
Noesis
We are an international technology consultancy with a thousand talents specialized in different technologies. Every day, we work together to create innovative solutions that impact society. We are in Portugal, Spain, the Netherlands, Brazil, Ireland, and the USA. It is in cultural diversity and opportunities that we find the motivation to innovate and challenge ourselves to be better.
About company Compliance analyst - Lisbon/hybrid
Remote
Lisbon
August 20, 2026
Full-time
Compliance Analyst - Lisbon/Hybrid
Noesis is looking for professionals with the following profile:
Main Tasks and Responsibilities:
- Monitor legal, regulatory, and normative requirements applicable to Cybersecurity, Information Security, Data Protection, and Digital Resilience.
- Support the interpretation and operationalization of compliance requirements, including NIS2, EASA PART-IS, GDPR, NIST CSF, ISO/IEC 27001, and other applicable references.
- Conduct regulatory compliance assessments, gap assessments, and compliance matrices, ensuring the identification of deviations, the provision of evidence, and action plans for identified issues.
- Ensure the registration and updating of compliance matrices, applicable requirements, associated controls, and their document traceability.
- Support the Change Management processes, ensuring the provision of evidence.
- Assist in internal and external audits, regulatory inspections, and independent assessments, ensuring preparation, evidence collection, and follow-up.
- Monitor action and mitigation plans resulting from audits, inspections, compliance assessments, or regulatory changes.
- Support the review and update of internal Information Security and Cybersecurity policies, procedures, standards, and guidelines.
- Assist in contractual negotiations with suppliers regarding Information Security, ensuring that agreed clauses comply with regulatory scopes.
- Consolidate compliance information and produce periodic reports for management, audits, and regulatory entities.
- Track legal and regulatory changes, assessing impacts and promoting coordination with areas responsible for their implementation and management.
- Interact with internal and external stakeholders to promote the consistent implementation of compliance requirements.
Requirements:
- Relevant professional experience (implementation and/or execution of Cybersecurity Information Security risk management programs) of at least 2 years.
- Basic knowledge of Risk & Compliance frameworks.
- Knowledge of relevant standards in the field of Cybersecurity and Information Security (e.g., ISO 27001, NIST CSF).
- Knowledge of Information Technology (e.g., information system management, application platforms, software development).
- Knowledge or experience in document management, compliance evidence, and executive reporting.
- Experience in regulatory analysis.
- Fluent Portuguese and advanced English (spoken and written at least B2 level).
Preferred Requirements (not mandatory):
- Bachelor's or master's degree (preferably) in Law, Management, Information Technology (e.g., Computer Science, Electrical Engineering, Telecommunications, Cybersecurity, Information Systems Management) or equivalent area.
- Experience in Risk Management from a compliance law perspective for NIS, GDPR, and civil aviation legislation.
- Participation in audits or compliance assessments.
- Experience and/or knowledge of GRC tools and risk registers.
- Additional training in Compliance, Data Protection, or Information Security.
- Interest in aviation regulation and operational risk.
Work regime:
Hybrid (2x a week in the office)
If you meet these conditions and would like to join an innovative organization that continuously invests in the training of its talents, send us your application.
Join us. Let’s innovate together!
All our recruitment and selection processes are based on equal opportunities, valuing the competence and potential of each person and ensuring that no candidate is discriminated against based on gender, ethnicity, sexual orientation, age, religion, or physical condition.