Governance & Compliance Security Analyst at EdgeUno improving information security and ISO 27001 compliance. Collaborating with teams to maintain an effective Information Security Management System.
Responsibilities
Maintain and update the Information Security Management System (ISMS) in line with ISO/IEC 27001
Coordinate periodic risk assessments, Statement of Applicability (SoA) updates, and treatment plans
Support internal and external audits (preparation, evidence collection, tracking of nonconformities and corrective actions)
Develop, review, and maintain information security policies, standards, and procedures
Monitor and support compliance with applicable laws, regulations, and contractual security requirements (telecom, data protection, client demands)
Support third party risk management process: security assessments of vendors, service providers, and partners
Keep ISMS and governance documentation well organized and current
Produce reports and dashboards on compliance status, audit results, and ISMS performance for management
Contribute to security awareness initiatives around policies, acceptable use, and data protection
Act as a point of contact for questions related to policies, compliance, and third party security requirements
Work closely with IT, Security Operations, Legal, HR, Procurement, and business units to ensure controls are understood and applied
Requirements
Bachelor’s degree in Information Security, Systems Engineering, Law, Business, or related field (or equivalent experience)
2–5+ years of experience in information security, GRC (Governance, Risk & Compliance)
Good understanding of ISO/IEC 27001 and related standards
Experience with security policies, procedures, and audit processes
Familiarity with basic risk management concepts and methods
Ability to review and interpret contracts, SLAs, and security clauses (desirable)
Strong documentation, organization, and reporting skills
Ability to work collaboratively with technical and non-technical teams
Attention to detail, structured thinking, and a proactive mindset
Nice to Have: Experience in telecom, ISP, hosting, or cloud environments
Knowledge of data protection regulations (e.g., local privacy laws, GDPR exposure)
Certifications such as ISO 27001 Lead Implementer/Auditor, CISA, or similar.
Benefits
Competitive compensation aligned with senior technical roles in the region
Opportunity to influence software quality standards across the organization
Strong engineering culture focused on ownership, automation, and continuous improvement
Senior Cybersecurity Analyst designing and improving information security processes at Localiza&Co. Collaborating with various teams to ensure governance and data safety.
Level 1 Cyber Security Analyst analyzing and escalating cyber - security alerts in log aggregation tools. Engaging in incident follow - up and basic automation in a supportive team environment.
Analista de Segurança, Saúde e Meio Ambiente na ANDRITZ gerenciando indicadores e programas de HSE. Engajando - se em auditorias e treinamentos para garantir a conformidade e segurança.
Cybersecurity Analyst with Incident Responder experience for SOC Team at NTT DATA Romania. Monitor and respond to security alerts while collaborating with clients.
Cyber Security Analyst Intern gaining hands - on experience in information security through guided participation and real - world tools. The role is part - time with remote and hybrid options from U.S. locations.
Application Security Analyst supporting vulnerability management program at Accurate Background. Focusing on developer communication and tooling operations for application security insights.
Security Compliance Analyst supporting IT Security compliance and risk management initiatives at Acosta Group. Engaging with cross - functional teams to ensure adherence to regulatory and security frameworks.
Senior Cyber Security Analyst at Peach Payments responsible for facilitating security operations in Cape Town hub. Ensuring compliance and supporting security infrastructure for digital payments across Africa.
Information Security Analyst managing information security processes at Keyloop. Ensuring compliance with industry standards and collaborating with teams for vulnerability management.