702,472open jobs
41,481companies
101,716added this week
Browse all
Salary
$54k – $122k per year (Estimated)
Location
Remote/Hybrid (Barcelona, Spain)
Seniority
Senior · 5+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
Delivery Hero is a German company founded in Berlin in 2011 that operates online food ordering and delivery platforms in more than seventy countries, mostly under local brands rather than a single global name. Its network includes Talabat in the Middle East, foodpanda across Asia, PedidosYa in Latin America, Yemeksepeti in Turkey and Glovo in southern Europe and Africa, alongside a large quick commerce business running its own dark stores for grocery delivery. Listed in Frankfurt, the group has been consolidating its portfolio and listing regional units separately to close the gap between its market value and the value of its parts.

Glovo is part of the Delivery Hero Group, the world’s pioneering local delivery platform, our mission is to deliver an amazing experience-fast, easy, and to your door. We operate in around 65 countries worldwide. Headquartered in Berlin, Germany. Delivery Hero has been listed on the Frankfurt Stock Exchange since 2017 and is part of the MDAX stock market index.

Glovo is seeking a proactive Security GRC Engineer to help strengthen our global security posture and navigate a rapidly evolving regulatory environment. In this multifaceted role, you will support compliance frameworks (PCI DSS, ISO 27001, NIS2), internal and external audits, drive risk assessment and remediation, and pioneer security awareness programs within our organization. Acting as a strategic bridge between technical engineering, legal, and business stakeholders, you will translate complex legal and regulatory demands into robust, actionable security controls. The ideal candidate brings deep cybersecurity risk expertise, hands-on experience with GRC tools, and the collaborative mindset needed to foster a security-first culture across Glovo.

Be a part of a team where you will:

  • Develop, implement, and maintain security policies and procedures in line with relevant compliance frameworks (e.g., ISO 27001, NIST, PCI DSS, GDPR, NIS2, EU AI Act).

  • Develop, execute and deliver security awareness programs to educate employees on best practices and compliance requirements.

  • Conduct security assessment risks, recommending and implementing mitigation strategies, maintaining a risk register and monitoring the status of remediation plans.

  • Coordinate and respond to customer security inquiries and due diligence questionnaires (e.g., SIG, CAIQ). Review and provide input on contract modifications related to security, data protection, and privacy.

  • Propose, develop and implement processes and tools for continuous monitoring of security monitoring to ensure ongoing adherence to policies.

  • Assist with the end-to-end security certification and re-certification process (such as PCI DSS, ISO 27001, NIS2, among others).

  • Assist with internal assessments to identify gaps, weaknesses, or non-compliance issues within our security controls.

  • Support external and internal audits by preparing documentation and coordinating with auditors, follow ups and findings remediation.

  • Serve as a key liaison between technical teams, legal, internal audit, and business units to ensure a unified approach to security and compliance

You have:

  • BA/BS in Computer Science, Information Systems, or similar field.

  • Professional security certifications (CISSP, CISM, CISA, ISO 27001 Lead Implementer or equivalent).

  • Minimum 5 years of experience in the field or in a related area.

  • Solid understanding and previous experience of security control frameworks (NIST, PCI DSS, GDRP, ISO 27001, NIS2)

  • Hands-on experience with GRC platforms (e.g. RSA Archer, SAP GRC, StandardFusion, ServiceNow, OneTrust, etc).

  • Strong ability to manage and report on multiple projects, prioritizing efforts, managing time effectively, and requiring minimal direction in the execution.

  • Proven problem solving, analytical and investigative skills combined with the ability to develop creative solutions and navigate through ambiguity in a fast-paced, agile environment.

  • Proven team player, collaborating well with others to tackle problems in a team-focused dynamic.

  • Excellent written and communications skills, as well as strong interpersonal and relationship building skills.

  • Experience with compliance in cloud environments (AWS, Azure, GCP) and knowledge of frameworks like the Cloud Controls Matrix (CCM).

  • Experience in risk quantification methodologies (e.g., FAIR) to assess financial and operational impact of security risks.

  • Strong background in designing and delivering effective security awareness programs to foster a security-first culture.

Nice-to-haves:

  • Development skills to automate integrations or processes (e.g. python).

  • Experience with developing, documenting, and testing Business Continuity Plans (BCP) and Disaster Recovery (DR) plans.

  • Working knowledge of the EU AI Act, including its risk-based approach and requirements for high-risk and general-purpose AI models. Familiarity with AI security threats and relevant frameworks (NIST AI RMF, MITRE ATLAS).

At Glovo, your success is defined by both results and behaviors. We hire for excellence in craft and for the Leadership Principles that shape how we think, decide, and collaborate. What you achieve matters and how you achieve it defines us. Together, they move the business forward and deliver great experiences. Learn more about our Leadership Principleshere .

Here at Glovo, we thrive on diversity, we believe it enhances our teams, products, and culture. We know that the best ideas come from a mashup of brilliant diverse minds. This is why we are committed to providing equal opportunities to talent from all backgrounds - all genders, racial/diverse backgrounds, abilities, ages, sexual orientations and all other unique characteristics that make you YOU. We will encourage you to bring your authentic self to work, fostering an inclusive environment where everyone feels heard.

Feel free to note your pronouns in your application (e.g., she/her/hers, he/him/his, they/them/theirs, etc).

So, ready to take the wheel and make this the ride of your life?

Delve into our culture by taking a peek at our Instagram and check out our LinkedIn and website!

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
702,472 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Barcelona
$19k – $47k per year (Estimated) • Remote • 2+ years exp • Moscow
Python
Bash
Databases
RabbitMQ
Apache Kafka
AI/ML
Weights & Biases
MLFlow
AI Agents
Kubeflow
LLM
DevOps
Rest API
gRPC
Terraform
Ansible
GCP
Helm
GitHub Actions
Loki
OpenTelemetry
Prometheus
Pulumi
WebSockets
Yandex Cloud
GitLab CI
Azure
CI/CD
ArgoCD
Jenkins
AWS
Docker
Kubernetes
Grafana
Harbor
Linux
VPN
Apply
Backend Engineer 8 hours ago
$15k – $40k per year (Estimated) • In office • 1+ year exp • Mumbai
Go
Java
AI/ML
AI Agents
DevOps
GCP
Azure
AWS
Apply
Medical Advisor 8 hours ago
$37k – $91k per year (Estimated) • In office • Full-Time • 3+ years exp • Bachelor's Degree • Riyadh
DevOps
GCP
Apply
$63k – $87k per year • In office • Full-Time • Bratislava
Apex
Apex
MuleSoft
Databases
Databricks
Apache Kafka
AI/ML
AI Agents
AWS Bedrock
RAG
AWS Bedrock AgentCore
Knowledge Graph
DevOps
AWS
API Gateway
IoT
MQTT
OPC UA
Apply
$23k – $64k per year (Estimated) • In office • Bengaluru
DevOps
GCP
Management
Agile
Apply
$30k – $77k per year (Estimated) • In office • Full-Time • 2+ years exp • Bachelor's Degree • Barcelona
Python
SQL
Analytics
Tableau
Power BI
A/B Testing
Looker
Apply
$38k – $86k per year (Estimated) • In office • Full-Time • 5+ years exp • Bachelor's Degree • Prague
Apply
$11k – $28k per year (Estimated) • In office • Full-Time • 4+ years exp • Bachelor's Degree • Taguig
SQL
Analytics
Microsoft Excel
Management
Google Sheets
Apply
$19k – $51k per year (Estimated) • Remote/Hybrid • Full-Time • 10+ years exp • Kuala Lumpur
Apply
$28k – $64k per year (Estimated) • Equity • In office • Full-Time • 5+ years exp • Kyiv
Python
SQL
Analytics
Tableau
Power BI
Looker
Microsoft Excel
Management
Google Sheets
Apply
$40k – $55k per year • Remote • Full-Time • 1+ year exp • Barcelona
Apply
SDR French Market 2 days ago
$29k – $40k per year • In office • Full-Time • 1+ year exp • Barcelona
Apply
Software Engineer 2 days ago
$46k – $80k per year • In office • Full-Time • Bachelor's Degree • Barcelona
Apply
$34k – $52k per year • In office • Full-Time • 1+ year exp • Barcelona
Apply
$36k – $85k per year (Estimated) • In office • Full-Time • 3+ years exp • Barcelona
Apply
See all jobs
This is one of many
702,472 more open roles from verified company boards, updated every day.