Cyber Governance & DORA Control Officer (ISO 27001 | NIST | DORA)
We are looking for a Cyber Governance & a DORA Control Officer to join our Cyber Security team in Portugal. In this role, you will oversee cybersecurity governance, ensure regulatory compliance (including DORA), and support the continuous improvement of our operational resilience framework.
You will work closely with IT, Risk, and senior stakeholders to monitor compliance, assess maturity levels, and contribute to regulatory reporting and strategic steering initiatives. (2 times per week in the office)
Key Responsibilities:
- Ensure compliance with cybersecurity regulations and frameworks (ISO 27001, NIST, DORA)
- Monitor adherence to internal cyber policies and controls
- Support and assess DORA maturity, collecting and auditing compliance evidence
- Identify gaps and coordinate remediation actions with IT and Risk teams
- Contribute to regulatory reporting and audit responses
- Support project and portfolio steering related to DORA initiatives
- Track and report cybersecurity maturity levels to senior management
- Promote security awareness and a strong governance culture
Requirements:
- 5+ years of experience in Cybersecurity Governance or Risk
- Strong knowledge of ISO 27001, NIST and DORA (mandatory)
- Solid understanding of IT risk, regulatory frameworks and control mechanisms
- Experience in compliance monitoring, audits, or maturity assessments
- Ability to translate regulatory standards into internal policies
- Strong stakeholder management and communication skills