GRC Security Analyst ensuring organizational cybersecurity through proactive vulnerability management and customer security inquiries. Collaborating across teams while supporting compliance and auditing processes.
Responsibilities
Vulnerability Remediation: Work collaboratively with IT and development teams to track, prioritize, and facilitate the remediation of identified security vulnerabilities. This includes monitoring vulnerability management platforms and generating reports to ensure timely closure of issues.
Customer Questionnaire Responses: Assist in completing customer security questionnaires and RFPs (Requests for Proposal). You'll gather necessary information from various internal teams, ensuring our responses are accurate, complete, and reflect our security practices.
Compliance & Audit Support: Help maintain and improve our compliance with various security frameworks (e.g., SOC 2, ISO 27001, NIST). You'll assist with internal and external audits by gathering evidence and documenting processes.
Policy & Procedure Maintenance: Support the GRC team in reviewing and updating security policies, standards, and procedures.
Serve as a liaison between the security team and other departments (e.g., Engineering, Sales, Legal) to ensure security requirements are integrated into business processes.
Requirements
Bachelor's degree in Computer Science, Information Security, or a related field
Familiarity with cybersecurity concepts such as vulnerability management, access control, and incident response.
Basic understanding of common security frameworks (e.g., SOC 2, ISO 27001, NIST).
Experience with or knowledge of vulnerability scanning tools (e.g., Nessus, Qualys) is a plus.
Exceptional written and verbal communication skills.
Strong attention to detail and organizational skills.
Ability to work independently and as part of a team.
A proactive and curious mindset with a strong desire to learn.
Specialist in PingFederate, PingDirectory and PingID for IAM infrastructure management. Collaborating with teams for stable operation and development in Cotia.
Senior Security Analyst developing and implementing security strategies for logistics operations. Focus on risk assessment, staff training, and policy compliance.
IT Security Analyst supporting the Supreme Court of Nevada in safeguarding judicial information systems. Implementing security controls, maintaining compliance, and conducting security assessments in a collaborative environment.
Information Security Analyst SME protecting information assets by designing and maintaining security policies. Ensuring compliance with security standards in a tech services company focused on digital transformation.
Vulnerability Analyst role in BGS supporting government clients. Conduct vulnerability assessments and enhance cybersecurity protocols for effective mitigation strategies.
Analyst of Information Security focusing on Governance and Project Risk Analysis in software development. Join a dynamic team collaborating on security in tech projects.
Cybersecurity Analyst responsible for protecting corporate environments and managing security incidents. Collaborating with IT teams and providing strategic security communications.
Information Security Analyst role focusing on cybersecurity for a retail company based in Belo Horizonte. Tasks include managing security tools and monitoring incidents.