We’re looking for a IT Risk Analyst (Porto / Lisboa)
Who We're Looking For :
Review and challenge existing cyber risk assessments (ISO 27005 / EBIOS Risk Manager) and evaluate the impact of remediation progress on risks.
Actively contribute to cloud platform and application risk assessments; ideally able to lead assessments using ISO 27005 / EBIOS Risk Manager methods.
Monitor and challenge remediation plans implemented by service providers or entities.
Ensure accuracy and completeness of cloud asset and risk registers in ServiceNow.
Develop, improve, and maintain risk reporting templates (ServiceNow, Tableau, or similar).
Deliver periodic cloud risk reports and support quarterly risk committees.
Support third-party onboarding processes through risk assessments and case study reviews.
Contribute to governance and organizational initiatives within the team.
✅ Professional Experience & Technical Skills :
Analyze existing risk assessments and remediation impacts.
Participate in cloud-related risk assessments.
Oversee remediation plan implementation.
Maintain data quality in ServiceNow cloud registers.
Assist with third-party onboarding studies.
Strong expertise in risk management methodologies (ISO 27005 / EBIOS Risk Manager); certifications are a plus.
Advanced knowledge of risk management tools (ServiceNow).
Solid understanding of cloud principles (preferred).
Language Requirement
English – B2
Work Setup
Hybrid
It Risk Analyst • Porto Salvo, Portugal