Cybersecurity GRC specialist

Posted 25 Days Ago
Be an Early Applicant
Lisboa
In-Office
Mid level
Financial Services
The Role
Responsible for managing cybersecurity governance, risk management, and compliance, coordinating teams, implementing policies, and ensuring legal compliance.
Summary Generated by Built In
Cybersecurity GRC specialist

Country: Portugal

Location: Lisboa
General job description
Set and supervise cyber governance in line with Global CISO Organization ensuring different teams of the Group work under a common model aligned with Santander business strategy and objectives; managing cyber security risk posture and complying with agreed internal policies and procedures and external regulations; coordinating the governance model and preparing official reporting to respective governing bodies in the entity.
 

Key Responsibilities

  • Design, implement, and manage the organization’s Cybersecurity Awareness Program aligned with Global CISO Organization. Develop engaging content (e-learning modules, phishing simulations, newsletters, and workshops) to promote a strong security culture.

  • Track and measure program effectiveness using KPIs (e.g., phishing click rates, training completion rates, employee risk scores).

  • Set and supervise the implementation of cyber strategy and objectives achievement, aligned with Group’s cyber strategy and delivery of on-demand strategic outputs to support operational teams.

  • Drive implementation and monitor of Group’s cybersecurity policies, standards and controls in the organization, in compliance with applicable laws, regulations and international standards (i.e. EBA/ECB, SOX, PCI, Swift, NIST, CIS, etc.) to manage cybersecurity emerging threats and risks trends.

  • Coordinate Subsidiary cyber teams to support Global GRC team in the execution of independent assessments, audits and regulatory inspections of cybersecurity controls and certifications reviews (e.g.: ISO, PCI DSS, SOX) performed by internal/external parties, and support on the remediation of recommendations.

  • Ensure that Subsidiary third-parties/vendor ecosystem is properly evaluated, assessed and managed to minimize risk exposure and risk impacts to the business, aligned with Group’s cybersecurity policies and standards
    Requirements
     

  • · Cybersecurity Risk Management: Ability to identify, assess, and communicate risks to support informed decision-making.

  • · Policies & Standards: Skilled in developing and implementing cybersecurity strategies, policies, and procedures in compliance with regulations.

  • · Security Certifications & Audits: Familiarity with frameworks like SOC2 and ISO 27001; ability to assess and improve security controls.

  • · Legal & Regulatory Compliance: Understanding of key regulations (e.g., SOX, PCI, GDPR) and their impact on business operations.

  • · Information Security Management: Application of cybersecurity and privacy principles to ensure confidentiality, integrity, and availability.

  • · Data Reporting: Proficient in gathering and leveraging data from internal and external sources to support decision-making.

  • · Critical Thinking & Decision-Making: Strong analytical skills to evaluate complex situations and make sound judgments.

  • · Effective Communication: Ability to clearly convey technical and strategic information across diverse audiences.

  • · Performance Measurement: Knowledge of techniques to assess and improve the effectiveness of cybersecurity initiatives.

  • · Certifications (Preferred): ISO 27001 Lead Auditor, CISM, CRMA, CISA, CISSP.

  • Fluency in Portuguese and English

About Us
No Santander cada um de nós é “Risk Pro”. Isto significa ter a responsabilidade pessoal de identificar, avaliar, gerir e reportar eventuais riscos para o banco decorrentes do desempenho das nossas funções. Vamos dar-te o conhecimento e as ferramentas para seres Risk Pro em todas as situações. Esta cultura de riscos é fundamental para o Santander Way, a nossa forma de trabalhar.

O Banco dispõe, nos termos do previsto na Lei nº 93/2021 de 20 de dezembro, de um canal de denúncias Canal Aberto, acessível através do link https://secure.ethicspoint.eu/domain/media/pteu/gui/105862/index.html

Top Skills

Cybersecurity
Gdpr
Iso 27001
Nist
Pci Dss
Risk Management
Security Audits
Soc2
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Boadilla del Monte, Madrid
136,172 Employees

What We Do

Banco Santander (SAN SM, STD US, BNC LN) is a leading commercial bank, founded in 1857 and headquartered in Spain and one of the largest banks in the world by market capitalization. The group’s activities are consolidated into five global businesses: Retail & Commercial Banking, Digital Consumer Bank, Corporate & Investment Banking (CIB), Wealth Management & Insurance and Payments (PagoNxt and Cards). This operating model allows the bank to better leverage its unique combination of global scale and local leadership. Santander aims to be the best open financial services platform providing services to individuals, SMEs, corporates, financial institutions and governments. The bank’s purpose is to help people and businesses prosper in a simple, personal and fair way. Santander is building a more responsible bank and has made a number of commitments to support this objective, including raising €220 billion in green financing between 2019 and 2030. In the first quarter of 2024, Banco Santander had €1.3 trillion in total funds, 166 million customers, 8,400 branches and 211,000 employees.

Similar Jobs

Bose Logo Bose

Payroll Specialist

Automotive • eCommerce • Hardware • Music • Retail • Software • Wearables
Hybrid
Lisboa, PRT

Bose Logo Bose

Accounts Payable Specialist

Automotive • eCommerce • Hardware • Music • Retail • Software • Wearables
Hybrid
Lisboa, PRT

Bose Logo Bose

Senior Devops Engineer

Automotive • eCommerce • Hardware • Music • Retail • Software • Wearables
Hybrid
Lisboa, PRT
5-8

Bose Logo Bose

Devops Engineer

Automotive • eCommerce • Hardware • Music • Retail • Software • Wearables
Hybrid
Lisboa, PRT

Similar Companies Hiring

Yooz Thumbnail
Software • Machine Learning • Fintech • Financial Services • Cloud • Automation • Artificial Intelligence
Aimargues, FR
470 Employees
Amplify Platform Thumbnail
Fintech • Financial Services • Consulting • Cloud • Business Intelligence • Big Data Analytics
Scottsdale, AZ
62 Employees
Rain Thumbnail
Web3 • Payments • Infrastructure as a Service (IaaS) • Fintech • Financial Services • Cryptocurrency • Blockchain
New York, NY
40 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account