Hybrid Information Security Analyst – Mid, GRC

Posted last month

Apply now

About the role

  • Analista de Segurança da Informação Pleno supporting the implementation and improvement of information security governance. Focused on compliance with norms and internal policies.

Responsibilities

  • Participate in the development, review and dissemination of Information Security policies, standards and procedures.
  • Ensure business areas adhere to the organization's security guidelines.
  • Support security meetings and committees, documenting decisions and tracking action plans.
  • Conduct risk assessments, identifying threats, vulnerabilities and impacts.
  • Support the definition and monitoring of risk treatment plans.
  • Maintain the risk and control inventory, preserving traceability between risks, controls and evidence.
  • Support internal and external audits by organizing evidence and following up on remediation of non-conformities.
  • Monitor legal and regulatory requirements (LGPD, SUSEP, Bacen, among others).
  • Participate in the certification and maintenance of ISO 27001 and ISO 27701.
  • Assess security risks in vendors, including contractual analysis and due diligence.
  • Support vendor onboarding and periodic reassessment of critical suppliers.
  • Support maintenance of the ISMS (Information Security Management System), consolidating evidence and controls.
  • Create and update security and compliance indicators and dashboards.
  • Collaborate on Information Security and Privacy awareness programs and training.

Requirements

  • Practical knowledge of ISO 27001, ISO 27701, NIST and LGPD.
  • Experience with risk management, audits and internal controls.
  • Ability to interpret technical requirements and translate them into business language.
  • Experience with GRC tools, document management and dashboards (Power BI, advanced Excel) is desirable.
  • Strong written and verbal communication, analytical mindset and organizational skills.

Job title

Information Security Analyst – Mid, GRC

Job type

Experience level

Mid levelSenior

Salary

Not specified

Degree requirement

No Education Requirement

Location requirements

Report this job

See something inaccurate? Let us know and we'll update the listing.

Report job