Security Analyst (Hybrid)
Nitro Software
Este cargo requer uma presença local. Consulte empregos idênticos a seguir.
The Role We are looking for a proactive, detail-oriented, and collaborative Security Analyst with a strong focus on Governance, Risk, and Compliance (GRC) to help evolve and sustain Nitro's global security and compliance posture. This key role is central to ensuring Nitro maintains "always‐on compliance" – embedding governance and control assurance into daily operations. The successful candidate will help maintain and mature Nitro's core compliance programs, including ISO 27001, SOC 2, HIPAA, and DORA, while serving as the primary point of contact (POC) for our external compliance vendor. In addition to managing our compliance frameworks, this role will drive security oversight across Nitro's diverse ecosystem of business‐critical applications, platforms, and integrations – including systems such as Salesforce, Atlassian, Microsoft 365 and other SaaS and cloud‐based services. The analyst will ensure these environments are governed by consistent, effective controls and that security risk is continuously monitored and managed. You'll collaborate across Security Operations, IT, Engineering, Legal, Sales, and Customer Success to ensure Nitro's security practices are robust, transparent, and trusted – both internally and by our customers. What You Will Be Doing Governance, Risk, and Compliance Play a significant role in Nitro's compliance programs (ISO 27001, SOC 2, HIPAA, DORA), ensuring a continuous state of readiness and certification maintenance. Act as the main point of contact for Nitro's external compliance vendor, managing communications, audits, evidence requests, and ongoing improvement initiatives. Implement and champion Nitro's "always‐on compliance" strategy – embedding compliance automation and continuous control monitoring across our systems. Maintain the internal GRC calendar and ensure all compliance activities are completed on schedule. Develop, maintain, and refine security policies, procedures, and standards, ensuring alignment with frameworks and practical applicability. Report on compliance status, control effectiveness, and risks to management and stakeholders. Security Oversight Across Nitro's Applications and Platforms Provide security governance and oversight for Nitro's portfolio of applications, platforms, and integrations – including Salesforce, Atlassian (Jira/Confluence), Microsoft 365, AWS, and other critical SaaS systems. Partner with system owners to ensure security configurations, access controls, and audit logs meet Nitro's standards and compliance requirements. Conduct periodic reviews of key systems to verify proper implementation of controls (e.g., MFA enforcement, data retention, access management, logging). Ensure consistent risk assessment and control validation across both internally managed and third‐party services. Collaborate with IT and Engineering teams to remediate control gaps and strengthen system‐level governance. Develop and maintain an inventory of systems and integrations, tracking ownership, classification, and control coverage. Customer and Sales Support Partner with Sales and Customer Success to respond to security questionnaires, RFPs, and due diligence requests from customers and prospects. Maintain and continuously improve Nitro's Trust and Security documentation, ensuring it reflects our current certifications and controls. Support customer security reviews by clearly articulating Nitro's security and compliance posture. Risk Management and Continuous Improvement Coordinate risk assessments across platforms and business processes; ensure identified risks are tracked and mitigated. Manage and evolve Nitro's vendor risk management program, assessing third‐party partners and integrations. Identify opportunities to streamline and automate compliance activities through tools, integrations, and data‐driven reporting. Collaborate closely with Security Operations to align compliance controls with operational monitoring and incident response capabilities. Stay current on emerging security and regulatory trends, helping Nitro anticipate and adapt to new requirements. What You Must Have 3–5+ years of experience in Information Security, GRC, or Security Assurance roles. Hands‐on experience managing compliance frameworks such as ISO 27001, SOC 2, HIPAA, or DORA. Proven experience liaising with external auditors or compliance vendors. Strong understanding of security governance, risk management, and control frameworks (e.g., ISO, NIST, COBIT). Demonstrated experience with SaaS and enterprise platforms (e.g., Salesforce, Atlassian, Microsoft 365, AWS, Azure or similar). Excellent communication, coordination, and stakeholder management skills. Strong analytical and organizational skills with attention to detail. Experience developing or maintaining security policies, control documentation, and audit evidence. Nice to Have Certifications such as CISA, CISM, CISSP, ISO 27001 Lead Implementer/Auditor, or equivalent. Familiarity with data protection and privacy regulations (GDPR, CCPA). Experience in third‐party risk management or vendor assurance programs. A mindset for continuous improvement and process automation in compliance operations. Prior experience in a SaaS or cloud‐first organization with complex integrations. Benefits Along with our standard benefits and programs (Health, Dental, Vision, and Retirement as standard), we also offer a few additional initiatives. Flex Time Off – Work‐life balance is important; we offer Flex Time Off for holidays, family time, or appointments. Hybrid Work – We combine three days of in‐person collaboration at our global offices in Toronto, Dublin, Antwerp, Porto, and Melbourne with two days of remote work each week. We provide a comprehensive benefits package that includes health insurance, dental and vision coverage, wellness perks, pension/401k matching, and many other country‐specific benefits. Nitro strongly encourages applications from everyone regardless of race, religion, colour, national origin, gender, sexual orientation, age, marital status or disability status. We provide an accessible candidate experience and invite you to request any accommodations or adjustments throughout the interview process and beyond. #J-18808-Ljbffr
- ...the world to innovate and solve tough technical problems. Our security team enables Mindera to meet security standards, such as UK Cyber... ...guys’ hands. We are looking for a Mid Information Security Analyst that will help the team monitoring Mindera’s infrastructure,...
€2,300 a €2,900 por mês
...Information Security Analyst (CrowdStrike/Palo Alto XDR) - Full Remote Portugal ABOUT THE OPPORTUNITY We are looking for a mid-level Information Security Analyst to join an international technology consultancy delivering innovative digital solutions for global...Trabalho remoto- ...business needs. Role Overview The Security Platform Engineer is responsible for the... ...procedures. Work closely with SOC analysts, engineering teams, and vendors to resolve... ...(CCFH) CrowdStrike Certified SIEM Analyst (CCSA) CrowdStrike Certified SIEM Engineer...
- ...of innovative solutions and support for all operations related to the business. We are looking for a Security Risk Officer to work in this project in Porto (Hybrid) . What are we looking for? - Bachelor's degree in Computer Science, Information Technology,...
- ..., manage, automate, act on, generate and secure billions of documents across business processes... ...About the Role The Cloud Support Analyst role is for people who are passionate... ...Business memberships covered by Doxis. ~ Hybrid/remote working environment. ~ Local...
- ...Neotalent, the responsive people. Find out more about us at . What you will do: We are looking for an Information Security Consultant to join one of the biggest companies in Europe, leader in the Renewable Energy sector and in clear expansion and growth...
- ...tech teams . We are looking for a SOC Analyst L1/L2 to join a project at a company... ...detecting, investigating, and responding to security threats, helping to maintain and improve... ...Insurance; Meal Card; Gym Ticket; Hybrid work (Porto) - 4x per week at the office....
€1,000 por mês
...~ Performance bonuses ~ Relocation package (up to €1000) ~ Hybrid work model: 2 days from the office in Sliema and 3 days from home... ...~ Meal allowance The job As the responsible gaming analyst you'll be in charge of investigating and analysing customers’ gameplay...- ...criação e distribuição de soluções fixas e móveis de televisão, internet, voz e dados a nível nacional. Procuramos um Application Security Engineer para um projeto em regime de trabalho hibrido para o Porto. Responsabilidades : - Definir e normalizar ciclos...
- ...responsabilidades Serás responsável pelo desenho e implementação de arquiteturas de segurança end-to-end, seguindo metodologias Security-by-Design. As tuas funções incluem a proteção de ambientes públicos, privados e híbridos, com foco em Identity & Access Management...
- ...performing tech teams . We are looking for a Junior NOC Analyst to join a project at a company specializing in financial market... ...professional growth Opportunity for career progression Hybrid work model: Porto office (3 days per month of home office) Salary...
- ...services Job Description We are looking for a Cyber Security Program Analyst to join a global cybersecurity transformation initiative... ...Security , including network segmentation, hardening, and secure architecture principles. Security frameworks and...
- ...performing tech teams. We are looking for an IT Operations Analyst to join a project at a company specializing in the management... ...on professional growth Opportunity for career progression Hybrid work model: Porto office (3 days per month of home office) Salary...
- ...next person to join WIRE IT. Role: Application Security Engineer Location: Hybrid, Porto, Portugal Required skills:... ...application vulnerabilities (OWASP Top 10 / API Top 10) and Secure SDLC Hands-on experience in vulnerability analysis,...
- ...across Europe. We are looking for an IT Security Engineer to join the team. In this role,... ...retail / e-commerce systems and cloud & hybrid infrastructures. ~ Relevant... ...MDM, CASB, IAM/PAM. ~ Understanding of secure coding practices and working with DevOps...
- ...We have an office hub in Porto available for those who prefer a hybrid model where you can spend time with colleagues in-person. You... ...required from time to time. WHO YOU'LL WORK WITH The IT Security Specialist is responsible for safeguarding Hostelworld’s internal...
- ...As a FinCrime Fraud Analyst, you will play a crucial role in providing exceptional support to customers and ensuring their satisfaction... ...-edge financial services, all the while promoting a safe, secure and compliant environment for all. Joining Deblock at this moment...
- ...and high potential. Cyber Security Senior Officer This is your... ...from IT security analysts related to IT projects portfolio... ...security advisory and supporting secure technology implementations.... ...to 52k yearly Remote work: Hybrid Job category: Cyber Security...
- ...tech teams . We are looking for a Junior IT Operations Analyst to join a project at a company specializing in the management... ...on professional growth Opportunity for career progression Hybrid work model: Porto office (3 days per month of home office) Salary...
- ...person to join WIRE IT. Role: Salesforce Business Analyst Location: Hybrid, Porto, Portugal Required Skills: ~5+ Years of... ...in a similar role ~ Understanding of Salesforce security model (profiles, roles, permission sets, sharing rules)....
- A nossa paixão coloca-nos no lugar certo. A CodeWin nasceu da fusão de duas empresas líderes no setor tecnológico: De code e So win . Unimos a nossa paixão, os nossos talentos, conhecimentos e experiências para levar até às nossas pessoas e parceiros as melhores...
- ...Posting Close Date: 30-ago.-2026 Job Family: FXE-EU: Marketing Analyst (ID) Position Summary: **Market Intelligence Analyst (... ...our customers, who reward us with the profitability necessary to secure our future. The essential element in making the People-Service-...
- ...Responsibilities Join our company as Security Engineer (all genders) and become part of... ...in our products, with a strong focus on secure-by-design principles. ~ Identify, analyze... ...all Hands and Leadership Lunches Hybrid and Flexible work time with up to 50%...
€35,000 a €46,500 por año
...about cybersecurity, data protection, and security operations ? Then this position is for... ...As a Data Loss Prevention (DLP) Security Analyst , you will be responsible for monitoring... ...Permanent contract /B2B Remote work: Hybrid Salary: €35K – €46.5K gross/year (depending...- ...several European cities. We are looking for an IT Operations Analyst to join a project based in Porto (On-site) .... ...-level technical support for IT operations related to Central Securities Depositories. -Monitor systems, applications, and infrastructure...
- ...and Insight! Porto-based opportunity with hybrid work model (up to 3 days remote per week). As a Cybersecurity Risk Analyst , you will be working for our client, a... ...safeguarding critical infrastructure, strengthening security protocols, and enabling resilient...
- ...Join our global Information Security team as an Information Security Manager, where you'll play a crucial role in protecting TUI's IT organisation and promoting a security-first culture across multiple Technology Domains. This role will be advertised for a minimum...
- ...controlled change management Experience working in a global, multi-country environment Strong understanding of HR processes, security, access controls, and data integrity Ability to work cross-functionally with HR, IT, AMS, and third-party providers Strong...
- Antes de saberes quem somos, é importante saberes quem não somos . Não somos uma equipa qualquer. Somos muito mais do que isso. Com a nossa expertise em geração de leads , ajudamos clientes a tomar as melhores decisões na aquisição de produtos e serviços, fornecendo...
€65,000 por año
...Hiire is helping a Renewable Energy company hire an IT Security Manager for its office in Matosinhos. Your mission: Are you ready... ...Fortinet NSE (PCP or higher) Splunk (Cybersecurity Defense Analyst or Enterprise Security Certified Admin) Proven skills in Penetration...
Deseja receber mais vagas?
Assine e receba vagas semelhantes a Security Analyst (Hybrid). Seja o primeiro a se candidatar!


