Senior Security Engineer - GRC
Barcelona
Back Market
Find the best deals on refurbished phones, laptops, and tech at Back Market. Up to 70% off when compared to new products. Free delivery, 1-year warranty, 30-day money back guarantee.
Back Market is the world’s leading refurbished electronics marketplace with a team of more than 650, powering operations in 18 countries (and counting!).Back Market is undergoing meteoric growth and has raised $884 million, with a valuation of $5.7 billion. Our mission is simple: empowering people to buy tech sustainably by offering folks a high-quality, accessible, and more eco-friendly alternative to buying new electronics. Why? Refurbished tech helps lower our collective environmental impact.Be part of a great and growing adventure that will change the way the world consumes tech.
Named one of the World's Most Innovative Companies by Fast Company in 2019 and again in 2021, our mission is simple: empowering people to consume tech sustainably by offering folks a high quality, accessible, and more eco-friendly alternative to buying new electronics. Why? Refurbished tech helps lower our collective environmental impact. We have indeed contributed to avoid the production of more than 1,000,000 tons of CO2e worldwide since our launch in 2014.
Be part of an exciting and growing international adventure that will change the way the world consumes tech.
As Senior Security Engineer GRC you will join the Governance, Risks and Compliance (GRC) Squad within the CyberSecurity Tribe.
Our GRC squad is responsible for identifying and mitigating cyber and privacy risks, ensuring compliance with laws and standards (specifically ISO 27001, PCI-DSS, GDPR, CCPA, AI Act, NIS2) that guide Back Market's operations and decision-making processes.
- A meaningful job: you will help avoid thousands of tons of electronic waste and fight against planned obsolescence. It counts!- A meaningful company: we became a mission-driven company in January 2022.- Be part of a worldwide growing company based in Europe, the USA and Asia to face great challenges : you will have the freedom to innovate and adopt new ideas!- Work alongside passionate experts: who will share their knowledge and help you develop and grow in your career. - Grow your career: with a flexible career path and a dedicated Learning & Development team. Back Market will help you evolve with personalized internal trainings and external handpicked providers from day 1!- Leadership Academy by Back Market:“be a coach not a dictator” is at the core of this program ! We train and enable all our leaders to support their team towards achieving goals. Be a manager at Back Market is an unique experience we take by heart.- An attractive salary, equity and a host of benefits including : Lunch voucher, health insurance, relocation package, paid time off for activism in your community, parental benefits, flexible hours, etc…- One Loving Tribe: you will have the opportunity to work in a fast-paced, open-minded and friendly environment. - Be part of one of our Employee Resource Groups createdaround shared identities, common backgrounds and/or special interests crafted to be a safe space and an expressive outlet. - Several internal events: The Monday Brief (weekly)/ The Somehands (monthly)/ The All Hands (annual).- We’re here to SABOTAGE: It’s our mantra. It keeps us focused on what we aspire to be: a little bit sneaky, always smart, kinda frugal and constantly conspiring to create maximum impact.
Back Market is an Equal Opportunity Employer which means we pledge to not discriminate against employees based on race, color, religion, sex, national origin, age, disability or genetic information.. If reasonable accommodations are needed for the interview process, please do not hesitate to discuss this with the Talent Acquisition Team.
Back Market is helping to address one of the biggest challenges of our time: climate change. We take this so seriously that we were awarded status as a “Société à Mission”, or company with a social mission, by the French government. We know we can’t tackle a global problem without a globally representative team so we are committed to embedding diversity, equity and inclusion principles in every aspect of our organization. But more importantly, being One Loving & Free Spirited Tribe is in our DNA as it is one of the five foundational values of our company since we got started way back in 2014. We are committed to hiring and supporting diverse teams of people from all backgrounds, experiences, and perspectives. We know our lofty goals cannot be reached unless everyone has a seat at the table along with the resources and opportunity to grow.
Named one of the World's Most Innovative Companies by Fast Company in 2019 and again in 2021, our mission is simple: empowering people to consume tech sustainably by offering folks a high quality, accessible, and more eco-friendly alternative to buying new electronics. Why? Refurbished tech helps lower our collective environmental impact. We have indeed contributed to avoid the production of more than 1,000,000 tons of CO2e worldwide since our launch in 2014.
Be part of an exciting and growing international adventure that will change the way the world consumes tech.
As Senior Security Engineer GRC you will join the Governance, Risks and Compliance (GRC) Squad within the CyberSecurity Tribe.
Our GRC squad is responsible for identifying and mitigating cyber and privacy risks, ensuring compliance with laws and standards (specifically ISO 27001, PCI-DSS, GDPR, CCPA, AI Act, NIS2) that guide Back Market's operations and decision-making processes.
Being a domain expert and evangelist of cybersecurity and privacy best practices you will :
- Drive multiple cybersecurity and privacy initiatives to achieve our compliance and security goals by collaborating with Engineering, Legal, Product, and Business teamsInfluence decision-making on new third-party partnerships, perform risk assessments on strategic projects or features, and offer expert guidance on security and privacy to educate and empower your colleagues and stakeholders.
- Provide support within the CyberSecurity tribe on technical security projects making sure we comply with our internal security and privacy policies.
- Contribute actively to the development and execution of our cybersecurity and privacy awareness strategy.
What we’re looking for:
- You are a talented engineer with at least 5 years experience of working on security or compliance programs, leading cybersecurity projects and ensuring the proper implementation of security best practices
- You believe in the importance of a risk-based approach to define and maintain security objectives, policies, procedures and action plans necessary for succeeding in your mission
- You care about explaining the rationales for the company's security choices, to ensure that colleagues understand and adopt them
- For you, defining a security requirement without proper analysis or foundation is a non-sense
- You master some best practices and standards such as the ISO/IEC 27000 series, including ISO 27001, 27005 or EBIOS RM
- You are curious, structured and enjoy exploring new methods and technologies. You are transparent in your communication and are able to find solutions with your team and your stakeholders when you don’t have an answer
- You like to share knowledge and make your colleagues aware of good cybersecurity practices, by supporting your proposals with concrete examples and demonstrations
- In-depth knowledge of PCI-DSS and GDPR would be appreciated
- Great English verbal and written communication skills
Recruitment Process :
- Call with Yann, our Tech Talent partner
- Meeting with Quentin & Thomas for deep dive on your past experience
- Team fit interview with Gwendal (Head of Cybersecurity & IT) and one engineer from the SecOps team
- BM Value interview
- A meaningful job: you will help avoid thousands of tons of electronic waste and fight against planned obsolescence. It counts!- A meaningful company: we became a mission-driven company in January 2022.- Be part of a worldwide growing company based in Europe, the USA and Asia to face great challenges : you will have the freedom to innovate and adopt new ideas!- Work alongside passionate experts: who will share their knowledge and help you develop and grow in your career. - Grow your career: with a flexible career path and a dedicated Learning & Development team. Back Market will help you evolve with personalized internal trainings and external handpicked providers from day 1!- Leadership Academy by Back Market:“be a coach not a dictator” is at the core of this program ! We train and enable all our leaders to support their team towards achieving goals. Be a manager at Back Market is an unique experience we take by heart.- An attractive salary, equity and a host of benefits including : Lunch voucher, health insurance, relocation package, paid time off for activism in your community, parental benefits, flexible hours, etc…- One Loving Tribe: you will have the opportunity to work in a fast-paced, open-minded and friendly environment. - Be part of one of our Employee Resource Groups createdaround shared identities, common backgrounds and/or special interests crafted to be a safe space and an expressive outlet. - Several internal events: The Monday Brief (weekly)/ The Somehands (monthly)/ The All Hands (annual).- We’re here to SABOTAGE: It’s our mantra. It keeps us focused on what we aspire to be: a little bit sneaky, always smart, kinda frugal and constantly conspiring to create maximum impact.
Back Market is an Equal Opportunity Employer which means we pledge to not discriminate against employees based on race, color, religion, sex, national origin, age, disability or genetic information.. If reasonable accommodations are needed for the interview process, please do not hesitate to discuss this with the Talent Acquisition Team.
Back Market is helping to address one of the biggest challenges of our time: climate change. We take this so seriously that we were awarded status as a “Société à Mission”, or company with a social mission, by the French government. We know we can’t tackle a global problem without a globally representative team so we are committed to embedding diversity, equity and inclusion principles in every aspect of our organization. But more importantly, being One Loving & Free Spirited Tribe is in our DNA as it is one of the five foundational values of our company since we got started way back in 2014. We are committed to hiring and supporting diverse teams of people from all backgrounds, experiences, and perspectives. We know our lofty goals cannot be reached unless everyone has a seat at the table along with the resources and opportunity to grow.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Job stats:
1
0
0
Categories:
Compliance Jobs
Security Engineering Jobs
Tags: CCPA Compliance GDPR Governance ISO 27001 NIS2 Privacy Risk assessment SecOps Strategy
Perks/benefits: Career development Equity / stock options Flex hours Flex vacation Health care Insurance Relocation support Startup environment Team events
Region:
Europe
Country:
Spain
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.
Information System Security Officer jobsSenior Security Analyst jobsSenior Cloud Security Engineer jobsInformation Security Manager jobsInformation Security Specialist jobsSenior Cybersecurity Engineer jobsSenior Network Security Engineer jobsSecurity Consultant jobsSenior Penetration Tester jobsIT Security Engineer jobsSenior Information Security Analyst jobsSecurity Specialist jobsCyber Security Specialist jobsSenior Cyber Security Engineer jobsChief Information Security Officer jobsInformation System Security Officer (ISSO) jobsIT Security Analyst jobsStaff Security Engineer jobsSystems Engineer jobsSystems Administrator jobsPrincipal Security Engineer jobsCloud Security Architect jobsSenior Product Security Engineer jobsSecurity Operations Analyst jobsCybersecurity Specialist jobs
CI/CD jobsMalware jobsSaaS jobsForensics jobsEDR jobsEncryption jobsSDLC jobsIDS jobsSplunk jobsBash jobsIPS jobsTop Secret jobsRMF jobsOWASP jobsIntrusion detection jobsSQL jobsThreat detection jobsFinance jobsCompTIA jobsDocker jobsDoDD 8570 jobsITIL jobsCRISC jobsActive Directory jobsGIAC jobs
HIPAA jobsTCP/IP jobsVPN jobsBanking jobsMITRE ATT&CK jobsUNIX jobsTerraform jobsOSCP jobsIT infrastructure jobsClearance Required jobsSANS jobsCISO jobsSOX jobsSOC 2 jobsPolygraph jobsDNS jobsJavaScript jobsCCSP jobsAnsible jobsIndustrial jobsSOAR jobsJira jobsCyber defense jobsCryptography jobsGCIH jobs