Senior Security Governance and Risk Consultant

3 semanas atrás


Brasil Tenchi Security Tempo inteiro
Senior Security Governance and Risk Consultant

Tenchi is a Cyber Security company that is building innovative technology focused on Third-Party Cyber Risk Management for businesses. Founded by serial entrepreneurs and backed by a solid group of Institutional Investors, we seek to disrupt this rapidly growing industry. Our company is 100% remote and our team is spread across the globe, including Brazil, US, Canada, Argentina, and Spain. We strive to get the best professionals in the field so our team can build an amazing product focused on our client's needs.

As a Senior Security Governance and Risk Consultant at Tenchi, you will lead our clients through the intricacies of establishing effective security governance practices and managing enterprise risk. This role involves crafting governance frameworks, performing risk assessments, and ensuring compliance with relevant security regulations. With your extensive experience in the cybersecurity field, you'll guide organizations in fortifying their security posture while aligning their security strategy with their business objectives.

Key Responsibilities
  • Lead the planning, execution, and delivery of security governance and risk management projects for clients across various industries;
  • Conduct security maturity assessments based on established frameworks (e.g., NIST CSF, CIS Controls, ISO/IEC 27001), and identify gaps, risks, and areas for improvement;
  • Design, implement, and maintain Information Security Management Systems (ISMS) in compliance with ISO 27001 or other relevant standards;
  • Develop and manage Information Security Master Plans (PDSI), aligning security strategy with business objectives;
  • Execute Third Party Cyber Risk Management (TPCRM) processes, including due diligence assessments, vendor risk scoring, and remediation planning;
  • Lead or support cybersecurity audits and regulatory compliance reviews (e.g., LGPD, GDPR, SOX);
  • Provide guidance and recommendations to clients on risk mitigation strategies, security policies, procedures, and controls;
  • Collaborate with cross-functional teams (Legal, IT, Compliance, Procurement, etc.) to embed security governance into broader business processes;
  • Conduct occasional on-site visits to clients or third parties as required by project needs;
  • Deliver executive-level reporting and presentations on risk posture, findings, and strategic recommendations;
  • Mentor junior consultants and support internal capability development within the GRC team;
  • Stay up to date with emerging threats, regulatory changes, and industry trends to continuously enhance client value and service delivery.
Requirements
  • Bachelor's or Master's degree in Information Security, Computer Science, or a related field;
  • 5+ years of experience in security governance, risk management, or compliance consulting;
  • Deep understanding of security frameworks, regulations, and cybersecurity compliance requirements (e.g., NIST, CIS, ISO/IEC 27000);
  • Proven track record of leading and delivering complex security projects with direct client interaction;
  • Experience with risk assessment tools and methodologies is a plus;
  • Strong analytical, organizational, and problem-solving skills;
  • Excellent interpersonal and communication abilities, with the capability to convey complex topics in a clear and concise manner;
  • Certifications such as CISSP, CISM, CRISC, or similar are strongly preferred;
  • Comfortable working in remote environments while maintaining high engagement and collaboration with clients and teams;
  • Fluency in Portuguese and English
Benefits
  • We are confident that you will have the opportunity to work with bleeding-edge technologies in a nice environment where everyone strives to grow and learn
  • We invest in our people in many ways, including on-the-job training and exceptional development tools. We encourage scientific publications, conference and workshop participation, in our fields of expertise
  • We offer an attractive compensation package with the opportunity to work from anywhere in the world
Seniority level
  • Mid-Senior level
Employment type
  • Full-time
Job function
  • Other
Industries
  • IT Services and IT Consulting
#J-18808-Ljbffr
  • Security Governance Expert

    2 semanas atrás


    Brasil beBeeSecurity Tempo inteiro R$80.000 - R$150.000

    Job OpportunityThis senior governance expert will play a pivotal role in developing, implementing, and maintaining policies, processes, and controls to safeguard information assets and ensure compliance with international regulations.Key ResponsibilitiesConduct comprehensive risk assessments, proposing effective mitigation strategies;Develop, review, and...


  • Brasil beBeeSecurity Tempo inteiro R$100.000 - R$170.000

    Job OverviewWe are seeking a seasoned security governance professional to join our team. In this role, you will play a critical part in ensuring the safeguarding of information assets and compliance with regulatory requirements.You will be responsible for defining, implementing, and maintaining policies, processes, and controls to mitigate security risks and...


  • Brasil The Hanover Insurance Group Tempo inteiro

    OverviewOur Hanover's Specialty Industrial Property Risk Engineering team is seeking a Risk Engineering Senior Consultant in the Chicago area. This is a full-time, exempt role based out of your home office.POSITION OVERVIEW: Operates semi-autonomously regarding core competencies including day-to-day risk engineering and insured support activities within a...

  • SAP Security Consultant

    4 semanas atrás


    Brasil Array Technologies Tempo inteiro

    Array Technologies was founded more than 30 years ago on the bold vision of advancing the future of clean energy. Today, we are a global leader and pioneer in the renewables industry. Despite our large footprint – or perhaps because of it – we are united in our mission: Generating Energy with Integrity for a Sustainable World . It is the reason why ...


  • Brasil Google Tempo inteiro

    Senior Cybersecurity Strategic Consultant, Mandiant, Google Cloud (English)Senior Cybersecurity Strategic Consultant role at Google (Mandiant, Google Cloud) – English language applications only.OverviewAs a Strategic Consultant, you will serve as a trusted advisor to leading organizations, guiding them through complex cybersecurity testing and strategy....


  • Brasil Swile Tempo inteiro

    OverviewAt Swile, we believe that good products can help reduce friction in daily professional life and boost employee satisfaction. Today, we provide innovative solutions in various areas such as Fintech, Travel, HR, and Employee Benefits to more than 5.5 million users in 85,000 companies in France and Brazil.Role in a strategic structure within the...


  • Brasil Swile Tempo inteiro

    OverviewAt Swile, we believe that good products can help reduce friction in daily professional life and boost employee satisfaction. Today, we provide innovative solutions in various areas such as Fintech, Travel, HR, and Employee Benefits to more than 5.5 million users in 85,000 companies in France and Brazil. Role in a strategic structure within the...


  • Brasil Tenchi Security Tempo inteiro

    OverviewTenchi is a Cyber Security company that is building innovative technology focused on Third-Party Cyber Risk Management for businesses. Founded by serial entrepreneurs and backed by a solid group of Institutional Investors, we seek to disrupt this rapidly growing industry. Our company is 100% remote and our team is spread across the globe, including...


  • Brasil Coalfire Tempo inteiro

    About CoalfireCoalfire is on a mission to make the world a safer place by solving our clients' hardest cybersecurity challenges. We work at the cutting edge of technology to advise, assess, automate, and ultimately help companies navigate the ever-changing cybersecurity landscape. We are headquartered in Chicago, Illinois with offices across the U.S. and...

  • Senior Functional Consultant

    3 semanas atrás


    Brasil FCamara Consulting & Training Tempo inteiro

    Senior Functional Consultant (Finance), SAPJoin to apply for the Senior Functional Consultant (Finance), SAP role at FCamara Consulting & Training . The Senior Functional Consultant will possess deep industry experience in various functional domains, solution design, and delivery in SAP ECC environments. They are expected to partner with internal and...