Yopeso Logo

Cybersecurity Risk Analyst - Moldova

Job Description

Description

Yopeso has been developing a diverse range of software products, from large-scale applications to smaller solutions, for 20 years. With a growing team of over 300 employees across five locations, we are dedicated to fostering a culture of growth, transparency, and professionalism.

At Yopeso, we value authenticity, curiosity, and ambition. These values drive us to build strong connections within our community and with our partners, ensuring trust, integrity, and transparency in all our business practices. We strive to maintain the highest professional standards and continuously challenge ourselves to develop high-quality, high-performance, and secure software solutions.

Our approach is rooted in efficient collaboration among passionate professionals working in agile teams. Guided by curiosity and ambition, we strive to create products that are meaningful and impactful, while remaining true to our authentic selves.

What we offer:

  • Competitive remuneration

  • Remote work

  • Sports/leisure benefit

  • 20 sick leave days paid at 100%

  • 32 calendar days of vacation

  • Team events, online, at the office, or outside

  • Professional development plan with guidance and mentorship

  • Training and development opportunities with an allocated budget

  • Professional Certifications

  • Optional medical insurance

Requirements

As a Cybersecurity Risk Analyst, you will play a crucial role in conducting Threat and Risk Assessments (TRA) for a wide range of Grid Solutions projects, including R&D initiatives, product development (hardware & software), and full-scope critical infrastructure systems such as HVDC, HVAC, Firefighting, and more.

By identifying, assessing, and prioritizing cybersecurity risks, you will collaborate with various teams to ensure that potential threats are detected early and that appropriate mitigation measures are implemented. Your work will contribute directly to improving project execution, security compliance, and market readiness.

How You’ll Make an Impact

  • Providing threat & risk analysis as a service: Planning and performing Cybersecurity Threat and Risk Analyses for IT and OT systems and products across Grid Solutions projects.

  • Identifying and prioritizing risks: Identifying, evaluating, and prioritizing cybersecurity risks across projects and systems; assessing risk scenarios, attack vectors, and attacker types along exposure, exploitability, impact, inherent and residual risk.

  • Moderating TRA workshops: Facilitating threat and risk analysis workshops together with senior project members and security specialists as TRA moderator.

  • Tracking mitigation and residual risk: Recommending risk-based measures, tracking mitigation, and ensuring residual risks are formally reviewed and accepted.

  • Maintaining risk transparency: Producing and maintaining the Threat and Risk Analysis, Security Risk Register and risk treatment documentation to ensure traceability, compliance and audit readiness.

  • Strengthening the methodology: Continuously improving the TRA process, templates, workflows and tooling (e.g., the PSS Threat and Risk Tool).

  • Supporting projects and engineering teams: Sharing identified risks and possible countermeasures with project and engineering teams as input for their decisions.

  • Ensuring compliance: Translating relevant standards and regulations into practical risk work (e.g., IEC 62443, CRA, NIS-2, NERC CIP, BDEW Whitepaper).

What You Bring

  • Completed studies: Bachelor or Master in IT Security, Computer Science, Electrical Engineering with a focus on IT Security, or a comparable qualification with relevant professional experience.

  • Expertise in risk analysis: Experience in cybersecurity threat and risk assessment, threat modeling and risk prioritization in OT or product security.

  • Knowledge of standards: Familiarity with ISA/IEC 62443 (especially risk assessment, 62443-3-2/-3-3), and others such as CRA, NIS-2, NERC CIP, BDEW Whitepaper, ISO 2700127005.

  • OT/ICS understanding: Understanding of industrial control systems, network architectures and protocols, and how security risks manifest in operational environments.

  • Workshop facilitation: Ability to moderate TRA workshops and align multidisciplinary stakeholders from project, engineering, and security.

  • Analytical mindset: Strong analytical and structured way of working; able to translate technical detail into clear, prioritized risk statements.

  • Communication skills: Proficient in English, with a high level of initiative and the ability to communicate risk to technical and non-technical stakeholders (German is a plus).

  • Desirable certifications: Certifications such as ISA/IEC 62443, CEH, CySA+, or similar are a plus (no hard requirement).

Share this job:
Please let Yopeso know you found this job on Remote First Jobs 🙏

Explore more remote jobs

150 similar remote jobs

Explore latest remote opportunities and join a team that values work flexibility.

Remote companies like Yopeso

Find your next opportunity with companies that specialize in Agile Software Development, Custom Software Development, Web Development, and Mobile Application Development. Explore remote-first companies like Yopeso that prioritize flexible work and home-office freedom.

SmartLogic Logo

SmartLogic

Develops custom web and mobile applications for startups and enterprises.

View company profile →
Powdevs Logo

Powdevs

Provides software development teams, team augmentation, and app development services in various technologies.

View company profile →
Droids On Roids Logo

Droids On Roids

A mobile and web development company based in Poland, offering full-stack mobile, web, and backend services.

View company profile →
Óscala Logo

Óscala

Provides nearshore software development services from Spain to Dutch and Northwestern European companies.

View company profile →
Inventive Works, LLC Logo

Inventive Works, LLC

Custom software applications and cloud migration services for businesses of all sizes.

View company profile →
intent Logo

intent

Digital product development

View company profile →

Project: Career Search

Rev. 2026.7

[ Remote Jobs ]
Direct Access

We source jobs directly from 21,000+ company career pages. No intermediaries.

01

Discover Hidden Jobs

Unique jobs you won't find on other job boards.

02

Advanced Filters

Filter by category, benefits, seniority, and more.

03

Priority Job Alerts

Get timely alerts for new job openings every day.

04

Manage Your Job Hunt

Save jobs you like and keep a simple list of your applications.

21,000+ SOURCES UPDATED 24/7
Apply