Cybersecurity Consultant M/F

mc2i

Portugal

Presencial

EUR 50 000 - 75 000

Tempo integral

14 dias+

Recebe mais respostas dos empregadores

Envia um currículo específico para a oferta em poucos minutos.

Resumo da oferta

A major Luxury Group in Portugal is seeking a Senior Cybersecurity Risk Assessor to join their Security Integration in Projects (ISP) team. The role involves embedding security requirements across IT projects, conducting risk assessments, and collaborating with various teams. Candidates should have a minimum of 4 years of experience in cybersecurity, possess strong analytical skills, and be knowledgeable about information security principles. Certifications are a plus. The company values diversity and encourages all qualified individuals to apply.

Qualificações

  • Minimum 4 years of experience in cybersecurity and risk assessment.
  • Strong analytical and structured mindset.
  • Leadership capabilities and high level of autonomy.

Responsabilidades

  • Participate in Kick-Off Meetings and project criticality assessment.
  • Execution of Business Impact Analysis and risk evaluation.
  • Plan and coordinate pentest activities with external providers.
  • Conduct security reviews of proposed architectures.
  • Define compensating controls and issue formal security opinions.

Conhecimentos

Information Security principles
Risk analysis expertise (ISO 27005 / EBIOS RM)
Blueteam and security control expertise
Architecture security (on-premise and cloud)
Application security
Network and Infrastructure security
Vulnerability management
Understanding of modern IT environments
Project environments (AS400, SAP, AWS, etc.)

Formação académica

Certifications (CCSP, ISO27001, CISA, etc.)

Descrição da oferta de emprego

Within the Cybersecurity Department of a major Luxury Group, the Security Integration in Projects (ISP) team ensures that security requirements are proactively and effectively embedded across all IT projects within the Group.

The ISP acts as a key player in the cybersecurity framework in order to:

  • Reduce exposure to cyber risks
  • Ensure regulatory compliance
  • Enforce internal security standards
  • Promote a strong Security by Design culture

The objective of this mission is to act as a Risk Assessor within the ISP team, contributing to all activities within the scope, in close collaboration with project teams, business stakeholders, cybersecurity teams, and design functions (architecture, privacy).

Main Activities:
  • Security integration from project initiation: participation in Kick-Off Meetings, project criticality assessment, identification of security stakes, and triggering of required analyses.
  • Risk analysis and treatment: execution of Business Impact Analysis (BIA) and CATIS, identification of threat scenarios, risk evaluation (custom methodology aligned with ISO 27005 & EBIOS RM), definition and follow-up of mitigation measures.
  • Pentest coordination and follow-up: planning and coordination with external providers, analysis of test reports, and monitoring of vulnerability remediation.
  • Validation of new applications/tools: risk assessment, compliance verification against internal standards, definition of compensating controls where needed, and issuance of formal security opinions.
  • Technical architecture challenge: security review of proposed architectures (network segmentation, IAM, encryption, APIs, logging, interconnections) and formulation of recommendations prior to production go‑live.

Your Profile :

Confirmed to Senior Profile (minimum 4 years of experience) with strong expertise in cybersecurity and risk assessment activities.

Technical skills:
  • Strong knowledge of Information Security principles
  • Risk analysis expertise (ISO 27005 / EBIOS RM aligned)
  • Blueteam and security control expertise
  • Architecture security (on‑premise and cloud environments)
  • Application security
  • Network and Infrastructure security
  • Vulnerability management
  • Understanding of modern IT environments
  • Expertise in AI, Cloud security, payment systems security would be highly appreciated
  • Project environments include: AS400, Headless architectures, SAP, data platforms, new retail points of sale, Cloud AWS, Azure, GCP, Alibaba, Salesforce
  • Certifications could be an advantage : CCSP, ISO27001, CISA, CRISC, CEH, CISSP, CCNA Cisco,…
  • Facultative : Redteam culture or experiences
Soft Skills
  • Ability to challenge stakeholders diplomatically
  • Strong analytical and structured mindset
  • Leadership capabilities
  • Strong synthesis and reporting skills
  • High level of autonomy
  • Proactive and solution‑oriented mindset
Languages
  • French: recommended

We value diversity and inclusion. Every voice matters, and we encourage applications from all backgrounds.

🌍All our offers are open to people with disabilities.

Obtém a tua avaliação gratuita e confidencial do currículo.
ou arrasta e larga o ficheiro aqui.
Similar jobs

Ofertas semelhantes que vale a pena comparar

Cybersecurity Consultant M/F
Cybersecurity Consultant M/F

mc2i • Porto

Presencial
EUR 40 000 - 70 000
Cybersecurity Project Manager (French Speaker)
Cybersecurity Project Manager (French Speaker)

Inetum • Porto

Presencial
EUR 55 000 - 75 000
PMP/PRINCE2 certifications
CISSP/CISA certifications
BNP Paribas MyWay familiarity
+2
Cybersecurity PM (M/F)
Cybersecurity PM (M/F)

Human Profiler - IT Outsourcing & Recruitment • Lisboa

Presencial
EUR 25 000 - 42 000
Cybersecurity Project Manager (French Speaker)
Cybersecurity Project Manager (French Speaker)

Inetum • Lisboa

Presencial
EUR 65 000 - 90 000
Cyber Security Senior Officer
Cyber Security Senior Officer

Caixa Mágica Software • Portugal

Presencial
EUR 90 000 - 130 000
Permanent contract
Tech equipment
Health insurance
+3
Cyber Security Senior Officer
Cyber Security Senior Officer

Consort Group • Portugal

Híbrido
EUR 50 000 - 75 000
Health insurance
Pension plan
Continuous training opportunities
+1
Cyber Security Specialist
Cyber Security Specialist

act digital EMEA - Alter Solutions • Lisboa

Presencial
EUR 60 000 - 90 000
Integration into an international company
Continuous training and professional development
Career support and progression paths
+2
Cyber Security Engineer
Cyber Security Engineer

Inetum • Porto

Presencial
EUR 50 000 - 70 000
Information Security Consultant
Information Security Consultant

Inetum • Portugal

Híbrido
EUR 40 000 - 60 000
Cyber Program Analyst
Cyber Program Analyst

act digital • Porto

Presencial
EUR 42 000 - 65 000