Third Party IT Risk & Cyber Analyst

Company Description

Alter Solutions Portugal is an IT Consultancy Company, promoter of Digital Transformation, part of the Alter Solutions Group, created in 2006, in Paris.

In 2022, Alter Solutions joined the act digital group, constituting a global community of talent in Technology, with presence in twelve countries: Germany, Belgium, Brazil, Canada, United States of America, Morocco, Spain, France, Luxembourg, Poland, Portugal and Serbia. Also in 2022, we were certified as a Great Place to Work©.

In Portugal, we partner with over 120 clients and a team of over 500 people, working in projects for industries as diverse as banking, insurance, transportation, aviation, energy, and telecom.

Headquarters of the Nearshore IT center, Alter Solutions Portugal has a dedicated team of around 30 specialized professionals, integrated into projects with several internationally renowned clients.

Job Description

We are looking for someone with 2/3 years of experience on Third Party IT Risk & Cyber security.

Main Responsibilities:

REINFORCE WM THIRD PARTY SECURITY FRAMEWORK

  • Ensure WM Third Party Security procedures are aligned with the companie framework
  • Prepare, coordinate and execute Third Party IT Risk & Security awareness
  • Reinforce the governance with RISK Functions, Procurement and Outsourcing coordinators
  • Contribute to the WM IT Risk & Cyber Security Committee

CONTRIBUTE TO WM CYBER SECURITY PROGRAMS

  • Perform IT Risk & Cyber Risk Assessment of WM Internal or external IT Providers
  • Contribute to the execution WM Third Party Security roadmap
  • Record in WM Third Party Risk Management database all IT arrangements
  • Define and implement action plan aiming to execute IT audit considering regulatory requirements"         
  • Execute WM Third Party Controls
  • Prepare, organize and execute Annual Third Party Monitoring campaign
  • Execute Group IT Control Plan on Outsourcing, nearshoring & purchasing arrangements
  • Perform control on IT Risk & Cybersecurity clauses in WM IT contracts

DEPLOY GROUP TOOLS

  • Assess new BNPP IT Group Third Party IT Risk module
  • Define and execute roadmap to deploy this module
  • Create Third Party Security dashboard using for instance PowerBi solution

Technical skills:

  • 2/3 years of experience
  • Certification (not mandatory but strongly recommended) : TPRA, ISO 27001, CISSP, CRISC, CISM, CISA
  • Language: English (mandatory)
  • French appreciated - Notions
  • Third Party Cyber Security
  • Regulatory
  • IT Continuity
  • IT audit

Soft skills:

  • Ability to deliver / Results driven
  • Ability to synthesize
  • Communication
  • Data Analytic
  • Knowledge of Bank Sector
Privacy Policy