Confidential
Chief Information Security Officer (CISO)
ConfidentialPortugal16 hours ago
Full-timeInformation Technology

Your leadership shapes our security future.


A global services organization operating across multiple regions is seeking an experienced Chief Information Security Officer (CISO) to lead the strategy, governance, and execution of its cybersecurity and risk management agenda. As the senior most security leader, the CISO will be responsible for ensuring the confidentiality, integrity, and availability of the company’s information assets and technology ecosystem while enabling innovation, operational resilience, and client trust.


This role is both strategic and hands‑on, ideal for a security leader who thrives in dynamic, multi‑country environments and can bridge business, technology, regulatory, and client expectations.


Key Responsibilities


· Define and execute the global information security strategy, ensuring alignment with business objectives and evolving regulatory requirements, including DORA, FINMA circulars & guidance, GDPR, ISO 27001, SOC 2, and AI Act–related obligations.

· Establish and maintain an enterprise-wide security governance framework with policies and controls covering cybersecurity, data protection, identity & access, infrastructure security, and cloud security (Azure/AWS).

· Lead enterprise risk management activities including threat assessments, vulnerability management, incident response, and executive crisis communication.

· Oversee regulatory compliance programs and external assurance engagements tied to DORA, FINMA, ISO 27001, SOC2, GDPR, and AI Act readiness.

· Build and lead a high-performing global security team across operations, engineering, governance, and risk functions.

· Partner with Technology, Legal, Risk & Compliance, and business leaders to enable secure transformation while maintaining operational efficiency.

· Serve as the primary security authority for clients, auditors, and regulators, owning board‑level reporting and executive communication.

· Lead security operations (SOC, threat intelligence, incident management) and drive continuous improvement through metrics, KPIs, and post‑incident reviews.


Required Qualifications & Experience


· 10+ years of progressive cybersecurity leadership experience, including at least 5 years in senior roles (CISO, Deputy CISO, Head of Security).

· Demonstrated experience implementing and running security programs in global or regulated environments, including compliance with DORA, FINMA, GDPR, AI Act obligations, ISO 27001, SOC2, and NIST CSF.

· Proven ability to manage large-scale incident response, crisis leadership, and communication with executive boards and external stakeholders.

· Strong understanding of cloud security across Azure and AWS (no GCP required).

· Expertise in identity and access management, vulnerability management, network security, and secure development practices (DevSecOps).

· Strong executive presence, able to influence senior leaders, regulators, and client stakeholders.

· Experience managing security budgets, vendor ecosystems (MSSPs), and tooling landscapes.

· Relevant certifications strongly preferred: CISSP, CISM, CCISO, ISO 27001 Lead Auditor/Implementer


Key Competencies

  • Strategic & Commercial Thinking
  • Executive Presence & Communication
  • Risk-Based Decision Making
  • Technical Breadth Across Modern Security Domains
  • High Ownership & Accountability
  • Team Leadership & Talent Development
  • Ability to Operate Across Business, Technology & Regulatory Contexts


Why This Role Matters

The CISO will serve as the guardian of trust for clients, partners, and internal stakeholders. As the organization accelerates its digital and AI transformation, this role is pivotal in ensuring security is embedded by design and scaled globally with discipline and resilience.

Key Skills

Ranked by relevance