[Job-28859] Senior GRC Security Specialist, Brazil

11 hours, 15 minutes ago
Full-time
Senior
Cybersecurity
CI&T

CI&T

CI&T is a global digital technology agency empowering agile growth for leading companies through advanced technologies with a team of 2000 experts worldwide.

Internet Software & Services
5K-10K
Founded 1995

Description

  • Continuously identify, log, and analyze control nonconformities and unresolved or high-risk vulnerabilities from multiple sources.
  • Maintain the risk registry and provide timely risk treatment updates and reports to stakeholders.
  • Execute annual third-party cybersecurity risk assessments in line with internal standards and external compliance requirements.
  • Maintain and improve the cybersecurity control framework by mapping controls, collecting execution evidence, identifying gaps, and resolving overlapping requirements.
  • Ensure cybersecurity controls align with frameworks and requirements such as HITRUST, HIPAA, and Spain ENS certification.
  • Create and maintain cybersecurity policies and procedures that meet regulatory and contractual standards.
  • Conduct cybersecurity risk assessments, identify vulnerabilities, and recommend mitigation strategies.
  • Collaborate with cross-functional, technical, and non-technical stakeholders to communicate and implement GRC policies, procedures, and controls.
  • Support internal and external audits with documentation and evidence to demonstrate compliance.
  • Maintain and update GRC documentation, including risk assessments, policies, and procedures.

Requirements

  • Advanced English for communication with international clients.
  • Strong experience in GRC, cyber risk management, or related roles.
  • Excellent communication skills and the ability to collaborate with technical and non-technical stakeholders.
  • Strong analytical and problem-solving skills with sound decision-making under pressure.
  • Strong understanding of GRC frameworks, industry standards, and regulatory requirements.
  • Excellent attention to detail and the ability to work independently and in cross-functional teams.
  • Experience with threat intelligence is a plus.
  • Experience working for companies based in the United States is a plus.
  • Bachelor’s degree in Computer Science, Information Security, or a related field is a plus.
  • Experience in the medical device industry is a plus.
  • Familiarity with FDA regulations, HIPAA, ISO, and the NIST Cybersecurity Framework is a plus.
  • Relevant certifications such as CISSP, CISA, or CRISC are a plus.

Benefits

  • Health and dental insurance.
  • Meal and food allowance.
  • Childcare assistance.
  • Extended paternity leave.
  • Wellhub (Gympass) and TotalPass partnerships for gyms and health and wellness professionals.
  • Profit Sharing and Results Participation (PLR).
  • Life insurance.
  • Continuous learning through CI&T University and partnerships with online learning platforms.
  • Free online platform dedicated to physical, mental, and overall well-being.
  • Language learning platform.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Security Analyst Support Intern Assessment Test

Wordfence 11-50 Internet Software & Services

Defiant is using this assessment for its Security Analyst Support Internship application process, and candidates are instructed to complete it only if specifically invited.

Cybersecurity
10 hours, 30 minutes ago

Security Operations Analyst

Cority 251-1K Chemicals

Cority is hiring a remote Security Operations Analyst to help protect its cloud-based EHS+ platform by monitoring security controls, managing vulnerability and awareness programs, and supporting incident response and governance efforts.

AWS Azure GitLab Penetration Testing SIEM
11 hours ago

Senior Customer Assurance Analyst

Wiz 251-1K IT Services

Wiz is seeking a Senior Customer Assurance Analyst to support customer trust, security, and compliance for its cloud security platform as the company scales internationally and adopts AI responsibly.

AWS Azure Cybersecurity GCP
1 day, 1 hour ago

Security Analyst Support Intern

Wordfence 11-50 Internet Software & Services

Defiant, the maker of Wordfence, is hiring a Security Analyst Support Intern for a 12-week remote internship focused on supporting WordPress security operations, customer troubleshooting, and cross-functional exposure across support, QA, marketing, care and response, and threat intelligence.

FTP GitHub Network Security SEO WordPress
1 day, 11 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers