Cyber Governance and DORA Control Officer

Smartconsulting — Portugal · Posted ~2 hours ago

Mid Full-time Hybrid

Skills

Cybersecurity governance ISO 27001 NIST DORA compliance Risk management DORA

🔓 Log in to save this job, tailor your resume & track your apply process — 7 days free, no card needed.

Log in to add to target list

Summary ✨ AI‑Generated

A cybersecurity governance position responsible for regulatory compliance, security frameworks, control assessments, audit support, and improving operational resilience.

Highlights

Strategic cybersecurity role involving compliance, resilience frameworks, risk assessment, and collaboration with senior stakeholders.

Description

Cyber Governance & DORA Control Officer (ISO 27001 | NIST | DORA)We are looking for a Cyber Governance & a DORA Control Officer to join our Cyber Security team in Portugal. In this role, you will oversee cybersecurity governance, ensure regulatory compliance (including DORA), and support the continuous improvement of our operational resilience framework.You will work closely with IT, Risk, and senior stakeholders to monitor compliance, assess maturity levels, and contribute to regulatory reporting and strategic steering initiatives. (2 times per week in the office)Key Responsibilities:Ensure compliance with cybersecurity regulations and frameworks (ISO 27001, NIST, DORA)Monitor adherence to internal cyber policies and controlsSupport and assess DORA maturity, collecting and auditing compliance evidenceIdentify gaps and coordinate remediation actions with IT and Risk teamsContribute to regulatory reporting and audit responsesSupport project and portfolio steering related to DORA initiativesTrack and report cybersecurity maturity levels to senior managementPromote security awareness and a strong governance cultureRequirements:5+ years of experience in Cybersecurity Governance or RiskStrong knowledge of ISO 27001, NIST and DORA (mandatory)Solid understanding of IT risk, regulatory frameworks and control mechanismsExperience in compliance monitoring, audits, or maturity assessmentsAbility to translate regulatory standards into internal policiesStrong stakeholder management and communication skillsFluent English (French is a plus.ISO 27001 Lead Auditor