← Back to list
Job · Senior

Lead Analyst, Security Strategy & Assurance

Other • Senior • Remote • Full-time Portugal Portugal

Lead role at OutSystems managing Third-Party Risk Management and enterprise risk programmes, ensuring audit readiness and evolving GRC tooling.

Stack

Responsibilities

  • Lead the TPRM programme and define risk tiering and assessment frameworks
  • Embed security-by-design into vendor selection and contracting
  • Evolve the enterprise risk register and facilitate risk workshops
  • Ensure audit readiness for ISO 27001, SOC 2, and other certifications
  • Improve evidence collection, risk tracking, and GRC tooling
  • Monitor emerging regulations (DORA, NIS2, GDPR)

Requirements

  • Bachelor's degree in Information Security or related field
  • 7-10 years in risk management or compliance, 3-4 years focused on TPRM
  • Strong knowledge of enterprise risk/security frameworks (ISO 27001, ISO 31000, SOC 2, NIST)
  • Familiarity with European regulations (DORA, NIS2, GDPR)
  • Proven ability to operate autonomously and mentor junior team members

Nice to have

  • HIPAA or PCI DSS knowledge
  • CRISC, CISM, CISSP, CISA, or ISO 27001 Lead Auditor/Implementer certification

Soft skills

Autonomous work with significant ownershipMentoring abilityLeading complex cross-functional initiatives

About the company

OutSystems is a leading AI Development Platform combining the speed of generative AI with a deterministic, enterprise-grade framework.

Similar jobs