Cybersecurity Auditor
Há 2 dias
São Paulo, Brasil
Kyndryl
Tempo integral
R$ 120.000 - R$ 180.000/ano
Grátis com e-mail ou Google
Salve esta vaga e mantenha sua pesquisa organizada
Crie uma conta gratuita para salvar vagas, criar alertas e retornar a esta listagem a partir do seu painel.
Grátis com e-mail ou Google
Ao continuar, você concorda com nossos Termos & Política de Privacidade.
## Cybersecurity Auditor (Remote)Apply: Fully Remote: Hortolandia, São Paulo, Brazil: Full time: Posted Today: R-68842Who We AreAt Kyndryl, we run and reimagine the mission-critical technology systems that drive advantage for the world’s leading businesses. We are at the heart of progress; with proven expertise and a continuous flow of AI-powered insight, enabling smarter decisions, faster innovation, and a lasting competitive edge. For our people—Kyndryls—that means doing purposeful work that powers human progress. Join us and experience a flexible, supportive environment where your well-being is prioritized and your potential can thrive.The RoleThe Role Cybersecurity experience and knowledge of security, internal controls, auditing, and risk management frameworks, including ISO 27000, COSO, NIST, COBIT, IPPF, and ITIL. Experience auditing or reviewing IT controls, processes, and security configurations, including change, incident, access, patch, API, inventory, vulnerability, operations, database, and risk management; authentication and authorization; secure system and application configuration; data integrity and protection; security assessments; and business continuity and disaster recovery. SOX experience is a plus. Execute risk-based audits by defining objectives, evaluating processes and related risks, designing, and performing control testing, assessing whether controls effectively mitigate risks, communicating impacts on objectives, developing recommendations, and preparing final reports that clearly state the effectiveness of controls for each identified risk. Communicate issues, risks, and technical information clearly and professionally in English to both technical and non-technical audiences. Demonstrate strong analytical and critical-thinking skills. Lead teams of IT auditors on assigned audit engagements. Demonstrate excellent time-management skills. Hold at least one relevant professional certification, such as CISA, CISM, or CISSP, PCIP. Who You Are You are good at what you do and possess the required experience to prove it. However, equally as important – you have a growth mindset; keen to drive your own personal and professional development. You are customer-focused – someone who prioritizes customer success in their work. And finally, you are open and borderless – naturally inclusive in how you work with others. Being You Diversity is a whole lot more than what we look like or where we come from, it is how we think and who we are. We welcome people of all cultures, backgrounds, and experiences. But we are not doing it single-handedly: Our Kyndryl Inclusion Networks are only one of many ways we create a workplace where all Kyndryls can find and provide support and advice. This dedication to welcoming everyone into our company means that Kyndryl gives you – and everyone next to you – the ability to bring your whole self to work, individually and collectively, and support the activation of our equitable culture. That is the Kyndryl Way.Who You AreRequired Technical and Professional Expertise* 5+ years of professional experience in Information Technology, Cybersecurity, Information Security, Technology Risk, IT Operations, Application Development, Cloud Technologies, or a related technical field.
* Experience in Cybersecurity, SOX, Risk Management, or IT auditing.
* Strong knowledge of Cybersecurity laws, regulations, and standards.
* Familiarity with COBIT, ISO 27001/27002, NIST, COSO, and general security practices.
* Ability to execute risk-based audits by defining objectives, assessing processes and risks, testing control effectiveness, communicating impacts, developing recommendations, and reporting an effectiveness conclusion for each risk.
* Strong knowledge of Cybersecurity processes and concepts, including incident response, secure software development, security governance, cloud computing, SDLC, third-party risk management, penetration testing, vulnerability management, disaster recovery, segregation of duties, audit logging, physical security, access management, and configuration management.
* Experience conducting or supporting cybersecurity audits, security assessments, risk reviews, or compliance activities for a large or global organization.
* Excellent time-management skills.
* Ability to communicate issues, risks, and technical information clearly and professionally in English to technical and nontechnical audiences. Preferred Technical and Professional Expertise* 7+ years of professional experience in Information Technology, Cybersecurity, Technology Risk, IT Compliance (SOX, PCI DSS), ITGCs, Cloud Technologies, Security Operations, IAM, or related technology governance and assurance functions.
* A bachelor’s or master’s degree in information security, Information Systems, Computer Science, or a related field.
* One or more relevant professional certifications (e.g., CISA, CISM, CISSP, PCIP, Security+, CC, or equivalent).
* Experience in Cybersecurity, SOX, Risk Management, or IT auditing.
* Strong knowledge of Cybersecurity laws, regulations, and standards.
* Familiarity with COBIT, ISO 27001/27002, NIST, COSO, and general security practices.
* Ability to execute risk-based audits by defining objectives, assessing processes and risks, testing control effectiveness, communicating impacts, developing recommendations, and reporting an effectiveness conclusion for each risk.
* Strong knowledge of Cybersecurity processes and concepts, including incident response, secure software development, security governance, cloud computing, SDLC, third-party risk management, penetration testing, vulnerability management, disaster recovery, segregation of duties, audit logging, physical security, access management, and configuration management.
* Experience conducting or supporting cybersecurity audits, security assessments, risk reviews, or compliance activities for a large or global organization.
* Excellent time-management skills.
* Ability to communicate issues, risks, and technical information clearly and professionally in English to technical and nontechnical audiences. Preferred Technical and Professional Expertise* 7+ years of professional experience in Information Technology, Cybersecurity, Technology Risk, IT Compliance (SOX, PCI DSS), ITGCs, Cloud Technologies, Security Operations, IAM, or related technology governance and assurance functions.
* A bachelor’s or master’s degree in information security, Information Systems, Computer Science, or a related field.
* One or more relevant professional certifications (e.g., CISA, CISM, CISSP, PCIP, Security+, CC, or equivalent).