Coordinate GRC applied in Technology and Cybersecurity at UOL EdTech. Oversee risk management and compliance, ensuring regulatory alignment and cultural promotion of security.
Responsibilities
Serve as the GRC reference and coordinator for Technology and Cybersecurity, driving the advancement of maturity in Information Security, Risk Management and Compliance.
Lead the implementation and evolution of frameworks and standards (ISO 27001/27002, SOC 2, NIST, CIS Controls and LGPD), ensuring regulatory compliance and alignment with the organization’s risk strategy.
Coordinate IT and cybersecurity risk management, including identification, assessment, treatment, monitoring and executive reporting, integrated with the Corporate Risk Program.
Conduct maturity assessments and gap analyses, supporting structured improvement plans.
Develop and maintain Information Security and Technology policies, standards and controls, ensuring regulatory adherence and practical applicability.
Oversee security controls (IAM, SoD, logging, hardening and access management).
Coordinate Third-Party Risk Management (TPRM), including assessment and monitoring of supplier, cloud and SaaS risks.
Support data protection and LGPD compliance, including information classification and DLP initiatives.
Coordinate business continuity and operational resilience (BIA, BCP and DRP).
Prepare executive reports, KPIs and KRIs, acting as the interface with committees, senior management, auditors and regulators.
Promote a culture of security and governance, serving as the focal point for the GRC team.
Requirements
Solid experience in GRC applied to Technology and Cybersecurity.
Practical knowledge of frameworks and standards such as ISO 27001/27002, NIST CSF, CIS Controls, SOC 2 and LGPD.
Experience in IT, cybersecurity and third‑party (TPRM) risk management.
Experience leading teams and driving major/strategic projects.
Benefits
Meal and/or food allowance.
Health and dental insurance.
Life insurance.
Partnerships with TotalPass and ZenKlub.
Extended maternity and paternity leave.
Childcare assistance.
Up to 50% discounts on postgraduate programs and MBAs from leading institutions such as FIA, FAAP and PUCRS.
Senior Gas Pipeline Compliance Analyst maintaining safe, reliable natural gas operations at Enbridge. Analyzing regulations and partnering with teams for federal and state compliance.
Regulatory Analyst managing compliance obligations associated with regulatory requirements at Tallgrass, an energy infrastructure company. Involved in preparation, analysis, and administration in relevant areas.
Trainee supporting product compliance and legal regulation at ZF, engaging in training activities and various legal assistance tasks. Collaborating with experts on compliance projects.
Working Student supporting the VATrules Team with data management and documentation processes. Engaging in VAT compliance and improving data structures in a hybrid work environment.
VAT Compliance Specialist managing VAT - relevant data and ensuring compliance in an international team. Collaborating with various departments to maintain data quality and support documentation processes.
Specialist II in Regulatory Affairs preparing and maintaining global submissions for conducting clinical investigations. Collaborating with engineering and regulatory teams to ensure compliance with worldwide regulations.
Senior Lead Expert Regulatory managing bank regulatory communication and requirements at leading German bank LBBW. Overseeing compliance, analysis, and decision - making within financial regulatory frameworks.
Regulatory Affairs Manager overseeing compliance of food products and processes. Collaborating with teams to drive regulatory strategies and maintain product quality standards at Bel.
Chief Compliance Officer establishing risk management and compliance frameworks for Sezzle Bank ILC. Managing regulatory compliance and risk in financial services with a focus on BSA/AML and OFAC.
Regional Sustainability Compliance Manager leading product compliance activities across the Americas for ACT Group. Ensuring renewable energy products meet regulatory and sustainability certification requirements.