Cyber Security Senior Officer
Every moment counts. Especially those you live to the fullest. Welcome to Consort Group.
For over 30 years, Consort Group has been helping companies leverage their data and infrastructure. It is backed by two leaders, Consortis and Consortia, and places people and social responsibility at the heart of its values.
This is your future team
Established in 2021, Consort Portugal supports the strategic offshoring choices of our clients, particularly in Europe, and brings our expertise in infrastructure services to the Portuguese market. With a team of around 45 employees, our Service Center based in Porto is developing a dynamic nearshore business, offering the French and European markets an environment of excellence and high potential.
Cyber Security Senior Officer
This is your mission
Are you passionate about cybersecurity, security architecture, and protecting critical digital environments? Then this position is for you.
As a Cyber Security Senior Officer, you will work closely with security leadership, IT delivery teams, product owners, and business stakeholders to identify and mitigate cyber risks, design secure architectures, and embed security-by-design principles across cloud-native and financial services environments.
Build side:
Identify, assess, and prioritize cyber risks across IT projects and production environments.
Design end-to-end security architectures covering network, application, data, and cloud environments.
Develop security blueprints, reference architectures, and hardened configuration baselines.
Define and integrate security controls across cloud-native environments, including multi-cloud, infrastructure-as-code, containers, and serverless architectures.
Advise IT delivery teams, product owners, and business stakeholders on security requirements and security-by-design principles.
Conduct security assessments, threat modelling, and reviews of architecture and security deliverables.
Define remediation roadmaps and provide clear, actionable recommendations to address identified security gaps.
Contribute to the integration of AI-enabled security solutions, including automated threat intelligence, risk scoring, and security-focused code analysis.
Run side:
Monitor and assess cyber risks affecting production environments and critical financial services platforms.
Review security controls, vulnerability management activities, threat models, and security testing results.
Assess the effectiveness of existing security processes and identify opportunities for continuous improvement.
Support the definition and implementation of cloud security controls, including IAM, encryption, network security, secrets management, CSPM/CSA, and secure CI/CD practices.
Collaborate with security analysts and engineering teams to review and improve security deliverables.
Facilitate security workshops, awareness sessions, training, and security champion initiatives.
Contribute to security governance, internal knowledge bases, standards, and best-practice documentation.
Support compliance with applicable security standards, regulatory requirements, and internal security policies.
This is your background
You have at least 8 years of professional experience in cybersecurity, including at least 4 years in security architecture, cyber risk, or a senior security advisory role.
You have experience working in complex and demanding environments, ideally within banking, financial services, or other highly regulated industries. You are comfortable working across technical and business teams and translating complex cybersecurity requirements into clear and actionable recommendations.
You are proactive, analytical, results-driven, and comfortable taking ownership of security topics from assessment through to remediation.
This is your expertise:
Cybersecurity & Security Architecture: Security-by-design, security architecture, threat modelling, risk assessment, security controls, zero trust, application, infrastructure, network and data security.
Cyber Risk & Governance: ISO/IEC 27000 series, ISO 27005, ISO 31000, NIST CSF and security governance frameworks.
Cloud Security: AWS, Azure and/or GCP; IAM, networking, encryption, secrets management, CSPM/CSA and cloud security controls.
Cloud-Native Technologies: Microservices, APIs, containers, Kubernetes, serverless architectures, Infrastructure-as-Code and secure CI/CD pipelines.
Security Tools & Practices: Vulnerability management, SIEM, DLP, SAST/DAST, IAM governance and security testing.
Financial Services Security: Knowledge of investment banking environments, regulatory expectations, PSD2, GDPR, PCI DSS and financial-sector threat landscapes.
AI & Cybersecurity: Familiarity with AI-enabled security solutions, automated threat intelligence, risk scoring, anomaly detection, or AI-assisted code/security analysis.
Certifications: CISSP is mandatory. CISA, CCSP, AWS/Azure/GCP Security certifications are considered a plus.
Education: Bachelor's or Master's degree in Computer Science, Information Security, Engineering, or a related discipline.
This is how you work as part of a team:
Strong interpersonal and communication skills, both written and verbal.
Ability to communicate effectively with both technical and non-technical stakeholders.
Strong analytical and problem-solving skills.
Client-focused and results-driven mindset.
Ability to work autonomously while contributing effectively to international and multicultural teams.
Comfortable collaborating across geographically distributed teams.
Strong sense of integrity, accountability, and ownership.
Ability to influence stakeholders and provide clear, pragmatic security recommendations.
Language Skills :
English: Fluent / Professional proficiency required.
French: Basic knowledge is a plus.
This is our commitment
At Consort Group, you are an expert who we support so that every assignment becomes a step that counts.
Attentive and human onboarding
A truly hands-on management style
Continuous training opportunities
Concrete commitments: inclusion, equality, solidarity
A comprehensive HR package: health insurance, TR card, CSE
A culture of feedback and meaningful projects
The recruitment process:
An initial phone call with our recruitment team
An HR interview and a job interview with a business engineer
A test or technical interview with one of our experts
A final meeting with your future manager or project manager
And if we're a good fit, we'll get started together
Good to know
Location: Lisbon or Porto
Contract: Permanent contract
Remote work: Hybrid (50%)
Salary: 48k to 58k Gross/Year depending on experience
Job category: Cybersecurity / Security Architecture / Cyber Risk / Cloud Security
What you will do here, you won't do anywhere else.
This moment is yours.
- Department
- Fonctions Transverses
- Locations
- Porto Office, Lisbon
- Famille de Métiers
- Sécurité/CyberSécurité