Sr. Insider & Data Risk Analyst

Jobgether

Portugal

Presencial

EUR 80 000 - 120 000

Tempo integral

14 dias+

Recebe mais respostas dos empregadores

Envia um currículo específico para a oferta em poucos minutos.

Vantagens oferecidas por esta oferta de emprego

Stock options
Health benefits
Home-office allowance
Brex Card stipend
Global team
Diversity & inclusion

Resumo da oferta

Jobgether in Portugal seeks a Sr. Insider & Data Risk Analyst to protect sensitive information and people from insider and data-loss risks. You will own complex investigations from triage through resolution, maturing risk programs, and applying AI to security challenges, collaborating with multiple teams across the business.

The role emphasizes discretion, governance, and ongoing improvement of data protection practices in a regulated financial services context. Strong communication is essential.

Qualificações

  • 4+ years of insider risk, DLP, or security investigations experience.
  • Experience leading sensitive investigations and handling personnel/data incidents.
  • Experience tuning DLP across SaaS and endpoints; detect quality and reduce false positives.
  • Experience with automation, AI, or SOAR for investigations and case orchestration.
  • Strong data classification, governance, and information security principles.
  • Familiarity with SIEM/log analysis (Elastic/Splunk) to support investigations.
  • Knowledge of GDPR, ISO 27001, SOC 2, and privacy regulations is a plus.

Responsabilidades

  • Own insider risk investigations from triage to closure with timelines and documentation.
  • Mature the insider risk program with scalable case-management processes and workflows.
  • Operate and tune DLP across SaaS, endpoints, and environments to improve detection quality.
  • Investigate data exfiltration, misuse, policy violations, and access risks.
  • Strengthen data classification and governance aligned with business risk and information sensitivity.
  • Lead risk assessments, maintain risk registers, and track remediation and threats.
  • Collaborate with HR, Legal, Compliance, Engineering, IT, and Security on sensitive cases.
  • Support audits and regulatory requirements related to data protection and privacy.
  • Apply AI and automation to improve alert triage and investigation efficiency.
  • Mentor colleagues on investigation methodologies and risk analysis.

Conhecimentos

Insider risk investigations
DLP management
Security investigations
AI/Automation
Workflow orchestration
Data classification & governance
Cloud platforms
GDPR/compliance knowledge
Communication skills
Python/SQL scripting

Ferramentas

Elastic/SIEM (ELK)
Splunk

Descrição da oferta de emprego

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Sr. Insider & Data Risk Analyst based in Portugal.


This is a senior individual contributor role focused on protecting sensitive information, systems, and people from insider and data-loss risks. You will own complex investigations from initial triage through resolution while helping mature insider risk management and Data Loss Prevention capabilities. The role sits at the intersection of cybersecurity, data protection, privacy, and regulated financial services. You will work closely with People/HR, Legal, Compliance, Engineering, IT, and Security teams on highly sensitive cases requiring discretion and sound judgment. The position also offers an opportunity to strengthen risk processes, automate investigations, and apply AI to emerging security challenges. Success requires a highly organized professional who can translate complex findings into clear recommendations for both technical teams and leadership.


Accountabilities


  • Own insider risk investigations from initial triage through closure, including establishing case timelines, coordinating containment and escalation, documenting determinations, and capturing lessons learned.

  • Mature the Insider Risk Management Program by developing scalable case-management processes, risk-tiering methodologies, investigation standards, and repeatable workflows.

  • Operate, monitor, and tune Data Loss Prevention capabilities across SaaS applications, endpoints, and other environments, improving detection quality while reducing false positives.

  • Investigate potential data exfiltration, misuse, policy violations, and inappropriate access involving source code, cloud platforms, collaboration tools, third-party applications, and critical business or trading systems.

  • Strengthen data classification and governance practices while aligning DLP controls with information sensitivity and business risk.

  • Assess risks associated with unauthorized AI and agentic tooling, including potential exposure of sensitive or proprietary information through approved and unsanctioned AI applications.

  • Use workflow automation, AI, and security orchestration capabilities to improve alert triage, investigation efficiency, and the overall maturity of insider risk processes.

  • Lead insider risk and data protection assessments, maintain risk registers, and track remediation activities and emerging threats.

  • Partner with People/HR, Legal, Compliance, Engineering, IT, and Security on sensitive personnel cases, departures, policy violations, and data-handling concerns with a high level of discretion and care.

  • Support internal and external audits, regulatory requirements, and security assurance activities related to insider risk, data protection, privacy, and information security.

  • Contribute insider risk and secure data-handling content to security awareness and employee training programs.

  • Serve as a senior escalation point for insider risk cases and mentor colleagues on investigation methodologies, case management, and effective risk analysis.

  • Monitor developments in insider risk, data protection, privacy, cybersecurity, and financial services regulation to identify opportunities for continuous improvement.


Requirements:


  • 4+ years of professional experience in insider risk, Data Loss Prevention, digital forensics, security investigations, or a closely related discipline.

  • Demonstrated hands-on experience leading sensitive investigations and managing cases involving personnel matters, data misuse, policy violations, or potential exfiltration.

  • Practical experience operating and tuning DLP solutions across SaaS and endpoint environments, with an understanding of detection quality and false-positive reduction.

  • Experience with workflow automation, AI, or SOAR platforms for alert triage, investigation support, and case orchestration.

  • Strong understanding of data classification, data governance, data protection, and information security principles.

  • Working knowledge of SIEM platforms and log analysis, such as Elastic/ELK or Splunk, to support investigations and establish evidence-based conclusions.

  • Familiarity with security and compliance frameworks including NIST CSF, ISO 27001, SOC 2, and privacy regulations such as GDPR and APPI.

  • Strong written and verbal communication skills, with the ability to produce clear investigation reports, case documentation, risk assessments, and executive summaries.

  • Exceptional integrity, discretion, and judgment when handling confidential personnel, customer, business, and security information.

  • Strong organizational skills and attention to detail, with the ability to manage multiple sensitive investigations in a fast-paced, distributed environment.

  • Ability to collaborate effectively with People/HR, Legal, Compliance, Engineering, IT, and Security stakeholders.

  • Experience with digital forensics, eDiscovery, UEBA, insider risk platforms, security operations, or incident response is an advantage.

  • Scripting or automation experience using technologies such as Python or SQL is a plus.

  • Experience with major cloud platforms and familiarity with supporting SOC 2, ISO 27001, or regulatory audits is beneficial.

  • Exposure to fintech, financial services, trading platforms, and regulated environments is strongly valued.

  • Relevant certifications such as GCFA, GCFE, CISSP, CISM, CIPP, CFE, or equivalent are considered a plus.

  • Familiarity with financial services regulatory expectations and multi-jurisdiction privacy requirements is advantageous.

  • A genuine interest in AI-related data risk and using emerging AI capabilities to improve security operations and investigation workflows.


Benefits:


  • Competitive salary and stock options.

  • Health benefits.

  • One-time USD $500 new-hire home-office setup allowance.

  • USD $150 monthly stipend through a Brex Card.

  • Opportunity to work within a globally distributed team spanning multiple countries and time zones.

  • Exposure to cutting-edge cybersecurity, financial technology, cloud infrastructure, AI, and data protection challenges.

  • An inclusive environment committed to diversity and equal opportunity.

Obtém a tua avaliação gratuita e confidencial do currículo.
ou arrasta e larga o ficheiro aqui.
Similar jobs

Ofertas semelhantes que vale a pena comparar

Principal Data Engineer at ComplyAdvantage
Principal Data Engineer at ComplyAdvantage

ComplyAdvantage • Lisboa

Presencial
EUR 92 000 - 115 000
Equity
Hybrid work model
Two days in office per week
+3
Backend Staff Engineer
Backend Staff Engineer

login.works • Lisboa

Híbrido
EUR 100 000 - 150 000
Hybrid role
Cyber Security Senior Officer
Cyber Security Senior Officer

Caixa Mágica Software • Portugal

Presencial
EUR 90 000 - 130 000
Permanent contract
Tech equipment
Health insurance
+3
Data Scientist Research Lisbon
Data Scientist Research Lisbon

Riskified • Lisboa

Híbrido
EUR 40 000 - 60 000
Benefits package for work-from-home equipment
Gym membership
Wellbeing activities
+1
Data Analyst
Data Analyst

Riskified • Lisboa

Híbrido
EUR 37 000 - 42 000
Hybrid work
Flexible schedule
Healthcare benefits
+10
Principal Data Engineer
Principal Data Engineer

Complyadvantage • Lisboa

Presencial
EUR 92 000 - 115 000
Equity
Unlimited Time Off
Hybrid work model
+2
IT Risk Analyst Lisbon
IT Risk Analyst Lisbon

Consort • Lisboa

Híbrido
EUR 43 000 - 52 000
Health insurance
TR card
CSE
Senior AI Engineer
Senior AI Engineer

Riskified • Lisboa

Híbrido
EUR 65 000 - 75 000
Hybrid mode of work
Flexible schedule
Healthcare benefits
+11
Senior Backend Engineer Lisbon
Senior Backend Engineer Lisbon

Riskified • Lisboa

Híbrido
EUR 50 000 - 75 000
Hybrid mode of work
Benefits package per month—per your 选择
machine learning engineer for fraud prevention
machine learning engineer for fraud prevention

Enfint • Lisboa

Presencial
EUR 65 000 - 75 000
Flexible schedule
Stock-based awards
Healthcare benefits