# GRC Senior Consultant at Thales

Thales is hiring a GRC Senior Consultant. Level rates it Little AI ●○○○; you can [apply on Level](https://jobsbylevel.com/go/7f23db96-19b3-4bc4-a501-3e57762583eb).

AI Level 1, AI centrality 0 out of 100. Vitoria.

## Details

- Company: [Thales](https://jobsbylevel.com/companies/thales)
- AI level: AI Level 1 (score 0 out of 100)
- Location: Vitoria
- Posted: October 9, 2026
- Apply: https://jobsbylevel.com/go/7f23db96-19b3-4bc4-a501-3e57762583eb

## Description

Location: Vitoria, Spain Thales people architect identity management and data protection solutions at the heart of digital security. Business and governments rely on us to bring trust to the billions of digital interactions they have with people. Our technologies and services help banks exchange funds, people cross borders, energy become smarter and much more. More than 30,000 organizations already rely on us to verify the identities of people and things, grant access to digital services, analyze vast quantities of information and encrypt data to make the connected world more secure. Thales in Spain is a leader in technological solutions applied to Defence, Aeronautics, Security, Transportation and Space and, furthermore, is a global centre for excellence in Space, Security of Critical Infrastructures and Transportation. With a turnover of €320 million and a staff of 1,200, it exports approximately 40% of its total production principally to the Middle East, North Africa and Latin America. Join our cybersecurity team as a GRC Senior Consultant and help organizations navigate today’s evolving security and regulatory landscape. You will work on cybersecurity assessments, audits, risk and compliance initiatives across leading frameworks and regulations such as ISO 27001, NIST CSF, ENS, PCI DSS, ISO 22301, GDPR, NIS2 and DORA , while advising clients and contributing to the development and continuous improvement of our GRC services. This is an opportunity to combine your cybersecurity and GRC expertise with consulting, project coordination and client-facing responsibilities , working with different stakeholders and helping organizations strengthen their security and compliance posture. Your responsibilities As a GRC Senior Consultant , you will: Define and validate the scope of cybersecurity assessments, compliance reviews and audits , ensuring alignment with applicable standards and regulatory requirements. Review and assess technical documentation, security policies, procedures, regulations and control frameworks . Conduct interviews and working sessions with stakeholders responsible for security measures, processes and controls. Collect, review and validate supporting evidence as part of cybersecurity assessments and audits. Identify potential compliance gaps and provide guidance on how to address them. Advise clients and internal stakeholders on compliance with information security standards, regulations and cybersecurity best practices . Participate in GRC projects related to frameworks and regulations such as PCI DSS, NIST CSF, ISO 27001, ENS, ISO 22301, GDPR, NIS2 and DORA , as well as emerging areas related to AI governance and compliance . Prepare clear and comprehensive reports, assessments, findings and project deliverables . Support the coordination and management of cybersecurity and GRC projects, working with multidisciplinary teams and different stakeholders. Contribute to the development, evolution and continuous improvement of GRC products and services . Bring a proactive and problem-solving approach to client challenges, identifying opportunities to improve security governance, risk management and compliance processes. What are we looking for? We would love to hear from you if you have: A higher technical degree in Engineering, IT, Telecommunications or a related field . At least 5 years of professional experience in cybersecurity , including a minimum of 3 years of experience in Governance, Risk and Compliance (GRC) . Solid knowledge of cybersecurity principles, practices and technologies . Experience working with security and compliance frameworks and regulations such as: ISO 27001 NIST Cybersecurity Framework (CSF) PCI DSS ENS ISO 22301 GDPR NIS2 DORA AI-related governance and regulatory requirements Knowledge of cybersecurity technologies and experience in projects involving the design, implementation or deployment of cybersecurity solutions . Experience in project management, team coordination and

The description is cut here. Read the full offer: https://jobsbylevel.com/jobs/grc-senior-consultant-at-thales-cdce21

Source: https://jobsbylevel.com/jobs/grc-senior-consultant-at-thales-cdce21

## Cite this page

Level. https://jobsbylevel.com/jobs/grc-senior-consultant-at-thales-cdce21.

Get job alerts: https://jobsbylevel.com/newsletter
