.0

Apply Now

Similar Jobs

November 8

Information Security Manager leading cybersecurity strategy and operations at Technosylva in Spain. Focused on secure architecture, compliance, incident response, and team collaboration.

AWS

Azure

Cloud

Cyber Security

Python

November 7

Novanta Inc.

1001 - 5000

Security Engineer responsible for improving cloud security and threat detection in global operations for Novanta. Collaborating with international teams to strengthen security measures across various platforms.

🗣️🇪🇸 Spanish Required

AWS

Azure

Cloud

Python

Splunk

November 5

Security Engineer at Welltech collaborating with teams to enhance security practices and controls. Focused on vulnerability management, compliance, and awareness to drive security maturity.

AWS

Cloud

Cyber Security

Python

Go

November 4

Senior Product Security Engineer securing Mirantis products and services in Kubernetes-native AI infrastructure. Implementing security controls, driving remediation efforts, and supporting compliance initiatives.

Cloud

Kubernetes

Python

SDLC

Terraform

Go

November 3

Security & Compliance Specialist at Tucuvi managing compliance with ISO 27001 and SOC 2 frameworks. Collaborating with teams to enhance security controls and audit processes.

🗣️🇪🇸 Spanish Required

Built by Lior Neu-ner. I'd love to hear your feedback — Get in touch via DM or support@remoterocketship.com