Coordinate GRC applied in Technology and Cybersecurity at UOL EdTech. Oversee risk management and compliance, ensuring regulatory alignment and cultural promotion of security.
Responsibilities
Serve as the GRC reference and coordinator for Technology and Cybersecurity, driving the advancement of maturity in Information Security, Risk Management and Compliance.
Lead the implementation and evolution of frameworks and standards (ISO 27001/27002, SOC 2, NIST, CIS Controls and LGPD), ensuring regulatory compliance and alignment with the organization’s risk strategy.
Coordinate IT and cybersecurity risk management, including identification, assessment, treatment, monitoring and executive reporting, integrated with the Corporate Risk Program.
Conduct maturity assessments and gap analyses, supporting structured improvement plans.
Develop and maintain Information Security and Technology policies, standards and controls, ensuring regulatory adherence and practical applicability.
Oversee security controls (IAM, SoD, logging, hardening and access management).
Coordinate Third-Party Risk Management (TPRM), including assessment and monitoring of supplier, cloud and SaaS risks.
Support data protection and LGPD compliance, including information classification and DLP initiatives.
Coordinate business continuity and operational resilience (BIA, BCP and DRP).
Prepare executive reports, KPIs and KRIs, acting as the interface with committees, senior management, auditors and regulators.
Promote a culture of security and governance, serving as the focal point for the GRC team.
Requirements
Solid experience in GRC applied to Technology and Cybersecurity.
Practical knowledge of frameworks and standards such as ISO 27001/27002, NIST CSF, CIS Controls, SOC 2 and LGPD.
Experience in IT, cybersecurity and third‑party (TPRM) risk management.
Experience leading teams and driving major/strategic projects.
Benefits
Meal and/or food allowance.
Health and dental insurance.
Life insurance.
Partnerships with TotalPass and ZenKlub.
Extended maternity and paternity leave.
Childcare assistance.
Up to 50% discounts on postgraduate programs and MBAs from leading institutions such as FIA, FAAP and PUCRS.
Senior Project Engineer managing GMP compliance projects in the Life Sciences industry. Responsible for project planning, execution and quality assurance documentation in a dynamic team environment.
Bilanzbuchhalter responsible for compliance and quality standards in financial services for Germany and Bulgaria. Focused on training, internal controls, and financial reporting.
Managing Environmental Permitting Lead at Anchor QEA leading waterfront development projects. Responsible for permitting strategies and regulatory approvals in the San Francisco Bay Area and beyond.
Associate for managing relationships with clients requiring FATCA/CRS compliance. Conducting documentation review and maintaining client portfolios while supporting team processes.
Regulatory Affairs Manager handling drug approval processes and regulatory affairs. Working with authorities and ensuring compliance for a leading international pharmaceutical firm in Munich.
Referent in Organisationsentwicklung and Governance supporting compliance and development at Diakonie Mark - Ruhr. Involved in building internal controls and quality frameworks in a social organization.
Lead compliance and AML efforts at Onafriq, a fintech company, overseeing FCA regulations. Act as MLRO ensuring robust compliance culture while supporting UK business growth.
Vendor Compliance Analyst coordinating Oracle solutions and troubleshooting customer scorecards at Helen of Troy. Collaborating with internal teams to ensure compliance and address issues efficiently.
Product Development & Regulatory Specialist in an innovative nutricosmetic company. Supporting product innovation and regulatory compliance for collagen - based supplements in global markets.