This job is no longer available
This job expired on 19/09/2026. It no longer accepts applications.
Cyber Security Analyst – Penetration Testing
VIRTHIO · Porto
Job description
About the role
VIRTHIO is seeking a Cyber Security Analyst to evaluate and mitigate vulnerabilities identified through penetration tests and security assessments. You will act as a bridge between pentest vendors, internal teams and risk stakeholders, ensuring findings are properly addressed and aligned with financial sector regulations.
Key responsibilities
- Assess technical correctness, severity and business impact of penetration‑test findings.
- Reproduce reported vulnerabilities, validate fixes and confirm risk mitigation before sign‑off.
- Support engineering and operations teams in interpreting recommendations and designing viable mitigation strategies.
- Review remediation extension requests, evaluating technical justification and residual risk.
- Serve as the central contact point for pentest vendors, system owners, SecOps and risk owners.
- Ensure testing workflows comply with internal standards and regulations such as DORA, TIBER‑EU/DE, EBA ICT & Security Guidelines and BAIT.
- Contribute to the evolution of the enterprise pentesting framework and define quality benchmarks for vulnerability resolution.
Required profile
- Minimum 3 years of hands‑on experience in penetration testing, red teaming, security assessments or secure software engineering.
- Strong understanding of vulnerability taxonomies, attack vectors and financial‑sector security frameworks (BAIT, EBA ICT, DORA, TIBER‑EU/DE).
- Proven ability to reproduce vulnerabilities and validate remediation effectiveness.
- Experience with security assessment reports, vulnerability management platforms and ticketing tools (e.g., Jira).
- High attention to detail and excellent communication skills for interaction with technical and managerial audiences.
- Fluent English (minimum B2) and willingness to travel as operational needs dictate.
Required skills
- Penetration testing
- Red teaming
- Security assessments
- Vulnerability management platforms (e.g., Jira)
- Knowledge of BAIT, EBA ICT & Security Guidelines, DORA, TIBER‑EU/DE
What we offer
- Open‑mind environment where ideas and independent thinking are welcomed.
- Dynamic, collaborative workplace with opportunities for career progression and continuous learning.
- Flexible working hours and hybrid work model.
- Participation in innovative projects across diverse sectors.
Questions fréquentes
Why are you reporting this job?
Explore further
Salaries, guides and searches in Portugal.
Salaries by job title
Boost your chances
Upload your CV — we will match you with relevant openings.
Analyzing your CV...
VIRTHIO
Porto