
Information Security Compliance Product Owner
Liebherr Group
full-time
Posted on:
Location Type: Office
Location: Madrid • Spain
Visit company websiteExplore more
Tech Stack
About the role
- Define and own the Compliance Product scope, roadmap, operating model, and KPIs aligned with CIS and GRC strategy
- Ensure continuous alignment of ISF components (policies, standards, procedures, control baselines) with regulatory, contractual, and certification requirements
- Maintain a centralized inventory of applicable information and cybersecurity regulations (e.g. NIS2, GDPR, CRA, EU AI Act, defense-related obligations)
- Perform regulatory applicability assessments and structured compliance gap analyses
- Define, track, and report remediation plans for identified compliance gaps
- Monitor regulatory changes and ensure timely updates to the ISF
- Govern ISMS and CSMS documentation, readiness, and support in companies certification activities
- Support with answering to compliance and security assessments from customers, contract security clause reviews, and customer audits
- Report compliance status, certification progress, risks, and KPIs to leadership
Requirements
- Bachelor’s or Master’s degree in Cybersecurity, Computer Science, or related field
- 5+ years of working experience in information security, IT Security, compliance or related roles (Information Security Compliance Manager, Information Security Officer, etc)
- Certifications such as CISSP, CISM, CRISC are a plus
- Hands-on or governance experience with ISO/IEC 27001 certification programs
- Strong understanding of global cybersecurity regulations (e.g. NIS2, GDPR, CRA)
- Experience coordinating audits, regulatory assessments, or certification activities
- Familiarity with NIST CSF and ISO/IEC 27001 and IEC/62443 governance concepts
- Demonstrated ability to manage stakeholders across IT, OT, engineering, and business management in complex environments
- Excellent written and verbal communication skills in English and German is a plus
Benefits
- Competitive compensation and benefits package that recognizes your expertise
- Flexible and hybrid working model
- Creative freedom and responsibility to shape processes and solutions in our global transformation
- Continuous learning and development with tailored training and certification opportunities
- Meal vouchers
- Life and accident insurance
- Option to include a premium private health insurance package as part of the flexible remuneration
- A safe, stable and international workplace within a trusted family business that invests in people
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
information securitycomplianceregulatory assessmentsISO/IEC 27001NIST CSFcybersecurity regulationsgap analysisremediation planningauditinggovernance
Soft Skills
stakeholder managementcommunicationorganizational skillsleadership
Certifications
CISSPCISMCRISC