Obsolescence and Vulnerability Security Risk Analyst – Banking Sector
3 780 - 4 410
EUR
(B2B)
2 050 - 2 300
EUR
líq. (Permanent Contract)
Hook – one bold sentence
Empower risk resilience in banking—drive strategic security by mastering technological vulnerabilities and safeguarding financial operations.
Location & Work Model
Porto-based opportunity with hybrid work model (up to 3 days remote per week).
Introduction
As an Obsolescence and Vulnerability Security Risk Analyst, you will be working for a leading financial institution committed to excellence in risk management and cybersecurity. Your role will focus on identifying, assessing, and mitigating technology and vulnerability risks in accordance with regulatory standards, supporting the bank’s mission to maintain secure and resilient banking services. This is a fantastic opportunity to advance your career within a dynamic, innovation-driven environment.
Your main responsibilities:
- Communicate corporate governance, risk management, control strategies, frameworks, and policies.
- Effectively report on technological risks, vulnerabilities, and risk mitigation success to senior management and stakeholders.
- Oversee enterprise-wide technology risk assessments, ensuring compliance with industry and regulatory requirements.
- Provide independent oversight and challenge IT team decisions to uphold security and risk standards.
- Develop and deliver training and tools to promote a strong risk management culture across teams.
- Continuously monitor the bank’s technology infrastructure to identify emerging risks or vulnerabilities.
- Collaborate with IT teams to develop and implement risk mitigation strategies and controls.
- Maintain and update the technology risk management framework, policies, and procedures.
- Ensure compliance with relevant laws, standards (such as ISO27001, NIST), and data protection regulations.
- Prepare detailed reports on risks, vulnerabilities, and mitigation measures for senior management.
You’re ideal for this role if you have:
- Minimum 3 years' experience in cybersecurity or technology risk management within the banking or financial sector.
- Strong knowledge of technology infrastructure, vulnerabilities, and risk assessment methodologies.
- Proficiency in Power BI and Excel; knowledge of Splunk is a plus.
- Familiarity with regulatory standards such as ISO27001, NIST, COBIT, and ITIL frameworks.
- Relevant certifications such as ISO27001, ISO27005, CISSP, CISM, CRISC are highly valued.
- Bachelor’s degree in IT, Computer Science, or related field.
- Fluent command of English; professional proficiency in Portuguese is necessary.
- Excellent communication, analytical, and problem-solving skills.
- Results-oriented, proactive, and capable of engaging with diverse stakeholders, including senior management.
It is a strong plus if you have:
- Additional certifications in cybersecurity or risk management.
- Experience with vulnerability management tools and vulnerability databases.
Language Required for the role:
English (Fluent), Portuguese (Fluent).
Eligibility to work in:
Europe – Only candidates with an existing legal right to work within the European Union will be considered.
#MAKEYourCareerBETTER
Interested? Apply now and include your CV (preferably in English) along with a statement confirming your consent to the processing and storage of your personal data.
Internal number #9782
Benefits
ITDS Clubs
Access to medical insurance
Meal Card
Access to Pluralsight & Udemy
Integrational Events
Seus critérios