Skip to content

Information and Cybersecurity Engineer (ISO27001, TISAX, Azure, AWS)

Remote, Hybrid
  • Lisboa, Lisboa, Portugal

Job description

About Us

At KIT-AR, we are revolutionizing quality assurance in the era of Industry 4.0, taking a leading role in the digital transformation of the human-centred manufacturing shopfloor. Our cutting-edge tools empower manufacturing companies to minimize errors and waste, whilst positively impacting workforce skills, customer revenues, and global sustainability efforts.

Role Overview

As an Information and CyberSecurity Security Engineer at KIT-AR you will play a crucial role in supporting and contributing to company-wide security initiatives, influencing both internal systems and customer facing platforms on the latest and most exciting technologies, supporting missing our critical applications on customers factories across the world.

In your daily work you will:

  • Engage with company management and IT in order to drive forward ISO27001 and TISAX certification and GDPR compliance initiatives, in coordination with both internal and external resources;
  • Produce, improve and maintain processes and procedures on IT and Information Security;
  • Manage the company Information Security Management System (ISMS) supported by modern specific tools;
  • Assess, design and implement tools, systems and services on different aspects of information security and cybersecurity;
  • Procure, specify and supervise various cybersecurity services, including penetration testing;
  • Operate security monitoring systems in coordination with internal IT and external providers;
  • Lead the setup of an security incident response program;
  • Participate in the Business Continuity and Disaster Recovery processes;

What We Offer:

  • Competitive startup salary with equity opportunities.
  • Opportunity to shape the future of a high-growth startup and play a pivotal role in our success story.
  • A collaborative and innovative work environment where your ideas and initiatives will be valued.
  • Room for rapid professional growth and advancement within the company

This is a remote position requiring tax-residency and work visa in Portugal or the United Kingdom.

How To Apply:

Please submit your application as soon as possible as we evaluate candidates on an ongoing basis, but one of the following contacts:

  • Send us an e-mail with your curriculum vitae and include "Information and Cybersecurity Engineer [24605]" in the subject line (;
  • Apply at the careers site (;
  • If you are receiving this at a job board, please use the provided apply button.

If you have technical difficulties with the application process, please do not hesitate to contact us at, but please note that applications sent to this email address will not be considered.

Job requirements


  • MSc in Computer Science, Information Technology, or a related field;
  • 3yr+ experience in information security or cyber security;
  • Solid knowledge of Security, Networking, IT Systems (linux and windows), Azure AD, Azure and AWS;
  • Operating knowledge of ISO27001, TISAX, SOC2 or a similar security standard;
  • An understanding of current and emerging threats and countermeasures and the organizational challenges to addressing these threats;
  • Practical knowledge of security technologies and wider business solutions including Firewalls, IDS/IPS, Identity and access management, SIEM, remote working and cloud technologies skills;
  • Excellent verbal communication and writing skills, being able to present complex issues in simple and understandable manner;
  • Ability to understand an organization's business and product strategy, and ensure alignment of information and cybersecurity initiatives and goals;
  • Ability to write clear and understandable documents, processes and procedures;
  • Proficiency in English (C1+);

Bonus points for:

  • Formal training on ISO 27001, TISAX, SOC2 or similar security standards;
  • One or more of the following certifications CISM, CISA, CRISC, CISSP;
  • Experience as GDPR DPO;
  • Experience in technical cyber security workloads and requirements;


Apply with Indeed unavailable