Multi-Tenant Access Control & Role Governance Consultant - LATAM Remote

3 hours, 40 minutes ago
Contract
Senior
Cybersecurity
Workstate

Workstate

Workstate is an interactive consultancy headquartered in Columbus, Ohio, with offices across the U.S. Specializing in Application Security, Big Data, Cloud Shift, Enterprise Identity and Access Management, QA and Testing, and Technology Team Rental. Wo...

Internet Software & Services
51-250
Founded 1997

Description

  • Drive the evolution of access control from a single-tenant to a multi-tenant architecture with compliance and security built in by default.
  • Serve as a primary contributor to the Role Discovery and Governance Program, with an immediate focus on analyzing and documenting over 200 existing platform roles for SOX compliance.
  • Collaborate with GRC, Security, Engineering, and Product teams to create and maintain a centralized Role Catalog as the single source of truth for access permissions.
  • Document the business purpose, ownership, and consumption patterns for each role to support future migration to a new RBAC system.
  • Develop and implement a formal governance process for the role lifecycle, including creation, modification, deprecation, and periodic access reviews.
  • Analyze the current role landscape to identify simplification and consolidation opportunities, including recommending deprecation of redundant or unused roles.
  • Partner with business process owners and engineering teams on the design and modification of processes and controls to align with multi-tenancy goals and compliance requirements.
  • Liaise with internal and external auditors to support SOX audits, control testing, and remediation of identified deficiencies.

Requirements

  • 5-7 years of professional experience is typically expected.
  • 3-5 years of experience in Information Security with a focus on Identity and Access Management (IAM), Role-Based Access Control (RBAC), and risk management.
  • Direct, hands-on experience with SOX compliance is required.
  • Familiarity with frameworks such as NIST, COSO, or ISO 27001 is a plus.
  • Strong ability to communicate complex security and risk concepts to engineers and business leaders.
  • Proven ability to collaborate cross-functionally to implement new security programs and controls.
  • Experience securing a platform at scale; SaaS or multi-tenant environment experience is highly desirable.
  • Empathetic and accountable approach to balancing security requirements with business objectives.
  • Ability to investigate issues, identify root causes, and drive remediation plans.
  • Residency in Colombia or Argentina with the right to work in that country is required.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Associate Principal - Security

TEECOM 51-250 Construction & Engineering

TEECOM is hiring an Associate Principal in Security to lead mid-sized multidisciplinary projects remotely across the United States, guiding delivery from programming through closeout while strengthening team coordination, documentation, and client relationships.

Agile Asana GitHub
3 hours, 40 minutes ago

*E01 Cyber Security Engineer IV

TalentWerx 11-50 Professional Services

EXPANSIA is hiring a Remote Cyber Security Engineer IV to lead Microsoft Defender-based security engineering, endpoint and cloud protection, and incident response for U.S. defense and national security environments.

Active Directory AWS Azure HIPAA Linux Power BI PowerShell SIEM
4 hours, 10 minutes ago

Associate - Security

TEECOM 51-250 Construction & Engineering

TEECOM is hiring an Associate Security consultant in the United States to deliver coordinated technology and security design work on remote and client-site projects while supporting project teams, clients, and senior engineers.

Asana GitHub
4 hours, 10 minutes ago

Offensive Security Engineer

CloudWalk 51-250 Diversified Financial Services

CloudWalk is hiring an Offensive Security Engineer in São Paulo to combine red teaming, pentesting, and security automation into offensive work that directly improves defensive controls across its payments and credit platform.

Android AWS Azure CI/CD GCP Go iOS Kubernetes LLM Penetration Testing TypeScript
4 hours, 25 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers