Devoteam Cyber Trust| GRC Consultant Junior | International Project

Devoteam Cyber Trust| GRC Consultant Junior | International Project

Devoteam Cyber Trust| GRC Consultant Junior | International Project

Devoteam

Avenida Dom João II, Lisboa, Portugal

2 horas atrás

Nenhuma candidatura

Sobre

  • Company Description
  • Devoteam Cyber Trust is the Cybersecurity specialist arm of the Devoteam Group. With our 800+ experts located across EMEA, we aim to establish cybersecurity as an enabler of business success rather than a gatekeeper. We leverage an end-to-end approach to Cyber Resilience, Applied Security, and Managed Security services to secure the tech journey of large and medium-sized companies from all sectors and industries.
  • Since 2009, previously known as INTEGRITY, our team based in Portugal is specialised in providing cutting-edge Managed Security Services that combine its expertise and proprietary technology to consistently and effectively reduce the cyber risk of our clients.
  • The comprehensive service range includes Persistent Intrusion Testing, ISO 27001, PCI-DSS, GRC Consulting and Solutions, and Third-Party Risk Management. ISO 27001 (Information Security) and ISO 9001 (Quality) certified, PCI-QSA, and member of CREST and CIS - Centre for Internet Security, we provide services to a considerable number of clients, operating in more than 20 countries.
  • Job Description
  • Devoteam Cyber Trust is seeking a junior ISO 27001 Consultant to support a key client-facing ISMS implementation project.
  • The ideal candidate will have hands-on experience in supporting organisations through the entire ISO 27001 certification lifecycle, ensuring compliance and robust security posture as part of a dedicated project team
  • Support the planning, implementation, and management of an Information Security Management System (ISMS) based on ISO 27001.
  • Assist in conducting comprehensive gap analyses and information security risk assessments (e.g., using ISO 27005 or similar methodologies).
  • Support internal audits to ensure readiness for certification.
  • Assist in developing, writing, and reviewing necessary ISMS documentation (including policies, procedures, and the Statement of Applicability).
  • Act as a supporting point of contact for internal and external audits.
  • Assist in providing guidance on security controls and risk mitigation strategies to multiple stakeholders.
  • Keep up-to-date on the latest trends and regulations in GRC.
  • Qualifications
  • Foundational knowledge or prior experience (including internships) in ISO 27001 implementation projects.
  • A good understanding of the ISO 27000 series (specifically 27001, 27002, and 27005).
  • Strong theoretical knowledge or some practical experience in information security risk assessment and management.
  • Demonstrable ability to assist with ISMS documentation.
  • Experience in supporting internal and external audits.
  • Excellent organisational, analytical, and problem-solving skills.
  • Strong sense of ethics, integrity, and responsibility.
  • Excellent communication and teamwork skills.
  • Fluency in Portuguese and high proficiency in English.

Nice to have

  • Relevant foundational GRC certifications, such as ISO 27001 Foundation or similar, are highly valued.
  • Familiarity of other compliance frameworks (e.g., NIST, PCI DSS, SOC 2).
  • Familiarity of GRC tools.
  • Familiarity of the main laws and regulations applicable to the European Union.
  • Participation in communities, forums, or professional networks related to GRC
  • Additional Information
  • The Devoteam Group works for equal opportunities, promoting its employees based on merit and actively fights against all forms of discrimination. We are convinced that diversity contributes to the creativity, dynamism and excellence of our organization. All of our vacancies are open to people with disabilities.

What we offer

  • Professional development and monitoring talent;
  • Commitment to our employees' development;
  • Collaboration in a company that is constantly growing and evolving.
  • Strong organisational culture: collaboration, sharing, flexibility, integrity and low ego.
  • Would you like to join our team? Then send your CV.