Develop and review standards and policies aligned with ITIL and ISO 27000 requirements.
Create and update ITSM workflows to ensure efficiency in IT services.
Document standard operating procedures (SOPs) to guide daily activities.
Collaborate with internal teams to ensure adherence to established policies.
Conduct internal audits to verify compliance with defined standards.
Requirements
Bachelor's degree in Computer Science, Computer Engineering, Information Systems, or related fields.
Knowledge of IT processes, including analysis, design, execution, and monitoring.
Experience creating and reviewing standards, policies, and procedures related to information technology.
Familiarity with industry best practices for IT standards and policies, including knowledge of ITIL for IT service management.
Knowledge of information security standards, particularly ISO 27000, and the ability to apply this knowledge when creating and reviewing IT security standards and policies.
Certifications related to IT processes, such as ITIL Foundation, ISO 27001 Lead Auditor, or other relevant certifications.
Experience implementing continuous improvement processes, such as Lean, Six Sigma, or similar methodologies (desirable).
Knowledge of process management tools, such as BPMN (Business Process Model and Notation) or other process modeling tools (desirable).
Experience in IT risk management and regulatory compliance (desirable).
Familiarity with IT governance frameworks such as COBIT (desirable).
Experience in change management and the ability to effectively implement new processes and procedures.
Focus and organizational skills.
Analytical skills.
Good communication skills.
Strong interpersonal skills.
Proactive and dynamic.
Benefits
Position based in Itaim Bibi, South Zone of São Paulo, working in a hybrid model with office presence three times per week.
Job title
Junior IT Governance and Information Security Analyst
Principal Cloud Operations Developer at AVEVA enhancing Cloud security and leading deployment process improvements. Collaborating with development teams to ensure operational security, stability and scalability.
Responsable cybersécurité gérant la sécurité informatique de l'entreprise. Évaluant la conformité des systèmes d'information et pilotant la feuille de route cybersécurité.
Information Security Officer ensuring legal and cybersecurity compliance across IoT product development at Daikin. Supporting development teams and managing security awareness training.
Security employee monitoring site safety at Newell Brands, ensuring compliance with safety protocols. Supports services in emergency response and monitors site safety continually.
Cybersecurity Intern assisting the Cyber GRC team and Project Manager at HF Sinclair. Gaining hands - on experience in Security Operations and Cyber Risk Management during the summer of 2026.
Associate Director overseeing Network Security Governance at Novartis in Prague or Hyderabad. Driving cyber maturity, risk management, and governance frameworks for secure network environments.
Senior Associate Systems Integration Specialist at NTT DATA responsible for client security solutions. Leading installations and troubleshooting break/fix incidents in a hybrid work environment.
Senior Associate Security Consultant at NTT DATA making a difference through technical excellence in diverse teams. Collaborating on innovative technology and consulting projects in security consultancy.
Information Security Specialist at Federal Reserve managing cybersecurity risk and assessments. Collaborating with tech professionals to enhance security posture and risk management processes.
Jr Information Security Analyst conducting PCI - DSS compliance projects for AuditSafe. Supporting security controls implementation and leading technical meetings in a hybrid work environment.