Descrição do trabalho
Job Overview
- This position involves safeguarding the organization's digital assets and ensuring compliance with industry standards.
- Key Responsibilities
- Align cybersecurity practices with globally recognized frameworks to minimize risk.
- Establish and enforce policies, procedures, and guidelines to maintain a secure environment.
- Conduct thorough security risk assessments using established tools and processes to identify potential threats.
- Collaborate with vendors, suppliers, and other third-parties to review and mitigate cybersecurity risks.
- Develop and implement strategies to ensure compliance with regulatory requirements, including AI evaluations.
- Assess and report on the overall cybersecurity posture of the organization.
- Lead penetration testing efforts to identify vulnerabilities in IT and OT systems.
- Cyber crisis management response and incident handling.
- Develop and implement incident response plans to minimize the impact of cyber attacks.
- Support internal and external audits by providing evidence and responses related to cybersecurity controls.
- Requirements
- Minimum 4 years of experience in cybersecurity, risk management, and/or compliance.
- Certifications in information security and/or cybersecurity, such as CISSP or CISM.
- Demonstrate expertise in risk management, IT controls, and related information security standards.
- Knowledge of security control frameworks and standards, such as SOC2 or NIST.
- Experience securing cloud-based environments and managing regulatory requirements, including GDPR or PCI-DSS.
- Excellent written and verbal communication skills, with proficiency in English.
- Work Environment
Algés, Portugal.