It Governance, Risk
Decskill, founded in 2014 as an IT Consulting Company, places paramount importance on its greatest asset: its people. Our main mission is to deliver value through knowledge and talent, and we achieve this by fostering a culture of excellence and investing in the development and
- being of our people. With over 600 dedicated professionals and offices in Lisbon, Porto, Madrid, and Luxembourg, Decskill operates across three core areas:
- Decskill Talent: We believe that our people are key to our success. Through Decskill Talent, we empower our team to embrace the digital transformation challenges of our clients. We collaborate with clients to drive innovation, ensuring project success and business growth.
- Decskill Boost: Equipping our team with the latest tools and methodologies, we optimize Time-to-Market and deliver innovative solutions exceeding client expectations.
- Decskill Connect: Our team collaborates closely with clients to implement and manage IT infrastructures that generate
- term value.
At Decskill, we believe that by nurturing and empowering our people to confront the challenges of digital transformation, we create value not only for our clients but also for our entire ecosystem, fostering a digital community dedicated to growth and progress.
We are looking for a IT Risk Register Office for a hybrid project in Oporto.
Job description:
The IT Risk Register Officer main mission is to promote the management of IT risks and contribute for Governance, Compliance, and Risks frameworks. You have a global view on all IT risks. In this role, you will support operational teams to identify new IT risks, promote the adequate assessment of IT risk accordingly to the frameworks/standards in use, and to perform a
- up to the entire IT risk portfolio, namely in the mitigation measures. He/she will also manage the Risk Register over time (update of the criteria: risk category, owner, impact, due date…). Finally, he/she will help performing reports about these risks to the top management.
Main Tasks:
Management of the Risk Register:
- Regularly update IT risks criteria over time (risk category, owner, impact…).
- Initiate & support the annual review of all IT risks in the Risk Register tool
Support risk assessment:
- Organize with relevant stakeholders the assessment/analysis about identified IT risks (e. G. : impact, mitigation…).
- Organize the validation of IT risks assessment.
- Organize the compliance with the BNPP IT Risk Management Procedure.
- Collect new risk cards and challenge them with relevant stakeholders (e. G. : mitigation suggested).
Reporting:
- Gather feedback regarding formalization of risk cards & ongoing mitigation measures from risk owners.
- Follow KPI defined in risk cards (due date, risk level…).
- Perform reports about risks and remediations to the top management, raise alerts if needed.
- Participate to the Business Line Risk committee to share inputs about risks (risks stored in Risk Register tool, level of risks, category, treatment…).
Technical Skills:
- IT knowledge (global knowledge of IT, its major processes, and assets & solutions) and Cybersecurity (general knowledge in cybersecurity risks, frameworks, and requirements).
- Risk monitoring (knowledge in risk management: ability to identify, alert and suggest remediation).
- Risk analysis (ability to anticipate/analyse threats and create risk scenario) and Risk opinion (ability to challenge, approve and decide new activities, projects…).
- Internal audit knowledge (knowledge of the audit process and methodology).
- Regulatory (general knowledge in IT and cybersecurity regulators framework) and Compliance (global knowledge of compliance, its major processes or regulatory framework).
Language Skills:
- English - Expert.
If you’re interested in this job please send your CV in english to with reference LM/ITRO.
Decskill is committed to equality and
- discrimination with all our talents. We recruit and promote talent, based on diversity and inclusion, regardless of age, gender, ethnicity, race, nationality or any other form of discrimination incompatible with the dignity of the human being.
- Informações detalhadas sobre a oferta de emprego
Empresa: Decskill Localização: Porto
Porto, Porto District, PortugalPublicado: 27. 9. 2025
Vaga de emprego atual
Seja o primeiro a candidar-se à vaga de emprego oferecida!