Compliance Lead, Information Security

2 semanas atrás


São Paulo, Brasil Cai Software, Llc Tempo inteiro

About the Role We are seeking an experienced and detail-oriented Compliance Lead to join our Information Security team. This role is responsible for leading, maintaining, and continuously improving the organization's compliance initiatives across key information security frameworks, including ISO, SOC 2 Type II, PCI DSS, and GDPR. Key Responsibilities Lead and maintain compliance initiatives for ISO, SOC 2 Type II, PCI DSS, and GDPR. Develop, implement, and maintain security policies, procedures, and controls aligned with regulatory and industry standards. Manage internal and external audits, coordinate evidence collection, and ensure timely remediation of findings. Conduct risk assessments to identify potential compliance gaps or control deficiencies. Collaborate with technical teams to implement mitigation plans and monitor progress. Support continuous improvement of the organization's information security management system (ISMS). Maintain comprehensive documentation of compliance efforts, audit reports, and corrective actions. Provide regular updates and metrics to senior leadership on compliance posture. Ensure version control and accuracy across all security compliance documents. Partner with internal departments to align business operations with compliance obligations. Provide guidance on security compliance requirements for new systems, vendors, and technologies. Support the training and awareness program to foster a culture of security and compliance. Serve as the primary contact for auditors, assessors, and certification bodies. Prepare and execute internal readiness reviews prior to external audits. Maintain ongoing compliance between audit cycles to ensure audit readiness at all times. Qualifications Bachelor's degree in Information Security, Information Technology, or a related field (or equivalent experience). 5+ years of experience in security compliance, audit management, or information security governance. Hands-on experience with ISO, SOC 2 Type II, PCI DSS, and GDPR frameworks. Strong understanding of risk management, control design, and information security principles. Excellent project management, documentation, and communication skills. Preferred certifications: CISA, CISM, CISSP, or ISO Lead Implementer / Auditor. What You'll Gain Opportunity to drive compliance initiatives that impact organizational security and trust. Exposure to enterprise-level security frameworks and audit processes. Collaboration with technical and executive stakeholders across departments. Professional development in compliance leadership and risk management. #J-18808-Ljbffr



  • São Paulo, Brasil CAI Software, LLC Tempo inteiro

    About the Role We are seeking an experienced and detail-oriented Compliance Lead to join our Information Security team. This role is responsible for leading, maintaining, and continuously improving the organization’s compliance initiatives across key information security frameworks, including ISO 27001, SOC 2 Type II, PCI DSS, and GDPR. The ideal candidate...


  • São Paulo, Brasil CAI Software, LLC Tempo inteiro

    About the RoleWe are seeking an experienced and detail-oriented Compliance Lead to join our Information Security team. This role is responsible for leading, maintaining, and continuously improving the organization’s compliance initiatives across key information security frameworks, including ISO 27001, SOC 2 Type II, PCI DSS, and GDPR. The ideal candidate...


  • São Paulo, Brasil IQVIA Tempo inteiro

    Role: As an **Information Security Compliance Mgr**., you will play a crucial role in ensuring the security and compliance of our organization. You’ll be responsible for providing assurance to our external parties on the security posture of IQVIA. This role plays a significant part in our Global Information Security team and will provide an excellent...


  • São Paulo, Brasil Mastercard Tempo inteiro

    Our Purpose Mastercard powers economies and empowers people in 200+ countries and territories worldwide. Together with our customers, we’re helping build a sustainable economy where everyone can prosper. We support a wide range of digital payments choices, making transactions secure, simple, smart and accessible. Our technology and innovation, partnerships...


  • São Paulo, Brasil Bitso Tempo inteiro

    As an Information Security Lead, you will be a key player in the planning, design, implementation, operation and maintenance of the organization's Information Security Risk Management program, guaranteeing that it complies with the legal and regulatory requirements, as well as implementing and promoting the adoption of security and risk standards such as...


  • Sao Paulo, Brasil Bitso Tempo inteiro

    As an Information Security Lead, you will be a key player in the planning, design, implementation, operation and maintenance of the organization's Information Security Risk Management program, guaranteeing that it complies with the legal and regulatory requirements, as well as implementing and promoting the adoption of security and risk standards such as...


  • Sao Paulo, Brasil Bitso Tempo inteiro

    As an Information Security Lead, you will be a key player in the planning, design, implementation, operation and maintenance of the organization's Information Security Risk Management program, guaranteeing that it complies with the legal and regulatory requirements, as well as implementing and promoting the adoption of security and risk standards such as...


  • Sao Paulo, Brasil Bitso Tempo inteiro

    As an Information Security Lead, you will be a key player in the planning, design, implementation, operation and maintenance of the organization's Information Security Governance model, guaranteeing that it complies with the legal and regulatory requirements, as well as implementing and promoting the adoption of high security standards such as ISO27001, PCI,...


  • Sao Paulo, Brasil Bitso Tempo inteiro

    As an Information Security Lead, you will be a key player in the planning, design, implementation, operation and maintenance of the organization's Information Security Governance model, guaranteeing that it complies with the legal and regulatory requirements, as well as implementing and promoting the adoption of high security standards such as ISO27001, PCI,...

  • Information Security Analyst

    2 semanas atrás


    São José dos Campos, Brasil Johnson And Johnson Tempo inteiro

    At Johnson Conduct application and third-party risk assessments to help project teams address security concerns.Provide mentorship to help integrate security into processes.Handle the security vulnerabilities linked to the IT infrastructure that underpins operational technologies.Respond appropriately to any incidents and issues along with the appropriate...