Cybersecurity Control Officer
Caixa Mágica Software Lisbon, Portugal
Software Development · 51-200 employees
About the role
The officer manages the operational execution of the CIB Cyber Strategy, including project delivery, governance, and committee coordination across global regions. They also lead maturity assessment campaigns, challenge evidence, and drive the modernization of program operations through automation and AI.
What they look for
Requirements
Candidates must possess strong technical acumen in cybersecurity, risk management, and IT processes, along with the ability to synthesize complex data for high-level reporting. Excellent communication, organizational skills, and proficiency in tools like Power BI and SharePoint are essential for this role.
Benefits
Full description
Overview:
The CIB (Corporate Institutional Banking) Cybersecurity Control Officer contributes to the operational execution of the CIB Cyber Strategy across all regions (EMEA, AMER, APAC) and CIB-dependent Group entities. Within the Cyber Program team, the officer manages projects delivery, assists committees’ preparation and coordination, supports alignment with Group (CDF) on requirement interpretation, challenges and validates the evidence collected by project teams and leads assessment campaigns of the project deliverables.
Beyond delivery, the officer actively contributes to the modernization of the CIB Cyber Program: streamlining assessment campaigns, industrializing reporting, and embedding automation and AI-enabled use-cases into day-to-day program operations.The officer will be expected to perform deep-dive analyses into complex IT and cybersecurity operational subjects and must possess technical acumen and a proactive mindset to critically challenge operational assumptions.
Beyond the technical details, the candidate must be able to step back from the operational details to evaluate the broader situation, assess associated risks, and synthesize complex technical data into a clear, high-level 'big picture'.
What will you do?
- Program Steering & Governance.
- Support program and projects steering: monitor the delivery, milestones, risks and dependencies for in-scope CIB entities. Escalate alerts and attention points.
- Document projects activities: plans, status reports, risk analyses and reasoned positions supporting program decisions.
- Prepare and coordinate committees (OpCo, Panorama): prepare schedule, materials, minutes and action tracking, with stakeholders at different management levels.
- Act as dedicated point of contact for assigned scopes (project, business line etc.): weekly project monitoring with Project Managers, communication with internal and external stakeholders.
- Collect and challenge maturity evidence: collect and assess evidence of compliance to cyber-requirement through projects / BAU. Formalize and demonstrate maturity to Group reviewers.
- Support Cyber-framework alignment: develop relation with Group reviewers and organize pre-submission alignment on disputed or ambiguous cyber-requirements, document the position with rationale, and track remediation of group’s challenges to closure.
- Reporting improvement: define standard operational success indicators on followed scope or propose improvement to existing ones, define and validate target with the program management, organize periodic review and propose action plan / roadmap to achieve the objectives.
- Identify and prioritize automation opportunities across the program processes: evidence collection, campaign tracking, committee reporting, minutes production and status consolidation.
- Reduce manual effort and single-person dependencies by using standardized inputs, templates and reporting pipelines across territories and cycles.
What are we looking for?
- Ability to collaborate / teamwork.
- Communication skills (oral & written) ability to synthesize and simplify.
- Personal impact / ability to influence.
- Adaptability and rigor: meticulous attention to detail.
- Organizational skills: capacity to manage multiple entities and cycles in parallel.
- Ability to understand, explain and support change.
- Ability to challenge information and evidence quality.
- Ability to inspire others and generate commitment.
- Ability to develop and leverage cross-functional networks (security operations, risk, IT, compliance).
- Ability to anticipate business and regulatory evolution.
- Business skills.
- Cybersecurity: general knowledge of cybersecurity risks, domains and program management.
- Rules & norms: knowledge of regulatory standards applicable to cybersecurity.
- Control: ability to verify operations, challenge evidence and ensure procedures are followed.
- Risk opinion: ability to challenge, approve and defend positions with reasoned rationale.
- IT knowledge: global understanding of IT processes, assets and solutions.
- Business/IT relationship: ability to understand business needs.
- Cybersecurity maturity frameworks and assessment methodologies.
- Microsoft Office (Excel, PowerPoint): data manipulation and executive presentation.
- SharePoint: administration and data management.
- Power BI: dashboarding and reporting.
- Power Automate / SharePoint: workflow automation.
- AI / LLM tools: hands-on exposure to practical use-cases.
- English fluent.
- French is an optional plus.
What can you expect from us?
- A permanent job contract for a long term project;
- Tech equipment + SIM Card + personal smartphone;
- Health and Life Insurance;
- Social events and team buildings;
- The commitment of letting you grow with us, and be rewarded accordingly;
- A dynamic and young team that will be always there to support you;
- Training in the latest technologies;
- Coffee, fruits, snacks and a warm welcoming when you pass by the office.
Similar roles
-
Cybersecurity Engineer II
Atlantic Health System Morristown, New Jersey, United States
-
Senior Cloud Security Engineer
Delta Exchange India
-
Lead Cybersecurity Architect
JPMorgan Chase & Co. Bengaluru, Karnataka, India
-
Staff Security Engineer, Third Party Security Diligence
Google Singapore
-
Cyber Security Engineer
Tamara Riyadh, Riyadh Region, Saudi Arabia
-
Senior Lead Cybersecurity Architect – Blockchain Security (Smart Contracts) Specialist
JPMorgan Chase & Co. Singapore, Singapore, Singapore