IT Risk Analyst

Decskill

Lisboa

On-site

EUR 90,000 - 120,000

Full time

19 hours ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Decskill, a growing IT consulting company, is seeking an IT Risk Analyst to strengthen risk governance across IT assets, projects and production environments.

You will collaborate with Business, IT, Security, Legal and Compliance teams and manage risk registers, KRIs and risk dashboards within the GRC tool, aiming for robust controls and regulatory alignment.

Qualifications

  • Bachelor's degree in Information Technology, Computer Science, Cybersecurity, or related field.
  • 10–15 years of relevant experience in IT Audit, IT Security or IT Risk Management within banking/financial services preferred.
  • Professional Risk Management certification preferred (CRISC, ISO 31000, or equivalent).
  • Experience with Governance, Risk & Compliance (GRC) tools, e.g., ServiceNow GRC.

Responsibilities

  • Implement and promote the organization's IT Risk Management framework.
  • Identify and assess IT risks related to IT assets, projects, and production environments.
  • Collaborate with cross-functional stakeholders including Business, IT, Architecture, Security, Third-Party Risk, Data, Vendor Management, Risk, Legal, and Compliance teams.
  • Perform IT risk assessments, define remediation plans, and monitor remediation activities.
  • Record IT risks within the GRC tool and maintain IT Risk Register.
  • Analyze and report IT risk activities, including KRIs and risk dashboards.

Skills

IT Risk Management
Data Governance
Stakeholder Management
Analytical Skills
English Proficiency

Education

Bachelor's degree in IT/CS/Cybersecurity

Tools

ServiceNow GRC

Job description

We are growing. And we are looking for talented people.

At Decskill, we believe that technological excellence is driven by human talent.

We are an IT consulting company with more than 10 years of consolidated experience in the market, focused on building long-term relationships with both our clients and our people. Today, we are a community of over 800 professionals, working from Lisbon, Porto, and Madrid, contributing to impactful technology initiatives.

As part of the Astek Group, we combine a strong local culture with a global presence, being active in around 23 countries across 4 continents. This allows us to offer an international context, diverse challenges, and long-term career opportunities, while staying close to our teams.

We are looking for IT Risk Analyst!

Responsibilities:
  • Implement and promote the organization's IT Risk Management framework.
  • Identify and assess IT risks related to existing IT assets, projects, and production environments.
  • Collaborate with cross-functional stakeholders, including Business, IT, Architecture, Security, Third-Party Risk, Data, Vendor Management, Risk, Legal, and Compliance teams.
  • Perform IT risk assessments, define remediation plans, and monitor remediation activities.
  • Record and maintain IT risks within the organization's Governance, Risk & Compliance (GRC) tool.
  • Identify inherent IT and Cyber risks through monitoring activities and risk dashboards.
  • Maintain the IT Risk Register and track mitigation actions to completion.
  • Analyze and report on IT risk activities, including:
  • Operational and historical incidents
  • Control plans
  • Produce IT risk reports, metrics, and Key Risk Indicators (KRIs).
Operational Risk & Incident Management
  • Assess operational risks associated with production and project incidents.
  • Evaluate financial, legal, regulatory, and compliance impacts of operational incidents.
  • Record operational risk incidents in the risk management tool, ensuring complete and accurate risk analysis.
Reporting & Governance
  • Deliver timely and accurate IT Key Risk Indicator (KRI) reporting to management.
  • Prepare reports for Internal Control and Management Committees.
  • Develop dashboards and presentations for senior management and IT Risk, Continuity, and Security Committees.
  • Maintain IT risk policies and procedures in alignment with organizational governance standards.
  • Support the use of collaboration platforms such as SharePoint and Microsoft Teams.
Requirements:
Education
  • Bachelor's degree in Information Technology, Computer Science, Cybersecurity, or a related field.
Experience
  • 10–15 years of relevant experience in one or more of the following areas:
  • IT Audit
  • IT Security
  • Previous experience in IT Risk Management within the banking or financial services industry is preferred.
Technical Skills
  • Strong knowledge of IT Risk Management frameworks and practices.
  • Good understanding of Information Systems within the banking or financial services sector.
  • Knowledge of Cybersecurity and Fraud Risk Management.
  • Knowledge of Data Governance and Data Protection.
  • Familiarity with the Software Development Life Cycle (SDLC) and related methodologies.
  • Experience with Governance, Risk & Compliance (GRC) tools (e.g., ServiceNow GRC).
  • Strong analytical and data analysis skills.
  • Excellent written and verbal communication skills in English.
Certifications
  • Professional Risk Management certification (e.g., CRISC, ISO 31000, or equivalent) is preferred.
Soft Skills
  • High level of integrity and confidentiality.
  • Understanding of regulatory requirements, industry standards, and emerging technologies.
  • Strong interpersonal and stakeholder management skills.
  • Ability to adapt to changing business priorities and management requests.

Are you looking for an environment that values curiosity and commitment? Here, your contribution has real impact and individual growth is taken seriously.

Find with us the right opportunity to grow!
What you can expect from us:
  • Long-term projects with national and international context (if applicable)
  • Opportunities to grow technically and professionally
  • A people-first culture, focused on transparency and trust
  • Teams that value ownership, collaboration and stability.

Thank you!

Decskill is committed to equality and non-discrimination with all our talents. We recruit and promote talent, based on diversity and inclusion, regardless of age, gender, ethnicity, race, nationality or any other form of discrimination incompatible with the dignity of the human being

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cyber Security Program Analyst
Cyber Security Program Analyst

Decskill • Porto

On-site
EUR 60,000 - 80,000
Cyber Program Analyst
Cyber Program Analyst

Decskill • Lisboa

On-site
EUR 45,000 - 68,000
It Risk And Cyber Analyst – Swift
It Risk And Cyber Analyst – Swift

Decskill • Porto

On-site
EUR 45,000 - 65,000
Vulnerability Management Specialist
Vulnerability Management Specialist

Decskill • Porto

On-site
EUR 48,000 - 70,000
Technical Business Analyst | Risk & Stress Testing
Technical Business Analyst | Risk & Stress Testing

Decskill • Lisboa

On-site
EUR 65,000 - 90,000
It Risk And Cyber Analyst - Swift
It Risk And Cyber Analyst - Swift

Decskill • Lisboa

On-site
EUR 45,000 - 65,000
Devops Engineer
Devops Engineer

Decskill • Lisboa

On-site
EUR 40,000 - 75,000
Cybersecurity Control Officer
Cybersecurity Control Officer

Decskill • Porto

On-site
EUR 50,000 - 75,000
IT Risk Specialist & Middle Office
IT Risk Specialist & Middle Office

Decskill • Lisboa

On-site
EUR 40,000 - 60,000
Long-term projects with international context
Opportunities to grow technically and professionally
People-first culture focused on transparency and trust
Senior IT Solution Analyst | Hybrid | Lisbon
Senior IT Solution Analyst | Hybrid | Lisbon

Decskill • Lisboa

On-site
EUR 55,000 - 90,000