Caixa Mágica Software

Cybersecurity Governance & Risk Analyst

Caixa Mágica Software Porto, Portugal

Software Development · 51-200 employees

Yesterday
security Mid (2-5 yrs) Full-time Portugal
Create a free account to apply — email only, no card. You can also save this posting or score it against your profile with AI.

About the role

You will deploy maturity evaluation processes across group entities and ensure compliance with cybersecurity and IT risk frameworks. Additionally, you will facilitate communication between IT providers and entities while documenting assessment results for program governance.

What they look for

Cybersecurity governance Risk management IT continuity Backup management DORA requirements Cryptography Key management Certificate management Network security Micro segmentation NIST framework IT security Regulatory compliance Reporting

Requirements

The ideal candidate possesses knowledge of IT security, risk management, and standard frameworks like NIST. Proficiency in network security, cryptography, and IT continuity, along with fluent English skills, is required.

Benefits

Permanent job contract Tech equipment SIM card Personal smartphone Health insurance Life insurance Social events Team buildings Training Coffee, fruits, and snacks

Full description

Overview:

You will be part of the Group Cyber Program team partially located In Portugal. You will play a key role to develop Portugal platform, ensuring core Cyber Security activities are performed by all the entities of the Group in compliance to the Group Cyber security and IT Risk framework enabling the adequate protection of the client.

What will you do?

  • Deploy the maturity evaluation process on the entities of your perimeter
  • Help the entities understand the requirements and delivers the required evidences
  • Evaluate the entities evidences submission in coherence with the assessments of the other entities
  • Communicate and inform the entities of all changes impacting them
  • Facilitate the relationship between the Group IT providers and the entities
  • Document the results of the assessments answering the reporting requested by the Governance of the program
  • Develop internal projects to enhance the Cyber Program evaluation process

What are we looking for?

  • Knowledge of IT Continuity and Backups Management (including DORA requirements
  • Knowledge of Cryptography (key management, certificate management, CKMS…)
  • Knowledge of Network security (micro segmentation, hardening network architectural…)
  • Knowledge of a standard framework (NIST or equivalent)
  • General knowledge of IT and IT security, key related processes and regulatory framework
  • Knowledge of Risk Knowledge & Awareness
  • Fluent in English
  • French notions is nice to have

What can you expect from us?

  • A permanent job contract for a long term project;
  • Tech equipment + SIM Card + personal smartphone;
  • Health and Life Insurance;
  • Social events and team buildings;
  • The commitment of letting you grow with us, and be rewarded accordingly;
  • A dynamic and young team that will be always there to support you;
  • Training in the latest technologies;
  • Coffee, fruits, snacks and a warm welcoming when you pass by the office.

Similar roles