BTO Recherche
Luxembourg, LUXEMBOURG
Mission
The Cybersecurity Risk Analyst will support our clients in identifying, assessing, and managing cybersecurity risks across complex IT and business environments.
He/She will work closely with IT, compliance, and governance stakeholders to ensure that risk levels remain acceptable and that mitigation strategies are aligned with the organization's policies and EU standards (NIS2, DORA, ISO 27005, EBA, EIOPA guidelines, etc.).
Key Responsibilities
• Perform qualitative and quantitative cybersecurity risk assessments on systems, applications, and processes.
• Analyse vulnerabilities and evaluate technical, operational, and organizational controls.
• Draft and maintain IT Security Risk Registers and Risk Treatment Plans.
• Contribute to Security Plans, Business Impact Analyses, and Continuity Reviews.
• Support project teams in defining and validating security requirements early in the lifecycle.
• Provide input to governance and compliance reports, including management dashboards and risk KPIs.
• Stay up to date with evolving EU cybersecurity frameworks and integrate best practices into risk methodologies.
Profile
• Degree in Computer Science, Information Security, Risk Management, or equivalent.
• 3 + years of experience in cybersecurity risk management or IT security governance.
• Solid understanding of ISO 27005, ISO 31000, NIST RMF, or EBIOS RM methods.
• Strong analytical and reporting skills; ability to communicate with both technical and non-technical stakeholders.
• Experience with tools such as RSA Archer, ServiceNow GRC, or similar is a plus.
• Certifications (preferred): CISM, CRISC, CISSP, ISO 27005 RM, Security +.
• Fluent in English
Postáilte An líon seo seachtainí ó shin: 1