GRC Analyst (Pleno)
Introduction & Summary
The GRC Analyst will play a vital role in ensuring effective risk management and compliance within the organization. With a focus on cybersecurity governance, audit, and compliance frameworks, the ideal candidate will possess strong analytical skills and a collaborative mindset. The role requires proficiency in risk management tools, a solid understanding of ISO standards, and excellent communication abilities in both English and Portuguese. This position is suited for individuals with a robust background in cyber risk management, looking to advance their career in a dynamic environment.
Main Responsibilities
- Perform and maintain the cyber risk register, including identification, assessment, and treatment planning of IT and business risks.
- Support the integration of risk management processes into business continuity (BCP) and disaster recovery (DRP) frameworks.
- Coordinate compliance assessments and evidence collection for ISO 27001, PCI DSS, GDPR, and other audits.
- Track and follow up on remediation plans with technical and business teams.
Key Requirements
- Bachelor’s or Master’s degree in Information Security, IT Management, or related field.
- 2–4 years of experience in cybersecurity governance, risk management, or audit.
- Experience in ISO 27001, NIS2, or similar frameworks is highly desirable.
- Familiarity with risk management tools and data visualization (Excel, Power BI).
- ISO 27001 / NIST / COBIT frameworks knowledge.
- Awareness of PCI DSS and GDPR regulations.
- Expertise in risk management methodologies and tools.
- Proficiency in reporting tools (Excel / Power BI).
- Strong analytical and organizational skills.
- Excellent written and verbal communication in English & Portuguese; Spanish is a plus.
- Collaborative mindset, ability to work
- functionally in an international environment.
Nice to Have
- Experience working in a multicultural team.
- Familiarity with risk management certifications.
Other Details
This position offers opportunities for professional growth in a dynamic environment focused on compliance and risk management. The role may involve collaborations across various functions and potentially international teams.
Seniority level
- Entry level
Employment type
- Full-time
Job function
- Business Development and Sales
Industries
- IT Services and IT Consulting
- Informações detalhadas sobre a oferta de emprego
Empresa: emagine Localização: Lisboa
Lisboa, Lisboa, PortugalPublicado: 19. 11. 2025
Vaga de emprego atual
Seja o primeiro a candidar-se à vaga de emprego oferecida!