Cyber Security Manager (Incident Response)
Hub
Shine is the financial copilot for entrepreneurs and small business owners.
Founded by serial entrepreneurs Rico Andersen and Martin Hegelund, Shine is a leading European fintech unicorn on a mission to restore the joy of running a business, by ending wasted time on financial admin. Shine offers a connected solution for invoicing, accounting, payroll, business accounts, payments, and financing, meaning business owners can focus their energy on growing a healthy business, not held back by manual admin.
Part of something bigger
Today we're part of Cegid, a European leader in cloud software for finance and accounting. Together we're building Europe's leading financial copilot for small businesses and their accountants.
Shine already supports more than 400,000 small businesses. As part of Cegid, we now reach over one million small businesses and 15,000 accountants across Europe.
We're a multicultural team working from France, Germany, Denmark and the Netherlands, contributing to a wider European network that spans Spain, Portugal and Belgium.
Your hiring experience matters
Just as we respect our customers' time, we respect yours. Your experience with Shine and Cegid should feel simple, transparent and genuinely supportive.
If this sounds like somewhere you want to grow, we'd love to hear from you.
The Information Security team at Shine
At Shine, our Security team operates as a strategic driver rather than a support function. We work directly with leadership to integrate resilience into the company’s core, navigating the complex intersection of cloud-native architecture, AI innovation, and rigorous regulatory standards like DORA and ISO 27001. By partnering cross-functionally with Engineering and Risk, we aren’t just maintaining a perimeter; we are building a scalable, high-visibility security framework that defines the future of digital operational excellence in the fintech space.
Your Role as a Cyber Security Manager (Incident Response) at Shine
Shine Bank is looking for an Cyber Security Manager (Incident Response) to help shape and operate our information security and digital operational resilience framework. Reporting directly to the CISO , you will take a key role in implementing and maturing our Cyber Defence capabilities in close collaboration with IT, Risk, Internal Audit and Management. As Cyber Security Manager, you will own our defensive security technology stack and our incident-readiness capability.
Your responsibilities
Design, write, and maintain incident response playbooks for our most relevant scenarios aligned with DORA ICT incident-management expectations.
Ensure robust DDoS protection across our internet-facing and payment-critical services — selecting and managing mitigation solutions (e.g. Cloudflare, Akamai, AWS Shield) validating that protection holds up to the availability expectations regulators place on a payment institution.
Plan and facilitate regular tabletop exercises and simulations across technical, operational, and executive stakeholders; capture findings and drive remediation to closure.
Manage security vendor and MSSP relationships, contribute to the security technology roadmap and budget, and translate threat intelligence into concrete control improvements.
Partner with the SOC Manager to ensure tooling supports detection and response use cases (mapped to MITRE ATT&CK).
Provide the technical evidence and control assurance the Information Security (GRC) function needs for PCI-DSS, DORA, and ACPR-related obligations.
Report on resilience metrics and the effectiveness of deployed controls to security leadership. Job located in Berlin or Madrid office, with possibility of two remote working days per week
About you
Hands-on background in technical / engineering security operations, ideally within regulated financial services, payments, or fintech.
Practical experience deploying and operating EDR/XDR platforms (e.g. CrowdStrike, SentinelOne, Microsoft Defender) and other core defensive tooling.
Hands-on experience with DDoS mitigation and edge/CDN security (e.g. Cloudflare, Akamai, AWS Shield/WAF) and an understanding of how to protect high-availability, customer-facing services.
Demonstrated incident response experience — you have built playbooks and run tabletop exercises, not just read about them.
Working knowledge of DORA, PCI-DSS, ISO 27001 and MITRE ATT&CK.
Strong stakeholder and vendor management skills, with the ability to bridge technical detail and business risk.
Fluent English required; German is a strong advantage .
Equal Opportunity Employer
We follow the principle of equal treatment to consider all job applicants and do not discriminate based on their gender, sexual orientation, color, racial or ethnic origin, religion, disability, etc. as per applicable law.
Our recruitment process
A 30' first call with Talent Acquisition to get to know you better and share more about Shine.
A 60' interview with your potential lead to discuss your past experiences and the role we are offering.
A 30' Interview with our Chief Complience Officer to dive deeper into the technical aspects.
A 60' business case presentation to highlight your skills and give you a hands-on feel for the role.
A soft skills interview to see how we can best support your growth at Shine.
#J-18808-Ljbffr- ¡ÚNETE A NUESTRO EQUIPO! Buscamos un/a Project Manager que quiera liderar proyectos tecnológicos con impacto internacional en ámbitos... ...de referencia europeos. ¿Cuál será tu misión? Serás responsable de liderar proyectos tecnológicos desde su planificación hasta...Ofertas de empleo recomendadasSubcontratistaTrabajo híbrido
- ...Chief Information Security Officer - Tech Risk... ...take a proactive and responsible approach toward risk management. Our Chief Data &... ...you will enable the secure and responsible evolution... ..., strengthening cyber resilience,... ...reporting on cyber risk, incidents, remediation...Ofertas de empleo recomendadasPrácticaRemotoTrabajo híbridoHorario flexibleTrabajo por turnos
- ...for EMEA, delivers secure and high-... ...recruiting an IT Risk & Cyber Security Analyst... ...This role is key in managing cyber risks,... ...and English). Responsibilities Provide expert... ...to production. Manage exception requests... ...with cybersecurity incidents and protection...Ofertas de empleo recomendadasTiempo completoTrabajar en la oficinaRemotoTrabajo híbridoLunes a viernes
- ...Mercados Españoles is seeking an Information Security Officer in Madrid with the possibility to... ...to 40%. You will apply information and cyber security expertise, communicating IT... ...and business stakeholders to strengthen security controls and incident #J-18808-Ljbffr...Ofertas de empleo recomendadasDesde casaTrabajo híbrido
- ...Sinclair is Hiring! Join Our Team as a IT Security & Compliance Manager We are currently recruiting for IT Security & Compliance Manager at... ...customers and colleagues What You'll Be Doing: Audit response and readiness — primary • Act as the single point of...Ofertas de empleo recomendadasTrabajar en la oficinaRemotoTrabajo híbrido
- ...Cloud, Network/Infra, IAM, Data Security, Windows/Linux OS) ~... ...main types of cybersecurity incidents and how to protect against them... ...assessment. Third-party risk management. Risk processes or risk cards... ...experience in IT Risk, Cyber Risk or Technology Risk. Strong...Trabajar en la oficinaRemoto
- ...seeks a Chief Information Security Officer - Tech Risk & Cybersecurity to lead cyber risk governance and secure Data & AI platforms in Madrid... ...a strong focus on risk management, regulatory alignment, and... ...initiatives, ensuring resilience, incident readiness, and ongoing...Trabajo híbridoHorario flexible
- ...infraestructuras y procesos cumplan las normas y reglamentos en materia de calidad, salud y seguridad, protección del medio ambiente y responsabilidad social. Ayudamos a las organizaciones a controlar los riesgos y mejorar el rendimiento, según las necesidades específicas...ContratistaTiempo completoTrabajar en la oficinaRemotoOffshoreHorario flexible
de 40000 a 50000 €/año
...es el criterio de fondo. Tendrás a tu cargo a una persona responsable de microinformática, que además apoya en la corrección de incidencias... ...Conversación inicial de encaje (30--40 minutos). Entrevista final con CEO y HR Manager en la oficina y visita. #J-18808-LjbffrIndefinidoAprendizPrácticaTrabajar en la oficinaRemotoTurno de tardeHorario flexible- ...Tu trabajo ayuda a prevenir riesgos, proteger a las personas trabajadoras y asegurar que las organizaciones avanzan de forma responsable. ️ Marca que da confianza y te posiciona Ir con el nombre AENOR abre puertas. Las organizaciones valoran tu experiencia desde...Trabajo de veranoAprendizJornada intensiva
- ...analysis), identificando riesgos, incumplimientos y ámbitos prioritarios de actuación. Revisar modelos de gobernanza, roles y responsabilidades, así como procesos de gestión, tratamiento y supervisión de riesgos. Analizar procesos operativos críticos y la gestión de...
- ...acercamos la tecnología a la sociedad. En cumplimiento de la normativa vigente en materia de protección de datos te informamos que el responsable de tus datos personales es GRUPO BABEL (consultar empresas en la política de privacidad), y los utilizará para gestionar tus...Remoto
- ...máximo de 6 meses, Certificación “Certified Information Security Manager (CISM)”, o compromiso de obtención en un plazo máximo de 6 meses... ...en materia de protección de datos te informamos que el responsable de tus datos personales es GRUPO BABEL (consultar empresas en...ContratoRemoto
- ...Aceptas el desafío? ¡Te esperamos!***En cumplimiento de la normativa vigente en materia de protección de datos te informamos que el responsable de tus datos personales es GRUPO BABEL (consultar empresas en la política de privacidad), y los utilizará para gestionar tus...Remoto
- ...Sistemas de Gestión de Seguridad de la Información (SGSI). Tus Responsabilidades Clave: Liderarás proyectos de consultoría en... ...interlocución principal con clientes, comités de dirección, y responsables de negocio y tecnología, comunicando de manera clara y efectiva...
- ...Hombre/Mujer) Perfil idealmente procedente de Consultoría (Manager o Senior Manager), que haya liderado equipos de desarrollo de... ...aportar soluciones al equipo técnico. Este rol combina responsabilidades estratégicas con una implicación directa en el desarrollo, y...PrácticaTiempo completo
90000 €/año
...tecnológica de la organización, impulsando la adopción de IA a nivel de producto, operaciones y propuesta de valor para clientes. Serás responsable de definir y ejecutar la visión tecnológica de la compañía, identificando nuevas oportunidades de mercado y convirtiendo la...IndefinidoPrácticaTiempo completoEmpleo permanenteRemoto- ...The Infrastructure Digital & Technology Manager leads the planning, implementation, and... ...projects, ensuring efficient, secure, and data‑driven project delivery. The... ...strategic and operational alignment. Key Responsibilities 1. Digital Strategy & Implementation...ContratistaRemoto
- ...their ideas. Come and shape the future of finance with us. Information Security Officer Madrid | Working from home up to 40% | Reference 8228 What You Bring experience in information/cyber security good knowledge of technical IT (networks, operating systems,...Desde casaHorario flexible
- En SGS nuestra misión es aportar valor a la sociedad, proporcionando un entorno sostenible. Con nuestro trabajo garantizamos la seguridad y calidad, aportando confianza a todos los ámbitos de la sociedad, incluso en aquellos que no son visibles. Contamos con las ...Contrato
- Compass Group España es parte de Compass Group PLC, líder mundial en Restauración y Support Services. Desde hace más de 50 años ofrecemos nuestros servicios en sectores clave de Business & Industry, Healthcare, Seniors, Education, Sports & Leisure y Catering con un portfolio...IndefinidoTiempo completoContratoRemotoJornada intensiva1 día a la semana
- SGS está buscando un/a Coordinador/a de Seguridad y Salud para la delegación de Madrid. El candidato/a ideal tendrá formación en ingeniería o arquitectura y un máster de PRL, con experiencia en elaboración de informes y asistencia a reuniones de obra. Participarás en...
- Compass Group España busca incorporar a un/a Coordinador/a en Seguridad Alimentaria. Contarás con la misión de implantar y hacer seguimiento del APPCC en los centros de tu actuación, realizar auditorías de higiene y comunicarte con administraciones y clientes. Requisitos...
- ...finance with us. Business Information Security Officer Madrid | Working from home up... ...the assigned business area, supporting managers and key stakeholders Advise and support... ...service‑oriented mindset and ability to manage multiple topics in parallel and work effectively...Desde casaHorario flexible
- ...und Chancengleichheit lebt. Du bist Teil des Cyber Governance, Risk and Compliance Teams, das das Cyber Security Framework für die gesamte BASF Gruppe... ...Cyber Security, insbesondere Governance, Risk Management, Compliance und Projektmanagement; Erfahrung in...Desde casa
- ...proyecto serían : Apasionado de la seguridad y la tecnología. Voluntad de hacer siempre lo mejor, crecer y asumir nuevas responsabilidades. Capacidad para aprender y crecer en un entorno en evolución. Capacidad organizativa. Capaz de trabajar tanto de...AutónomoRemotoTrabajo híbridoHorario flexible
- ...en la gestión administrativa de comunidades de propietarios, asegurando el cumplimiento de normativas y estatutarias. Las responsabilidades incluyen atención al cliente, gestión de incidencias y control de llaves y actas, con oportunidades de formación interna y desarrollo...
- ...assessment to bridge production and cybersecurity teams. The ideal candidate has strong knowledge of firewall/proxy technologies, IT security frameworks (NIST, CIS, ISO27001) and fluent English, with proven experience in IT or technology risk in international environments...
- OPINATOR busca un Gestor de Tecnología para supervisar y gobernar la función tecnológica, la plataforma SaaS y la seguridad/compliance. Coordinarás IT interno, proveedores y la implantación de IA a través de un enfoque orientado a costes y rendimiento. La posición requiere...
- ...Senior Director, Deputy Chief Information Security Officer, you will be the operational... ...and product security function, embedding secure software development practices across architecture... ...You will oversee product vulnerability management, coordinated vulnerability disclosure...Tiempo completo
¿Quieres recibir más ofertas?
Suscríbete y recibe ofertas similares para Cyber Security Manager (Incident Response). ¡Entérate antes que nadie!
- coordinador de seguridad y salud en el trabajo Madrid
- coordinador de seguridad Madrid
- coordinador seguridad social Madrid
- coordinador de seguridad y salud en obra Madrid
- coordinador seguridad y salud Madrid
- coordinador seguridad privada Madrid
- consultor junior de ciberseguridad Madrid
- operador de ciberseguridad Madrid
- ciberseguridad Madrid
- becario-ciberseguridad Madrid


