Open uri20190408 16469 8r68k2?1554678006
Security Consultant (Risk & Compliance) @ Stefanini Portugal

Description

Stefanini is currently hiring Security Consultants experienced with Risk and Compliance, to join one of our clients operating from Alfragide, Portugal.

Project duration: 1 year (minimum)

Work model: on-site

 

Role description:

Information and Data are some of the most important organizational assets in today’s businesses. As a Security Consultant, you will be a key advisor for this client, analyzing business requirements to design and implement the best security solutions for their needs. You will apply your technical skills to find the balance between enabling and securing the client’s organization with solid cognitive solutions.

 

Role responsibilities:

This role helps clients understand key security and privacy issues, risks, exposures and vulnerabilities using workshops and assessments and develop security and privacy programs to meet client’s business needs. They also build secure solutions to address specific security and privacy requirements

  • Establish and develop appropriate policies, procedures and practices in relations to governance and planning functions.
  • Ensure and Monitor effective implementations of the policies and procedures.
  • Ensure necessary awareness for the IT policies and procedures.
  • Participates in the definition and updating of guides and standards used from the perspective of IT governance, the concept of Enterprise Architecture and information security.
  • Facilitates and coordinates external audit with components in IT areas; if necessary, build the action plan according to the conclusions of the IT audit.
  • Participates in risk assessments and monitors the implementation of improvement points identified as a result of internal, external and regulatory audit missions, respectively of top management decisions and periodically reports the implementation stage to the IT Strategy Director.

 

Required Technical and Professional Expertise:

  • 4+ years of experience on a similar role
  • Good understanding of IT security concepts
  • Good understanding of IT operations within large/complex organizations
  • Analysis and problem-solving skills.
  • Excellent collaborator and communicator.

 

Preferred Technical and Professional Expertise:

  • CISA certification is an asset.
  • Knowledge of security frameworks (ISO 27001, NIST, etc).
  • Experience with collecting, interpreting, evaluating, and validating business requirements, functions and processes associated with assigned projects.
  • Experience working with solution architects and technical team members to develop security solution architectures that are in compliance with the organization’s InfoSec policies, standards, non-functional requirements, reference architectures.
  • Experience identifying security risks and providing recommendations, solutions, and options to best mitigate those risks.
  • Demonstrating solid understanding of the concepts and application of the following architecture and design principles and practices:
    • Cloud security (IaaS, PaaS, and SaaS). Preferebly, Microsoft Azure.
    • Data security, Data Loss Prevention, Data Masking
    • Vulnerability Scanning/Management (Tenable, Qualys, etc)
    • Mobile Device Management & Mobile Application Management

 

Compensation and benefits:

We offer you not only a challenging and interesting workplace, but also a rewarding work experience, with competitive compensation and benefits packages:

  • Trainings: on-going training with current and emerging products and technologies;
  • Career development: opportunity to grow within the team;
  • Health insurance;
  • Referral bonuses;


 

What's next?

It's best to apply today, because job postings can be taken down and we wouldn't want you to miss this opportunity.

Please send us your updated CV to [email protected] using R&S23 as subject.
 

The preceding job description had been designed to indicate the general nature and level of work performed by employees within this classification. It is not designed to contain or be interpreted as a comprehensive inventory of all duties and responsibilities required of employees assigned to this job.


 

Diversity & Inclusion

Here at the Stefanini Group, we value plurality and equity, regardless of race, sexual orientation, disability, age, ancestry, religion, gender, and nationality. We understand and encourage the importance of being you.

 

About us

We are a multinational company with over 30 years of experience in delivering IT services worldwide, ranging from IT outsourcing to application development or IT staffing. We have a direct presence in 39 countries, through our 88 offices located throughout the world and we enjoy working for over 500 active clients. While more than 300 of them are multinational corporations, we have managed to become the preferred partner of many small-to-midsize local and regional companies as well. Most of our clients come from industries such as financial services, manufacturing, telecommunications, chemical, services, technology, public sector and utilities.

Stefanini has career opportunities locally and around the world for professionals interested in a vibrant, passionate, team-oriented workplace.