Information Security Specialist

Há 2 dias


Sao Paulo, Brasil SumUp Tempo inteiro
**Information Security Specialist (GRC)**
At SumUp our vision is to be a global leader in the FinTech industry and build a world where small businesses can be successful doing what they love. To get there, we are putting together a team that is passionate about what they do, committed to one another and to our merchants.
The Information Security Team is a key component in SumUp's Governance, Risk and Compliance (GRC) team. Our SumUp office in Brazil is hiring for an Information Security Specialist.
As an Information Security Specialist, you'll help us ensure that we're taking all the required steps to build a secure product set and protect our production environments from ever-evolving cyber threats. You'll play a key role in our product engineering ecosystem and partner with engineers from various tribes and squads to oversee the security of our products and features. You'll be influencing implementation of cutting-edge measures to minimise exposures and vulnerabilities while actively training and educating the engineers on security best practices and latest developments. We will look toward your unique skills to approach and solve problems in your own way while ensuring alignment with our global strategic directions. Whether engineering a system to address a technical security hurdle, protecting the customers' data, or consulting on a wide range of security topics, you are fully empowered to autonomously drive the engagement and promote security best practices cross-functionally.
**Responsibilities - What you will do**:
- Contribute to the ongoing design, implementation, improvement and maintenance of the SumUp Information Security Management Program.
- Improve and maintain information security risk management systems
- Review information security controls, audit recommendations and risk mitigation plans and collaborate with other teams to implement the necessary actions.
- Participate in third-party risk management by conducting third party due diligence, supplier reviews and contract review.
- Collaborate with other stakeholders to promote information security best practices, provide expert advice and help to integrate security principles into their processes.
- Support the preparation of external audits or due diligences and respond to auditors, clients and partner requests.
- Monitor the existing laws, regulations and security standards to ensure adequacy with the security controls and processes in place.
- Willing to travel as required.
**Experience required - You'll be great for this position if**:
- You have a Bachelor or Master Degree in information security or technical area or similar qualification
- You have 4+ years of professional experience in a similar position and have acquired knowledge in information security and governance, information security risk management and data protection within the financial industry..
- You have knowledge and experience of common information security standards (e.g, ISO 2700X, NIST), payment standard (e.g. PCI-DSS) and data privacy regulation (e.g. GDPR).
- Ideally you will have experience with third-party risk management and audit procedures as well.
- You hold professional certifications such as CISSP, CISM, ISO 27001 or similar.
- You enjoy working independently as much as working in a team and demonstrate good team spirit & cooperation skills.
- You have strong organizational and analytical skills.
- You have strong communication skills and are comfortable working with stakeholders across all levels.
- You work in an ethical manner and have a high sense of integrity and confidentiality.
- You speak and write fluent English.
**Why SumUp?**.
- Be a part of a truly global team: SumUppers come from over 50 different countries around the world (The GRC Team has nearly 80 members over 3 continents).
- You'll work in an amazing agile team environment that values passion and purpose to achieve incredible results.
- You'll have access to rewarding compensation and benefits.
- You'll have the freedom to drive your career, own projects, and make an impact across the company.
- You'll enjoy flexible hours - we don't micromanage. You have freedom to align with your team if you want to work remotely or take a few days off.
- SumUp is an Equal Employment Opportunity employer that proudly pursues and hires a diverse workforce. SumUp does not make hiring or employment decisions on the basis of race, colour, religion or religious belief, ethnic or national origin, nationality, sex, gender, gender identity, sexual orientation, disability, age or any other basis protected by applicable laws or prohibited by Company policy. SumUp also strives for a healthy and safe workplace and strictly prohibits harassment of any kind._
LI-PD1
**Job Application Tip

  • São Paulo, São Paulo, Brasil beBeeSecurity Tempo inteiro R$75.359 - R$118.244

    Job DescriptionWe are seeking a seasoned Information Security Specialist to define and implement our Information/Cyber Security Program/Framework and support the organization in managing its Information/Cyber Security risks.In this role, you will work closely with colleagues to elevate Information/Cyber Security from a compliance requirement to a business...


  • Sao Paulo, Brasil SumUp Tempo inteiro

    At SumUp our vision is to be a global leader in the FinTech industry and build a world where small businesses can be successful doing what they love. To get there, we are putting together a team that is passionate about what they do, committed to one another and to our merchants. The Information Security Team is a key component in SumUp's Governance, Risk...


  • Sao Paulo, Brasil SumUp Tempo inteiro

    **Information Security Specialist (GRC)** At SumUp our vision is to be a global leader in the FinTech industry and build a world where small businesses can be successful doing what they love. To get there, we are putting together a team that is passionate about what they do, committed to one another and to our merchants. The Information Security Team is a...


  • São Paulo, São Paulo, Brasil beBeeSecurity Tempo inteiro R$58.494 - R$116.988

    Job Title: Information Security SpecialistAbout the Role:We are seeking an experienced and skilled Information Security Specialist to join our team. As a key member of our security operations center, you will be responsible for providing expert-level IT security services to our clients.Your Key Responsibilities:Implement and integrate technical IT security...


  • São Paulo, São Paulo, Brasil beBeeCybersecurity Tempo inteiro R$100.000 - R$140.000

    As a seasoned Information Security specialist, you will play a pivotal role in fostering strong relationships with clients and stakeholders to inform impactful business decisions.Key ResponsibilitiesDefine control deliverables pertinent to the risk maturity frameworkDevelop and execute complex projects that drive business valueServe as a trusted advisor to...


  • São Paulo, São Paulo, Brasil beBeeCybersecurity Tempo inteiro R$120.000 - R$180.000

    We are seeking a highly skilled Cybersecurity Professional to join our dynamic team.Mature IT and OT Security OrganizationThe ideal candidate will be a key member in maturing the IT and OT Security organization, providing support for all areas of Information Security.Key Responsibilities:Design, document, test, maintain, and provide issue resolution...


  • São Paulo, São Paulo, Brasil beBeeCybersecurity Tempo inteiro R$72.000 - R$108.000

    Job DescriptionAs a key member of our organization, the Security Analyst will be responsible for protecting business and employee information and systems in compliance with organizational policies and standards.Key ResponsibilitiesPerform initial analysis, triage and response tasks of cyber eventsConduct Tier 1 SOC activities to collect and analyze security...

  • Information Security Officer

    2 semanas atrás


    Sao Paulo, Brasil Pay Retailers Tempo inteiro

    At PayRetailers, we are committed to providing cutting-edge solutions that empower businesses to succeed in Latin America. Our collaborative and inclusive work environment encourages creativity and growth, where every employee's contribution is valued. Get ready to embark on an exciting journey with us, as we strive to make a meaningful impact on the world...

  • Information Security Officer

    2 semanas atrás


    Sao Paulo, Brasil DLL Tempo inteiro

    **Information Security Officer** Do you believe businesses should have a bigger ambition than short term profit? If you do, join DLL’s mission to ‘See what counts’. You’ll be part of a team that gets the right tools into the right hands. A team that understands the heart and soul of our partners’ business. A team that provides original financial...

  • Information Security Officer

    2 semanas atrás


    Sao Paulo, Brasil DLL Group Tempo inteiro

    Do you believe businesses should have a bigger ambition than short term profit? If you do, join DLL’s mission to ‘See what counts’. You’ll be part of a team that gets the right tools into the right hands. A team that understands the heart and soul of our partners’ business. A team that provides original financial solutions to sustain success for...