Senior Information Security Vulnerability Analyst

Há 4 dias


Lisboa, Portugal Novasyte Tempo inteiro

Location: Portugal

Work model: Hybrid (1 day per week in the office)

This is one of a key cybersecurity role within the global Information Security organization.

The individual fulfilling this Senior Vulnerability Analyst role will partner closely with IT professionals both within the core CIO organization and those in the Global Business Units performing assessments of systems and networks within the network environment or enclave and identifies where those systems/networks deviate from acceptable configurations, enclave policy, or local policy.

RESPONSIBILITIES
- Delivering on a portfolio of tasks as part of Vulnerability Management Service
- Conducting comprehensive vulnerability assessment and continuous monitoring across IQVIA
- Support the business lead vulnerability remediation activities
- Maintain an oversight of existing vulnerabilities in the IQVIA estate
- Develop and maintain a solid understanding of the IQVIA Integrated Information Security Framework and industry best practice and frameworks
- Develop and document operational procedures and metrics in relation to carried out activities
- Utilize information security technical safeguards and associated procedures, analyzing output and producing relevant management information reports for further improvements in the security safeguards landscape, including vulnerability assessment, threat intelligence and patching
- Prepare audit reports that identify technical and procedural findings, and provide recommended remediation strategies/solutions
- Collaborate with the business, CIO teams and CAPA management to ensure that control deficiencies are registered and remediated
- Reporting regularly to management on the status of assigned activities including issues, risks and remediation actions.
- All responsibilities are essential job functions unless noted as nonessential (N)._

REQUIRED KNOWLEDGE, SKILLS AND ABILITIES
- Generic knowledge of how Internet works (protocols, services, ports, connections, devices, ISO/OSI layers
- Knowledge of industry tools for security scanning and vulnerability management solutions (Qualys, Tenable Nessus or Nexpose)
- Working knowledge of cybersecurity principles, algorithms, protocols and technologies supporting encryption, authentication, access control, information systems attack patterns, intrusion detection, and network security
- Knowledge of IT processes (SDLC, ITIL) in regulated environments
- Experience in Cyber Security, Vulnerability Management and/or security testing
- Excellent written and verbal communication skills
- Effective organization and time management skills
- Ability to write with purpose, clarity and accuracy
- Ability to work both within a team environment and independently to initiate and prioritize tasks
- Ability to establish and maintain effective working relationships with coworkers and management in a global environment.
- Know-how of scripting languages is a plus
- Experience in ServiceNow is a plus

MINIMUM REQUIRED EDUCATION AND EXPERIENCE
- An ITIL or project management certificates are not required but beneficial.
- A relevant qualification: CompTIA Security, CASP+, CEH, GIAC (GSEC, GCED etc.), SSCP or similar is a plus

IQVIA is a leading global provider of advanced analytics, technology solutions and clinical research services to the life sciences industry. We believe in pushing the boundaries of human science and data science to make the biggest impact possible - to help our customers create a healthier world. Learn more at



  • Lisboa, Portugal Novasyte Tempo inteiro

    ROLE AND RESPONSIBILITIES The role presents a dynamic opportunity to ensure the secure operation of the IQVIA global information technology (IT) infrastructure and processes through operating and maintaining our security safeguards while providing input to the continual improvement of the enterprise IT security design and configuration. This role plays a...


  • Lisboa, Lisboa, Portugal act digital Tempo inteiro

    We are looking for aCybersecurity Analystto join an internationalAssurance & Trustteam focused onExternal Vulnerability Scanning and Attack Surface Management.You will be part of a dynamic and highly specialized cybersecurity team, working in close collaboration with international stakeholders, ensuring the protection of internet-exposed assets and...


  • Lisboa, Portugal Planck Technologies Tempo inteiro

    Overview Planck Technologies is a company specialized in Software Development, dedicated to shaping futures and creating value through innovative IT solutions. By expanding teams and offering a comprehensive range of services—from Software Development and Infrastructure Management to Cybersecurity—we empower clients with all the expertise they need in...

  • Information Security Analyst

    2 semanas atrás


    Lisboa, Portugal Synopsys Tempo inteiro

    51934BR - PORTUGAL - Lisbon, PORTUGAL - Porto **Job Description and Requirements** The Information Security Analyst will leverage multiple industry frameworks and regulatory standards including, but not limited to, ISO 27001, SOC 2 Type II, NIST 800-53, NIST CSF, GDPR, TISAX, SOX, etc. This person will liaise with all business groups including Finance,...

  • Vulnerability Analyst

    1 semana atrás


    Lisboa, Portugal MULTIVISON, LDA Tempo inteiro

    **We’re Hiring: Vulnerability Analyst - Join Our Cybersecurity Team!** The **Cybersecurity Department** is expanding, and we’re looking for an experienced **Vulnerability Analyst** to lead the development and lifecycle management of our vulnerability program. This role requires a proactive and technically skilled individual to help identify, prioritize,...


  • Lisboa, Portugal act digital Tempo inteiro

    We are looking for aCybersecurity Analystto join an internationalAssurance & Trustteam focused onExternal Vulnerability Scanning and Attack Surface Management. You will be part of a dynamic and highly specialized cybersecurity team, working in close collaboration with international stakeholders, ensuring the protection of internet-exposed assets and...


  • Lisboa, Portugal Devoteam Tempo inteiro

    At Devoteam, we believe that technology with strong human values can actively drive change for the better. Discover how Tech for People unlocks the future, creating a positive impact on the people and the world around us. We are a global leading player in Digital Transformation for leading organisations across EMEA, with a revenue of €1B. We believe in...

  • Information Security Analyst

    2 semanas atrás


    Lisboa, Portugal Tekever Tempo inteiro

    We're looking for an Information Security Analyst to join the light side and keep our clients secure while in cyberspace. If you think you've got what it takes to tackle this challenge and grow with it, get in touch with We expect solid cyber-security knowledge and a deep seeded love for decompiling/reverse engineering apps and for penetration testing. If...


  • lisboa, Portugal Alexander Charles Tempo inteiro

    This important new global role will lead on the development and implementation of my clients information security strategy to safeguard the company’s information assets. Job Overview: Design and implement a comprehensive risk-based information security strategy that is aligned and integrated with the business strategy, goals and objectives. Identify,...


  • lisboa, Portugal Alexander Charles Tempo inteiro

    This important new global role will lead on the development and implementation of my clients information security strategy to safeguard the company’s information assets. Job Overview: Design and implement a comprehensive risk-based information security strategy that is aligned and integrated with the business strategy, goals and objectives. Identify,...