GRC Consultant

1 semana atrás


Lisboa Porto, Portugal Devoteam Tempo inteiro

Devoteam Cyber Trust is the Cybersecurity specialist arm of the Devoteam Group. With our 800+ experts located across EMEA, we aim to establish cybersecurity as an enabler of business success rather than a gatekeeper. We leverage an end-to-end approach to Cyber Resilience, Applied Security, and Managed Security services to secure the tech journey of large and medium-sized companies from all sectors and industries. Since 2009, previously known as INTEGRITY, our team based in Portugal is specialised in providing cutting-edge Managed Security Services that combine its expertise and proprietary technology to consistently and effectively reduce the cyber risk of our clients. The comprehensive service range includes Persistent Intrusion Testing, ISO 27001, PCI-DSS, GRC Consulting and Solutions, and Third-Party Risk Management. ISO 27001 (Information Security) and ISO 9001 (Quality) certified, PCI-QSA, and member of CREST and CIS - Centre for Internet Security, we provide services to a considerable number of clients, operating in more than 20 countries. Job Description Devoteam Cyber Trust is seeking a diligent and analytical Governance Risk & Compliance Consultant to join our dynamic team. This role is pivotal in strengthening our clients' risk posture, with a specific focus on implementing a third-party IT risk management framework to ensure compliance with the Digital Operational Resilience Act (DORA). The ideal candidate will be a skilled professional with a strong background in technology, information security, and risk management who thrives in a collaborative environment. - Lead the implementation of a third-party IT risk management framework in accordance with DORA regulations. - Develop and manage a centralised knowledge platform to ensure harmonised and efficient responses to client information requests. - Respond to due diligence questionnaires and assessments from clients and counterparties on matters related to Compliance and Risk Management. - Contribute to the continuous improvement of IT and information security risk management frameworks. - Stay up-to-date with the latest cybersecurity trends and technologies. Qualifications - A Master's degree in Information Technology, Cybersecurity, Management, or a related field. - Between 3 to 5 years of professional experience in IT risk, information security, or a compliance-focused role. - Advanced knowledge of technology, information security principles, and control frameworks. - A strong understanding of risk management methodologies and relevant regulations (e.g., DORA, ISO 27001). - Good organisational, analytical, and problem-solving skills. - Strong sense of ethics, integrity, and responsibility. - Excellent oral and written communication skills, attention to detail, analytical skills, and problem-solving skills. - Fluency in Portuguese and proficiency in English. Nice to Have: - Relevant certifications such as CISSP, CISM, CISA, ISO 27001 Lead Auditor or Implementer, or similar are highly valued. - Formal project management skills or certification. - Knowledge of or a strong interest in the payments, electronic money, or virtual assets sector. Additional information The Devoteam Group works for equal opportunities, promoting its employees based on merit and actively fights against all forms of discrimination. We are convinced that diversity contributes to the creativity, dynamism and excellence of our organization. All of our vacancies are open to people with disabilities. What we offer: - Professional development and monitoring talent; - Commitment to our employees' development; - Collaboration in a company that is constantly growing and evolving. - Strong organisational culture: collaboration, sharing, flexibility, integrity and low ego. Does this sound like you? Come build with us, innovative solutions that actively change things for the better. Apply today Send your CV to Poderá encontrar o anúncio original publicado em: https://www.itjobs.pt/oferta/507958/devoteam-cyber-trust-grc-consultant-risk-analyst-fintech-sector


  • grc consultant

    Há 4 dias


    lisboa, Portugal Randstad Tempo inteiro

    A Randstad Digital está a recrutar um GRC Consultant Junior para integração direta numa consultora especializada em soluções de cibersegurança. 

  • GRC Consultant

    3 semanas atrás


    Lisboa, Portugal Think Attitude Tempo inteiro

    Somos uma empresa 100% portuguesa, especializada em Recrutamento e Gestão de Talento na área das Tecnologias de Informação. Desde 2012, atuamos com foco em dois modelos principais: Outsourcing e Recrutamento Direto. Trabalhamos com clientes de diversos setores, com projetos tecnológicos em Lisboa, Porto, e além-fronteiras – desde iniciativas...

  • GRC Consultant

    2 semanas atrás


    Lisboa, Portugal Think Attitude Tempo inteiro

    Somos uma empresa 100% portuguesa, especializada em Recrutamento e Gestão de Talento na área das Tecnologias de Informação. Desde 2012, atuamos com foco em dois modelos principais: Outsourcing e Recrutamento Direto. Trabalhamos com clientes de diversos setores, com projetos tecnológicos em Lisboa, Porto, e além-fronteiras – desde iniciativas...

  • Governance, Risk

    3 semanas atrás


    Lisboa, Portugal QiBit Portugal Tempo inteiro

    We are looking for a Full-remote Governance, Risk & Compliance (GRC) Consultant, to integrate directly the team of our client - a reference company in the computer & network security sector. What will be your main tasks and responsibilities? - Assess clients' cybersecurity governance, risk, and compliance posture, being able to identify gaps and provide...

  • Security Consultant

    1 dia atrás


    Lisboa, Portugal Inetum Tempo inteiro

    **Mission** **Key Responsibilities**: - Act as an Analyst, Consultant, and Auditor in Governance, Risk, and Compliance projects. - Conduct risk assessments and compliance audits. - Develop and manage information security policies and procedures. - Collaborate with internal teams to ensure compliance with standards and frameworks such as ISO 27001, NIST...

  • Remote GRC Consultant

    3 semanas atrás


    Lisboa, Portugal QiBit Portugal Tempo inteiro

    A leading cybersecurity consultancy is seeking a Full-remote Governance, Risk & Compliance Consultant to help assess and improve clients' cybersecurity posture. The ideal candidate will have at least 3 years of GRC experience, a strong understanding of information security frameworks, and fluency in both Portuguese and English. This role offers flexibility...

  • GRC Consultant

    Há 12 horas


    Lisboa, Portugal Aubay Portugal Tempo inteiro

    Your connection with Aubay starts in the following lines: Aubay Portugal is a multinational French company, in Portugal since 2007. We have offices in Lisbon and Oporto and we are a specialized consultant in Management, Implementation, Development and Maintenance of Information Systems. We have more than 150 active partners and we operate in sectors such as...

  • Full-remote Governance, Risk

    2 semanas atrás


    Lisboa, Portugal QiBit Portugal Tempo inteiro

    Overview We are looking for a Full-remote Governance, Risk & Compliance (GRC) Consultant, to integrate directly the team of our client – a reference company in the computer & network security sector. Responsibilities - Assess clients' cybersecurity governance, risk, and compliance posture, being able to identify gaps and provide actionable...


  • Lisboa, Portugal Gibbs & Cox Australia Tempo inteiro

    Company DescriptionDevoteam Cyber Trust is the Cybersecurity specialist arm of the Devoteam Group. With our 800+ experts located across EMEA, we aim to establish cybersecurity as an enabler of business success rather than a gatekeeper. We leverage an end-to-end approach to Cyber Resilience, Applied Security, and Managed Security services to secure the tech...

  • GRC Consultant

    Há 20 horas


    Lisboa, Lisboa, Portugal Aubay Portugal Tempo inteiro

    Your connection with Aubay starts in the following lines:Aubay Portugal is a multinational French company, in Portugal since 2007. We have offices in Lisbon and Oporto and we are a specialized consultant in Management, Implementation, Development and Maintenance of Information Systems. We have more than 150 active partners and we operate in sectors such as...