Description
Job Summary:
Manage and lead the information security and cybersecurity strategy, ensuring protection of digital assets and legal compliance.
Key Highlights:
1. Lead the information security and cybersecurity strategy
2. Ensure protection of digital assets and legal compliance
3. Join a strong team working on large-scale technology projects
#### **About the Information Security & Cybersecurity Manager Role**
**Location:** Porto
**Work Mode:** On-site
**About Our Client**
-------------------------
Our client is a leading corporate group in the tourism and hospitality sector, recognized for its continuous investment in technological innovation, operational excellence, and high standards of information security.
As part of strengthening its Information Systems team, it seeks to hire an **Information Security & Cybersecurity Manager**, responsible for leading the security strategy, ensuring protection of digital assets, and guaranteeing adherence to best practices and legal requirements.
**Key Responsibilities**
--------------------------------
* Define and implement the Group's Information Security and Cybersecurity strategy;
* Develop security policies, standards, and procedures;
* Ensure compliance with applicable frameworks and legislation (e.g., ISO 27001, NIS2, GDPR);
* Coordinate technology security projects;
* Manage protection, monitoring, and incident response tools;
* Implement vulnerability management and risk analysis processes;
* Coordinate internal and external audits;
* Promote security awareness and training initiatives;
* Collaborate closely with other IT teams and technology partners;
* Define business continuity and disaster recovery plans.
**Profile**
----------
* Bachelor’s or higher degree in Computer Engineering, Information Systems, Cybersecurity, or related field;
* Proven experience in information security roles;
* Knowledge of security frameworks and risk management;
* Experience with Firewalls, EDR/XDR, SIEM, IAM, Backup, and protection solutions;
* Knowledge of Cloud Security (Azure, AWS, or GCP);
* Project management experience;
* Strong communication and business influence skills;
* Fluent English.
**We Value**
---------------
* Certifications such as CISSP, CISM, ISO27001 Lead Implementer/Auditor, CEH, or equivalents;
* Knowledge of Governance, Risk & Compliance (GRC);
* Experience in highly critical corporate environments.
**What We Offer**
--------------------
* Opportunity to join a solid and growing group;
* Large-scale technology projects;
* High autonomy and strategic impact;
* Competitive salary package commensurate with experience.