IT Risk & Internal Controls Specialist

act digital

Porto

Híbrido

EUR 55 000 - 85 000

Tempo integral

há 48 horas
Torna-te num dos primeiros candidatos

Recebe mais respostas dos empregadores

Envia um currículo específico para a oferta em poucos minutos.

Resumo da oferta

act digital is seeking an experienced IT Risk & Internal Controls Specialist to join its second line of defense. You will execute testing of ICT and operational controls, validate control evidence, and collaborate with first-line teams to strengthen governance.

You will contribute to the Internal Control Framework, prepare reports, and support remediation actions while communicating with stakeholders in English. Hybrid work with Porto office expected.

Qualificações

  • Experience in design and testing of internal controls and risk governance.
  • Knowledge of COSO framework and governance principles.
  • Understanding of regulatory standards and control testing methodologies.

Responsabilidades

  • Perform design and operating effectiveness testing of ICT and operational controls.
  • Review evidence provided by control owners and validate control execution.
  • Document testing activities, findings and remediation recommendations.
  • Prepare control assessment reports for management and governance bodies.
  • Collaborate with cross-functional teams to support governance and risk initiatives.

Conhecimentos

Internal Controls
Internal Audit
Risk Management
Compliance
Information Security
External Audit
COSO
English Proficiency

Ferramentas

ISO 27001
NIST Cybersecurity Framework
CIS Controls
NIS2

Descrição da oferta de emprego

We are looking for an experienced IT Risk & Internal Controls Specialist to join a team responsible for executing second-line-of-defense (LOD2) control testing activities across technology and operational environments. You will play a key role in assessing the effectiveness of internal controls, supporting risk and compliance initiatives, and contributing to the continuous improvement of the Internal Control Framework.

Work Model: Hybrid (days per week in the office – Porto)

Key Responsibilities
  • Perform design and operating effectiveness testing of key ICT and operational controls.
  • Review, analyze, and validate control evidence provided by control owners.
  • Conduct walkthroughs with first-line teams to understand processes and validate control execution.
  • Document testing activities, findings, recommendations, and supporting evidence.
  • Prepare control assessment reports and communicate results to relevant stakeholders.
  • Support the follow-up and tracking of remediation actions resulting from control testing activities.
  • Contribute to the maintenance and continuous improvement of the Internal Control Framework.
  • Assist in the preparation of management reports and governance committee materials.
  • Collaborate with business and support functions to facilitate testing and assessment activities.
  • Promote best practices in governance, risk management, and internal controls.
Required Skills & Experience
  • Experience in Internal Controls, Internal Audit, Risk Management, Compliance, Information Security, or External Audit.
  • Solid understanding of internal control frameworks and governance principles, including COSO.
  • Experience assessing and testing controls against recognized standards and regulatory frameworks.
  • Knowledge of one or more of the following frameworks and regulations: ISO 27001, ISO 22301, NIST Cybersecurity Framework, CIS Controls, DORA, NIS2, or similar.
  • Hands-on experience with control testing, evidence review, walkthroughs, and assessment methodologies.
  • Experience preparing findings reports, remediation recommendations, and governance documentation.
  • Strong analytical and critical-thinking skills.
  • Excellent communication and stakeholder management abilities.
  • Ability to work independently while collaborating effectively across multiple teams.
  • Strong attention to detail and commitment to delivering high-quality assessments.
  • Professional proficiency in English.

If you're passionate about IT Risk, Internal Controls, Governance, and helping organizations strengthen their risk and compliance frameworks, we'd love to hear from you.

Obtém a tua avaliação gratuita e confidencial do currículo.
ou arrasta e larga o ficheiro aqui.
Similar jobs

Ofertas semelhantes que vale a pena comparar

Hybrid IT Risk & Internal Controls Lead - Porto
Hybrid IT Risk & Internal Controls Lead - Porto

act digital • Porto

Híbrido
EUR 55 000 - 85 000
Global It Internal Control Specialist
Global It Internal Control Specialist

Adecco Recruitment • Porto

Presencial
EUR 55 000 - 75 000
IT Risk Specialist (French Speaker)
IT Risk Specialist (French Speaker)

act digital • Porto

Híbrido
EUR 40 000 - 55 000
Devoteam Cyber Trust | Internal Control Support | FinTech Sector
Devoteam Cyber Trust | Internal Control Support | FinTech Sector

Devoteam | Cyber Trust • Porto

Presencial
EUR 40 000 - 60 000
IT Risk Specialist & Middle Office
IT Risk Specialist & Middle Office

Decskill • Lisboa

Presencial
EUR 40 000 - 60 000
Long-term projects with international context
Opportunities to grow technically and professionally
People-first culture focused on transparency and trust
Information Technology Internal Auditor
Information Technology Internal Auditor

Smart Consulting • Porto

Híbrido
EUR 13 000 - 21 000
Full visa support
Senior Cyber Security Governance Specialist
Senior Cyber Security Governance Specialist

act digital • Porto

Híbrido
EUR 70 000 - 100 000
IT Risk Analyst
IT Risk Analyst

Decskill • Lisboa

Híbrido
EUR 60 000 - 90 000
IT Risk Analyst
IT Risk Analyst

HN Services Portugal • Portugal

Presencial
EUR 70 000 - 90 000
IT Risk Analyst Lisbon
IT Risk Analyst Lisbon

Consort • Lisboa

Híbrido
EUR 43 000 - 52 000
Health insurance
TR card
CSE