Information Security Risk Manager

4 semanas atrás


São Paulo, Brasil IQVIA Tempo inteiro
**Job Overview**
The Information Security Risk Manager is a crucial role within IQVIA organization, responsible for helping to establish and maintain IQVIA's risk management program, which is designed to ensure that the company's IT systems and information assets are adequately protected.
The individual in this position will be responsible for identifying and evaluating on information security risks in a manner that meets IQVIA's regulatory and other compliance requirements.
The individual will proactively engage the various clients, business units and other internal departments and organisations to implement practices that meet IQVIA's defined policies and standards for information risk management.
**Essential Responsibilities**
- Plans, executes and conducts ongoing risk assessment, self-assessment and reviews of various operations, including assessing risks, determining scope, executing test procedures, reporting results and making recommendations for improvement.
- Evaluates compliance with legal, regulatory, operational and IT policies and procedures, and partners with stakeholders to develop sustainable remediation plans to compliance issues and control gaps, and actively drives issues and risks to closure.
- Follows up on deficiencies identified in monitoring reviews, self-assessments, automated assessments, and internal and external audits to ensure that appropriate remediation measures have been taken.
- Evolves the risk monitoring program to identify opportunities for enhancements and manages the risk exception process.
- Partners with the technology organization to implement and maintain IQVIA's integrated control framework, which includes requirements from NIST CSF, COBIT, HIPAA, etc.
**Qualifications**
- Bachelor's Degree Computer Science, a related field, or equivalent experience
- Equivalent work experience may substitute for degree
- 3 years of related work experience
- CISSP - Certified Information Systems Security Professional
- Certified Information Security Manager
- Certified in Risk and Information Security Controls

  • São Paulo, Brasil Iris Software Tempo inteiro

    Overview Information Security Manager We are one of the largest technology-driven Audit, Consulting, Tax, Strategy, and Transaction services in the world. With a presence in over 150 countries, here you will have the opportunity to experience exceptional experiences that only EY can offer, with global reach, an inclusive culture, and technology to become...


  • Greater São Paulo Area, Brasil WEX Tempo inteiro R$90.000 - R$120.000 por ano

    About The Team/RoleWe are seeking a highly experienced and proactive Information Security GRC Analyst Level 3 – PCI DSS Compliance to support our organization's PCI DSS compliance efforts. This role will focus on ensuring strict adherence to the Payment Card Industry Data Security Standard (PCI DSS) while contributing to broader governance, risk, and...


  • Sao Paulo, Brasil Mastercard Tempo inteiro

    Our Purpose We work to connect and power an inclusive, digital economy that benefits everyone, everywhere by making transactions safe, simple, smart and accessible. Using secure data and networks, partnerships and passion, our innovations and solutions help individuals, financial institutions, governments and businesses realize their greatest potential. Our...

  • Risk Manager

    Há 3 dias


    São Paulo, Brasil Amazon Tempo inteiro

    DESCRIPTION The Risk Manager (Latin America), reporting to the head of International Threat Evaluation and Risk Assessment (TERA) and part of the broader International Security & Loss Prevention (S&LP) team, will primarily be responsible for identifying, assessing, and proactively reporting on daily risks to Amazon people, operations, and assets in Latin...


  • São Bernardo do Campo, Brasil Allianz Technology Ltda. Tempo inteiro

    Information Security SpecialistThe ISO has overall responsibility for the effective implementation and maintenance of the Information Security Management System (ISMS) within Allianz Technology.Furthermore, the ISO oversees the fulfilment of Information Security requirements in all services provided by Allianz Technology as shared service provider to its...


  • Sao Paulo, Brasil Johnson & Johnson Tempo inteiro

    Johnson & Johnson is looking for a **Manager, Network Security Engineering** to be a part of a fast-paced, innovative, and highly visible team. The position will be in Raritan, New Jersey or São José dos Campos, São Paulo, Brazil or remote within the US. **Remote work options may be considered on a case-by-case basis and if approved by the...


  • Sao Paulo, Brasil SumUp Tempo inteiro

    **Information Security Specialist (GRC)** At SumUp our vision is to be a global leader in the FinTech industry and build a world where small businesses can be successful doing what they love. To get there, we are putting together a team that is passionate about what they do, committed to one another and to our merchants. The Information Security Team is a...


  • São Paulo, Brasil Maitsys Tempo inteiro

    Location: Brazil @ Remote Employment Type: Contract / Full-Time Overview We are seeking an experienced Senior Project Manager with a strong background in SAP Security, Information Security Operations, Controls, and Cybersecurity . This role requires a proven track record of managing complex security projects, excellent communication skills, and the ability...


  • São Paulo, Brasil Mastercard Tempo inteiro

    Our Purpose- Mastercard powers economies and empowers people in 200+ countries and territories worldwide. Together with our customers, we’re helping build _a sustainable economy_ where everyone can prosper. We support a wide range of digital payments choices, making _transactions secure,_ simple, smart and accessible. Our technology and innovation,...


  • São Paulo, Brasil IQVIA Tempo inteiro

    **Job Overview** The Information Security Risk Analyst is part of the IQVIA information security organization, responsible for maintain and executing IQVIA's risk management program, which is designed to ensure that the company's IT systems and information assets are adequately protected. The individual will be responsible for identifying and evaluating...