PitchMeAI
Syntax Iberia

Security Compliance Specialist (m/f/d)

Syntax Iberia · Spain

  • Hybrid
  • Full-time
  • €60,000 / year
  • Spain

Job highlights

  • Ensure compliance with security frameworks and regulations.
  • Analyze and validate technical compliance evidence.
  • Support internal and external audits effectively.
  • Collaborate with IT, Security, and GRC teams.
  • Utilize SIEM tools for control validation.

About the role

Security Compliance Specialist

Syntax is a leading Managed Cloud Provider for Mission Critical Enterprise Applications and has been providing comprehensive technology solutions to businesses of all sizes since 1972. Syntax has undisputed strength to implement and manage ERP deployments (Oracle, SAP) in a secure and resilient private, public or hybrid cloud. With strong technical and functional consulting services, and world-class monitoring and automation, Syntax serves some of North America’s largest corporations across a diverse range of industries. Syntax has offices worldwide, and partners with Oracle, SAP, AWS, Microsoft, IBM and other global technology leaders.

POSITION SUMMARY

The Security Compliance Specialist will be responsible for ensuring ongoing compliance with security frameworks and privacy regulations, including ISO 27001, SOC 2, NIST, CIS, GDPR, and related requirements. This is a hands-on technical role requiring the ability to gather, analyze, and validate compliance evidence from IT systems, applications, and security tools.The specialist will work closely with IT, Security, and GRC teams to maintain compliance posture, support internal and external audits, and contribute to continuous improvement of controls and processes. While primarily internally focused, this role may also involve responding to customer security questionnaires or supporting audit interactions. The position requires strong technical knowledge, familiarity with system administration, and the ability to use monitoring and log analysis tools such as Splunk to validate security controls.

Responsibilities

  • Operate and maintain security compliance processes across ISO 27001, SOC 2, NIST, CIS, GDPR, and other relevant frameworks.
  • Collect, analyze, and validate technical compliance evidence from systems, applications, and security platforms.
  • Use SIEM and other monitoring tools to review logs, configurations, and control effectiveness.
  • Support internal and external audits by preparing evidence, coordinating with stakeholders, and responding to auditor requests.
  • Contribute to security control testing, system hardening reviews, and validation of technical baselines.
  • Collaborate with internal stakeholders to ensure compliance requirements are integrated into operations and projects.
  • Support responses to customer security questionnaires and due diligence requests as needed.
  • Maintain documentation of compliance processes, evidence repositories, and audit history.
  • Monitor changes in regulatory and framework requirements, recommending updates to controls or processes as required.
  • Assist in developing metrics and reports on compliance status for leadership review.

Required Skills and Experience

  • 3-5 years of experience in IT administration, security operations, or compliance roles.
  • Strong understanding of security frameworks and regulations: ISO 27001, SOC 2, NIST CSF, CIS, GDPR, and related privacy requirements.
  • Hands-on experience with SIEM platforms (e.g., Splunk, Microsoft Sentinel, QRadar, Elastic) for compliance and security validation.
  • Background in IT system administration (Windows, Linux, or cloud environments) with knowledge of security controls and configurations.
  • Familiarity with common cybersecurity domains: access control, logging/monitoring, vulnerability management, and incident response.
  • Experience preparing compliance evidence and supporting audits.
  • Strong analytical and problem-solving skills, with attention to detail.
  • Ability to collaborate effectively with internal stakeholders to achieve compliance objectives.
  • Effective communication skills, with the ability to explain technical compliance evidence to non-technical stakeholders and, when required, to customers.
  • Relevant certifications (e.g., CompTIA Security+, CISSP, CISM, ISO 27001 Lead Implementer/Auditor, or SIEM certifications) are an advantage.
  • English language fluency (written and spoken).

Key Technologies

  • SIEM Platforms: Splunk, Microsoft Sentinel, QRadar, Elastic, or equivalent.
  • System Administration: Windows Server, Active Directory, Linux, and cloud platforms (AWS, Azure, Oracle).
  • Vulnerability & Compliance Tools: Qualys, Tenable, CIS benchmark tools, or equivalent.
  • Other platforms: SharePoint, Confluence, ServiceNow.

Mandatory Requirements

  • Nationality or Work Authorization: Spanish nationality, or alternatively a permanent work permit/VISA for Spain.
  • Language Proficiency: Advanced level of Spanish and English (both written and spoken).

Why Syntax?

  • Become a part of our success story and work in a company with exciting innovation projects that are causing a stir across the industry. We recently launched one of the world's most advanced manufacturing facilities based on SAP S/4HANA Cloud and SAP Digital Manufacturing Cloud for Execution - for Smart Press Shop, a pioneering joint venture between Porsche and forming specialist Schuler.
  • Competitive, above-average compensation
  • Global tourist: With us, you can also work from abroad from time to time
  • Flexible working time models, home office
  • Attractive benefits, e.g. various health offers
  • A modern environment in which the "you" is part of it
  • Open feedback culture, flat hierarchies and a motivated team
  • Individual career planning with continuous training and coaching on the job

Benefits

  • Flexible hours, Monday to Thursday 8h, and Fridays.... 6h. In addition, the whole month of August and the first half of September we have an intensive timetable.
  • 28 days holiday (23 days holiday + 4 days at Christmas from 15 December to 15 January + 1 day for your birthday)!
  • Windows laptop for work (Dell or Lenovo)!
  • Apple or Android smartphone...you choose!
  • Two lovely offices with a nice garden to relax and have a coffee
  • Free coffee and soft drinks
  • Kitchen facilities
  • Medical insurance with Sanitas
  • Training: Free AWS and SAP certifications, internal workshops and free access to Linkedin E-learning
  • Free online English, German, Spanish or French classes through a platform
  • Online Canteen 2.0

You see a personal challenge in this responsible task? Apply now - and become part of the SYNTAX team!

Key skills/competency

  • Security Compliance Specialist
  • ISO 27001
  • SOC 2
  • NIST
  • GDPR
  • SIEM
  • Splunk
  • System Administration
  • Audit Support
  • IT Security

Skills & topics

  • Security Compliance Specialist
  • ISO 27001
  • SOC 2
  • NIST
  • CIS
  • GDPR
  • SIEM
  • Splunk
  • IT Security
  • Compliance

How to get hired

  • Tailor your resume: Highlight experience in ISO 27001, SOC 2, NIST, GDPR, and SIEM tools like Splunk.
  • Showcase technical skills: Emphasize your IT system administration background and familiarity with cybersecurity domains.
  • Quantify achievements: Provide examples of successful audit support and compliance evidence collection.
  • Prepare for interviews: Be ready to discuss your understanding of security frameworks and technical validation methods.
  • Highlight language skills: Mention your advanced Spanish and English proficiency as per mandatory requirements.

Technical preparation

Master ISO 27001, SOC 2, NIST, CIS, and GDPR.,Gain hands-on SIEM experience (Splunk, Sentinel).,Understand IT system administration and security controls.,Practice collecting and validating compliance evidence.

Behavioral questions

Describe a complex compliance challenge you faced.,How do you handle conflicting stakeholder priorities?,Explain a technical control to a non-technical audience.,How do you stay updated on regulatory changes?

Frequently asked questions

What are the key security frameworks the Security Compliance Specialist role at Syntax requires knowledge of?
The Security Compliance Specialist role at Syntax requires a strong understanding of ISO 27001, SOC 2, NIST, CIS, and GDPR, along with related privacy regulations.
What type of technical experience is essential for this Security Compliance Specialist position at Syntax?
Essential technical experience includes hands-on work with SIEM platforms like Splunk, system administration (Windows, Linux, cloud), and familiarity with cybersecurity domains such as access control and incident response.
Does Syntax require specific certifications for the Security Compliance Specialist role?
While relevant certifications like CompTIA Security+, CISSP, CISM, or SIEM certifications are an advantage, they are not strictly mandatory for the Security Compliance Specialist role at Syntax.
What are the language requirements for the Security Compliance Specialist job at Syntax Iberia?
The Security Compliance Specialist role at Syntax Iberia requires advanced proficiency in both Spanish and English, covering both written and spoken communication.
What is the work arrangement for the Security Compliance Specialist position at Syntax?
Syntax offers flexible working time models and home office options for the Security Compliance Specialist role, indicating a hybrid or remote work arrangement is possible.
What specific SIEM tools does Syntax use that a Security Compliance Specialist should be familiar with?
Syntax utilizes SIEM platforms such as Splunk, Microsoft Sentinel, QRadar, and Elastic, or equivalent tools, for compliance and security validation.
How does Syntax Iberia support professional development for its Security Compliance Specialist team members?
Syntax Iberia supports professional development through individual career planning, continuous training, coaching on the job, and offers free AWS and SAP certifications, internal workshops, and LinkedIn E-learning access.
What are the unique benefits offered to employees at Syntax, as highlighted for the Security Compliance Specialist role?
Syntax offers competitive compensation, the ability to work from abroad, flexible hours, generous holiday time (including Christmas and birthday), a choice of smartphone, and various health and training benefits.