Global Director, Business AI Cyber Security (m/f/d)
Barcelona, B, ES, 08022
Syntax is a leading Managed Cloud Provider for Mission Critical Enterprise Applications and has been providing comprehensive technology solutions to businesses of all sizes since 1972. Syntax has undisputed strength to implement and manage ERP deployments (Oracle, SAP) in a secure and resilient private, public or hybrid cloud. With strong technical and functional consulting services, and world-class monitoring and automation, Syntax serves some of North America’s largest corporations across a diverse range of industries. Syntax has offices worldwide, and partners with Oracle, SAP, AWS, Microsoft, IBM and other global technology leaders.
The Syntax Security Organisation protects Syntax and its employees, secures the services Syntax sells to its customers, and delivers managed security services to customers globally.
Syntax Business AI is a new line of business practice sells services enabling customers to adopt AI in their core business processes. Business AI start with the business problems that matter most in customers businesses and prove value in weeks. Syntax combines industry knowledge with ERP/Core Process access and expertise to deliver measurable outcomes by AI and sustain them over time.
The Global Director, Business AI Cyber Security (m/f/d) is there for the inception of the new services and will build and develop offerings strategically, operationally and technically.
This position owns the security-specific offerings that Business AI sells and supports the rest of our Business AI portfolio in keeping its offerings secure by design. The Director owns the method behind the security offerings and the evidence behind what customers are told.
The role sits within Syntax's Security Organisation. The responsibilities start with a virtual team, and over time this role will transition to owning, managing and leading a team directly as demand for the offerings grows. Until then, the Director also delivers engagements, with the vCISO bench and individuals from other teams.
Your time will split across the Business AI security practice, with accountability from end to end - working with the Global CISO to define and deliver the strategy, method ownership, delivery, roadmap and building the service offering to sellers and the Business AI Practice.
You will be the trusted adviser and SME on Business AI Security.
KEY RESPONSIBILITIES
This role owns Business AI Cyber Security from start to finish. You'll set the strategy, design and launch the offerings, and become the senior security advisor on Business AI to Syntax and its customers.
Strategy and Design
- Alongside the Global CISO, define the strategy, target operating model and business case, and secure senior leadership sign-off.
- Design the offerings end to end (scope, engagement model, deliverables and pricing inputs), working from market, threat and regulatory insight (EU AI Act, ISO/IEC 42001, NIST AI RMF).
- Own the offering roadmap from first release onwards and make sure the wider Business AI portfolio is secure by design.
Method and Delivery
- Build and maintain the core IP: the assessment runbook, the evidence-collection toolset, the AI-application classification list, the risk model and the report templates.
- Launch and own the offerings, and set the quality bar so delivery is consistent and repeatable. Correct any drift before it reaches a second customer.
- Sign off the go-live verdict on every assessment.
Advisory
- Act as trusted advisor to customer CISOs and CTOs, translating technical findings into business risk.
- Advise on the control position for Syntax's own use of AI, and feed recurring customer findings back into Syntax's security architecture and standards.
Assurance
- Own the evidence behind every security, compliance and service-level claim made to customers.
- State scope, coverage limits and residual risk accurately in all customer-facing material, including residuals that never reduce to low.
Leadership and Enablement
- Stand the function up. Recruit, lead and develop the Specialists, and mentor the supporting technical staff from other teams.
- Own the delivery capacity plan, across the Specialists, the vCISO bench with support from the Microsoft 365 and Entra consultants, the SAP and Oracle consultants.
- Enable sellers and the Business AI practice to qualify, scope and position the offerings.
Performance
- Define, track and report the measures that show the offerings are working: delivery quality, repeatability, attach rate and commercial performance.
REQUIRED QUALIFICATIONS AND EXPERIENCE
- A track record of designing and launching a security service or offering from scratch: defining the scope, building the method and taking it to market.
- 8+ years in cyber security consulting or engineering, including customer-facing roles.
- At least 3 years leading a technical team or delivery function, including experience in building and leading teams, including working through people in other teams you don't line-manage.
- Practical work securing or assessing AI or ML systems in the last 2 to 3 years, for example GenAI or Copilot rollouts, LLM applications, AI governance or data protection for AI.
- Confidence advising at CISO and CTO level and translating technical risk into business decisions.
- Fluency in speaking, presenting and writing in English.
PREFERRED QUALIFICATIONS
- Additional ability to speak, present and write in German is beneficial.
KEY RESPONSIBILITIES
This role owns Business AI Cyber Security from start to finish. You'll set the strategy, design and launch the offerings, and become the senior security advisor on Business AI to Syntax and its customers.
Strategy and Design
- Define the strategy, target operating model and business case, and secure senior leadership sign-off.
- Design the offerings end to end (scope, engagement model, deliverables and pricing inputs), working from market, threat and regulatory insight (EU AI Act, ISO/IEC 42001, NIST AI RMF).
- Own the offering roadmap from first release onwards, and make sure the wider Business AI portfolio is secure by design.
Method and Delivery
- Build and maintain the core IP: the assessment runbook, the evidence-collection toolset, the AI-application classification list, the risk model and the report templates.
- Launch and own the offerings, and set the quality bar so delivery is consistent and repeatable. Correct any drift before it reaches a second customer.
- Sign off the go-live verdict on every assessment.
Advisory
- Act as trusted advisor to customer CISOs and CTOs, translating technical findings into business risk.
- Advise on the control position for Syntax's own use of AI, and feed recurring customer findings back into Syntax's security architecture and standards.
Assurance
- Own the evidence behind every security, compliance and service-level claim made to customers.
- State scope, coverage limits and residual risk accurately in all customer-facing material, including residuals that never reduce to low.
Leadership and Enablement
- Stand the function up from the first hire. Recruit, lead and develop the Specialists, and mentor the supporting technical staff from other teams.
- Own the delivery capacity plan, including review and approval time, across the Specialists, the Microsoft 365 and Entra consultants, the SAP and Oracle consultants, and the vCISO bench.
- Enable sellers and the Business AI practice to qualify, scope and position the offerings.
Performance
- Define, track and report the measures that show the offerings are working: delivery quality, repeatability, attach rate and commercial performance.
- A track record of designing and launching a security service or offering from scratch: defining the scope, building the method and taking it to market.
- Practical work securing or assessing AI or ML systems in the last 2 to 3 years, for example GenAI or Copilot rollouts, LLM applications, AI governance or data protection for AI.
- Confidence advising at CISO and CTO level, and translating technical risk into business decisions.
- Experience building and leading teams, including working through people in other teams you don't line-manage.
Additional mandatory requirements:
Nationality or Work Authorization: Spanish or Portuguese nationality, or alternatively a permanent work permit/VISA for Spain or Portugal.
Why Syntax?
Become a part of our success story and work in a company with exciting innovation projects that are causing a stir across the industry. We recently launched one of the world's most advanced manufacturing facilities based on SAP S/4HANA Cloud and SAP Digital Manufacturing Cloud for Execution - for Smart Press Shop, a pioneering joint venture between Porsche and forming specialist Schuler.
- Competitive, above-average compensation
- Global tourist: With us, you can also work from abroad from time to time
- Flexible working time models, home office
- Attractive benefits, e.g. health offers
- A modern environment in which the "you" is part of it
- Open feedback culture, flat hierarchies and a motivated team
- Individual career planning with continuous training and coaching on the job
Benefits
-
- Flexible hours, Monday to Thursday 8h, and Fridays.... 6h. In addition, the whole month of August and the first half of September we have an intensive timetable. 28 days holiday (23 days holiday + 4 days at Christmas from 15 December to 15 January + 1 day for your birthday)!
- Windows laptop for work (Dell or Lenovo)!
- Apple or Android smartphone...you choose!
- Two lovely offices with a nice garden to relax and have a coffee
- Free coffee and soft drinks
- Kitchen facilities
- Medical insurance with Sanitas
- Training: Free AWS and SAP certifications, internal workshops and free access to Linkedin E-learning
- Free online English, German, Spanish or French classes through a platform
- Online Canteen 2.0
You see a personal challenge in this responsible task? Apply now - and become part of the SYNTAX team!
#LI-MC1