Job Description
Job Brief
- We are looking for a Compliance and Privacy expert to drive data governance initiatives for a publicly traded American multinational with offices in Portugal.
Responsibilities
- Collaborate across departments to prepare for audits, customer due diligence, and regulatory reviews, ensuring internal processes meet assurance requirements.
- Work closely with engineering, IT, and infrastructure teams to validate that access management, encryption protocols, system settings, and network design are compliant with internal policies and external obligations.
- Contribute to the design and upkeep of a centralized control framework that integrates technical safeguards with contractual, legal, and industry-standard requirements.
- Assess technical documentation, audit outcomes, and system evidence to evaluate control performance, identify weaknesses, and help shape remediation strategies.
- Support the roll-out of a company-wide monitoring program by coordinating risk reporting, overseeing remediation progress, and maintaining detailed compliance records and visualizations.
- Maintain up-to-date compliance reports and dashboards that reflect control maturity, program status, and audit readiness across key domains.
- Track and interpret updates to global compliance frameworks and regulatory guidance, assessing their operational impact and recommending adjustments to internal controls.
- Help operationalize compliance requirements by converting them into scalable technical and procedural practices embedded within business workflows.
Requirements and Skills
- Solid foundation in governance, risk, and compliance (GRC) functions within large-scale environments, with exposure to frameworks such as DORA, C5, ITSG-33, Protected B, NIST, ISO, and APRA guidelines.
- Proven experience drafting control-related documentation, including policies, standard operating procedures, and audit-ready evidence, through direct engagement with subject matter experts.
- Strong grasp of technical control requirements related to data handling, including encryption, classification, access management, and incident response protocols.
- Skilled in vulnerability identification and remediation workflows, with familiarity in tools and methodologies such as CVE and CVSS, and assurance of control effectiveness.
- Demonstrated ability to navigate shifting priorities in fast-paced settings while managing several parallel initiatives with efficiency and attention to detail.
- Excellent problem-solving and communication skills, with the confidence to operate both independently and in collaboration with cross-functional teams.
- Holds a bachelor’s degree in a related field and at least 2 years of experience, or 4+ years of equivalent work experience in compliance, security assurance, or audit-focused roles.
Next steps:
-
Do you consider yourself the ideal candidate for this role? If so, take the next step and apply now. Our team will take care of the rest.