IT Risk Analyst
Consort Group
For over 30 years, Consort Group has been helping companies leverage their data and infrastructure. It is backed by two leaders, Consortis and Consortia, and places people and social responsibility at the heart of its values.
This is your future team
Established in 2021, Consort Portugal supports the strategic offshoring choices of our clients, particularly in Europe, and brings our expertise in infrastructure services to the Portuguese market. With a team of around 45 employees, our Service Center based in Porto is developing a dynamic nearshore business, offering the French and European markets an environment of excellence and high potential.
IT Risk Analyst
This is your mission
Are you passionate about IT risk management, cybersecurity, and governance frameworks? Then this position is for you.
As an IT Risk Analyst, you will contribute to identifying, assessing, and monitoring technology-related risks within complex enterprise environments. You will work closely with business teams, IT departments, security experts, compliance functions, and other stakeholders to ensure risks are properly managed and aligned with internal governance frameworks.
You will play a key role in risk assessment activities, operational risk management, reporting, and continuous improvement of IT risk processes.
Build Side
- Identify, assess, and document IT risks related to existing systems, projects, and production environments.
- Perform IT risk assessments in collaboration with business stakeholders, IT teams, security teams, architects, compliance, and risk functions.
- Analyze cybersecurity, operational, regulatory, and data-related risks.
- Define remediation plans and monitor their implementation progress.
- Integrate and maintain IT risks within Governance, Risk, and Compliance (GRC) tools.
- Support IT risk governance activities and contribute to the evolution of risk management processes.
- Participate in risk analysis related to IT projects, cloud initiatives, and technology transformations.
- Contribute to the development and maintenance of IT risk policies and procedures.
- Monitor and manage identified risks through risk registers and dashboards.
- Assess operational risks linked to production and project incidents.
- Analyze incident impacts, including financial, legal, regulatory, and compliance aspects.
- Ensure accurate documentation and reporting of operational risk incidents.
- Produce IT risk reports, indicators, dashboards, and presentations for management committees.
- Support internal control activities and risk governance meetings.
- Monitor IT Key Risk Indicators (KRIs) and provide accurate reporting to stakeholders.
- Support teams in the use of collaborative governance tools.
You have at least 10 years of experience in IT Risk Management, IT Audit, Cybersecurity, or Information Security roles within complex environments.
You have experience working with enterprise IT governance frameworks and understand how technology risks impact business operations.
You are comfortable collaborating with multiple stakeholders and translating technical risks into clear business insights.
Experience within the banking or financial services industry is highly valued.
This Is Your Expertise
- Strong experience in IT Risk Management and risk assessment methodologies.
- Knowledge of:
- IT Governance, Risk, and Compliance (GRC) frameworks
- Cybersecurity risk management
- Data Governance and Data Protection principles
- IT System Development Life Cycle (SDLC) processes
- Operational Risk Management
- Experience analyzing and reporting IT risks, incidents, and controls.
- Ability to perform data analysis and create risk indicators and dashboards.
- Familiarity with GRC tools, ideally ServiceNow GRC.
- Understanding of regulatory requirements, security trends, and technology risks.
- Experience in banking or financial services environments is a strong advantage.
- Risk management certifications are valued (ISO 31000, ISACA CRISC, or equivalent).
- Project management skills and ability to coordinate remediation activities.
- Strong analytical and problem-solving skills.
- Excellent communication and stakeholder management abilities.
- High level of integrity and confidentiality when handling sensitive information.
- Ability to work independently and manage multiple priorities.
- Strong organizational and reporting skills.
- Adaptability to changing business and technology environments.
- Ability to collaborate effectively with technical and non-technical teams.
- English: C1
At Consort Group, you are an expert who we support so that every assignment becomes a step that counts.
- Attentive and human onboarding
- A truly hands-on management style
- Continuous training opportunities
- Concrete commitments: inclusion, equality, solidarity
- A comprehensive HR package: health insurance, TR card, CSE
- A culture of feedback and meaningful projects
- An initial phone call with our recruitment team
- An HR interview and a job interview with a business engineer
- A test or technical interview with one of our experts
- A final meeting with your future manager or project manager
- And if we're a good fit, we'll get started together
Location: Lisbon
Contract: Permanent contract
Remote work: Hybrid (50%)
Salary: From 43 K€ to 52 K€ (depending on experience) gross annual salary
Job category: IT Risk Management / Cybersecurity / Governance, Risk & Compliance
What you will do here, you won't do anywhere else.
This moment is yours.