Senior Security Governance Analyst

Há 3 dias


Brasil Swile Tempo inteiro
Overview

At Swile, we believe that good products can help reduce friction in daily professional life and boost employee satisfaction. Today, we provide innovative solutions in various areas such as Fintech, Travel, HR, and Employee Benefits to more than 5.5 million users in 85,000 companies in France and Brazil.

Role in a strategic structure within the Security area, focusing on control management, regulatory compliance, fraud prevention, data protection, and business continuity.

This person will play a key role in the definition, implementation, and maintenance of policies, processes, and controls, ensuring the protection of information assets and compliance with national and international regulations such as LGPD, GDPR, BACEN, and PCI DSS.

Responsibilities
  • Act throughout the lifecycle of security, technology, fraud prevention, and AML (Anti-Money Laundering) controls;
  • Develop, review, and maintain policies, standards, and procedures aligned with market best practices (NIST, ISO 27001, etc.);
  • Conduct security risk analyses (both technical and non-technical), proposing effective mitigation plans;
  • Lead regulatory compliance initiatives, including LGPD, GDPR, PCI DSS, BACEN, among others;
  • Manage and report security indicators (KPIs and KRIs) to executive leadership;
  • Participate in Third Party Cyber Risk Management (TPCRM) processes, including vendor risk assessments, due diligence, and remediation plans;
  • Collaborate with departments such as Legal, IT, Compliance, Procurement, among others, integrating security governance into corporate processes;
  • Support and enhance business continuity strategies (BCM/DRP), considering people, processes, and systems;
  • Assist in handling security incidents and continuously improve the response process;
  • Contribute to increasing the company's overall information security maturity level.
Qualifications
  • Solid experience (+7 years) in Information Security, preferably in the financial sector or regulated companies;
  • In-depth knowledge in risk management, regulatory compliance, data security, and market frameworks;
  • Familiarity with PCI DSS, LGPD/GDPR, BACEN, ISO 27001, NIST CSF, among others;
  • Experience with AWS and security improvements in cloud environments (desirable);
  • Ability to translate technical issues into business language;
  • English level B2 (reading, writing, and technical conversation).
Differentials
  • Certifications such as CISM, CISSP, ISO 27001 Lead Implementer, PCI ISA, CDPP, or similar;
  • Experience with GRC tools, risk management, and compliance automation;
  • Proactive and hands-on profile, with strategic vision and a sense of urgency.

#J-18808-Ljbffr

  • Brasil Tenchi Security Tempo inteiro

    Senior Security Governance and Risk ConsultantTenchi is a Cyber Security company that is building innovative technology focused on Third-Party Cyber Risk Management for businesses. Founded by serial entrepreneurs and backed by a solid group of Institutional Investors, we seek to disrupt this rapidly growing industry. Our company is 100% remote and our team...


  • Brasil beBeeGovernance Tempo inteiro R$90.000 - R$120.000

    Job SummaryWe are seeking a seasoned security professional to join our team as a Security Governance Analyst.This role will involve developing and implementing policies, processes, and controls to protect information assets and ensure compliance with national and international regulations.The ideal candidate will have a solid understanding of risk...


  • Brasil beBeeSecurity Tempo inteiro R$100.000 - R$170.000

    Job OverviewWe are seeking a seasoned security governance professional to join our team. In this role, you will play a critical part in ensuring the safeguarding of information assets and compliance with regulatory requirements.You will be responsible for defining, implementing, and maintaining policies, processes, and controls to mitigate security risks and...

  • Security Engineer

    1 semana atrás


    Brasil Avenue Code Tempo inteiro

    About The Opportunity We are seeking a About The Opportunity We are seeking a Security Engineer - DevSecOps contractor to support our Product Development teams by maintaining robust security practices and ensuring SOC 2 compliance. This role is key to improving operational efficiency by proactively addressing vulnerabilities, managing infrastructure...


  • Brasil act digital Tempo inteiro

    Vaga: Desenvolvedor Sênior – Governança de Dados Modelo: RemotoSobre a posição: Estamos em busca de um(a) Desenvolvedor(a) Sênior especializado(a) em Governança de Dados para atuar com Cloud, pipelines de dados, DevOps e arquitetura de microsserviços. O foco é desenvolver soluções escaláveis e garantir a qualidade e integridade dos dados,...


  • Brasil Tenchi Security Tempo inteiro

    OverviewTenchi is a Cyber Security company that is building innovative technology focused on Third-Party Cyber Risk Management for businesses. Founded by serial entrepreneurs and backed by a solid group of Institutional Investors, we seek to disrupt this rapidly growing industry. Our company is 100% remote and our team is spread across the globe, including...


  • Brasil NUMEN Tempo inteiro

    Você quer fazer parte de uma empresa com propósito?#VemSerNumenEstamos com oportunidade para: Consultor SAP Basis Security SêniorRequisitosExperiência em projetos greenfield onde será necessário o desenho da melhor estratégia de security para o clienteExperiência em auditoriasAnálise de SOD e mitigação


  • Brasil NUMEN Tempo inteiro

    Você quer fazer parte de uma empresa com propósito? #VemSerNumen Estamos com oportunidade para: Consultor SAP Basis Security Sênior Requisitos Experiência em projetos greenfield onde será necessário o desenho da melhor estratégia de security para o cliente Experiência em auditorias Análise de SOD e mitigação de risco Definição de desenho de...


  • Brasil Next Security Corp Tempo inteiro

    A Next Security é referência no setor de alarmes de incêndio nos Estados Unidos, oferecendo soluções inovadoras, seguras e de alta performance. Com mais de 13 anos de trajetória, seguimos em constante crescimento e expansão de nossas operações.Descrição da Vaga:Estamos em busca de um Analista Fiscal proativo, analítico e atento a detalhes. Esta...

  • Cyber Security Defense

    1 semana atrás


    Brasil Avanade Inc. Tempo inteiro

    We're hiring a Cloud Security Architect to help assess, design, and strengthen cloud security environments for global clients.If you have advanced English, deep Azure security expertise, and a passion for driving cloud resilience, let's connectWhat you'll do:Assess and enhance the security posture of cloud environments (Azure-focused).Identify...