Senior Analyst for Information Security Management System implementation at ASURIS. Focus on governance, risk, and compliance with ISO standards in a hybrid work model.
Responsibilities
Lead the implementation, maintenance, and continuous improvement of the Information Security Management System (ISMS) based on ISO/IEC 27001:2022.
Manage risk, security incidents, vulnerabilities, regulatory compliance, and governance.
Review and update scope, roles, responsibilities, policies, and procedures.
Plan and conduct internal audits; support third-party audits.
Define and monitor KPIs/KRIs and executive dashboards.
Requirements
Proven experience in ISMS, GRC, incident, and vulnerability management.
Knowledge of ISO/IEC 27001:2022, ISO/IEC 27002:2022, and ISO/IEC 27005.
Familiarity with ITSM and DevOps processes.
Ability to conduct audits and management reviews.
Strong executive communication and stakeholder management skills.
Benefits
PJ (contractor) engagement
Standard business hours
Hybrid work model with on-site presence as required
Professional N2 in Information Security executing projects and providing technical support at NetSecurity. Collaborating with São Paulo technical team to enhance cybersecurity processes.
Cyber Security Analyst at Equitable Bank responsible for cyber risk governance. Working in a hybrid environment in Toronto focusing on compliance and risk management.
Cybersecurity Analyst role at Sip providing secure development support for financial services. Involvement in offensive security activities and design software solutions.
Experienced Information Security Analyst investigating incidents and mentoring junior analysts in a collaborative environment. Position with a mission - centered organization to support information security operations.
Network Security Analyst leading response efforts during major security incidents while ensuring robust security operations at Comcast. Engaging in investigations and providing strategic recommendations for improvements.
Cyber Security Co - op at RBC analyzing data to detect threats and improve security measures. Collaborating in a dynamic team environment to build solutions for potential cyber threats.
Security Analyst at Digio responsible for Security by Design, identifying and managing risks in projects. Focus on secure architecture, threat modeling, and risk evaluation.
Information Security Analyst developing and managing security awareness training programs for global function. Reducing human - based risks through education and compliance adherence.
Join is seeking a Senior Cybersecurity Analyst for a hybrid quality - focused squad. Responsible for incident response and digital forensics in cybersecurity.