Director, Information Security Risk Management

3 semanas atrás


Sao Paulo, Brasil IQVIA Tempo inteiro

**Job Overview**
- Leading risk-related projects
- Maintaining ongoing testing and development of Information Security Risk Management framework, liaising with senior stakeholders and providing regular updates to stakeholders.
- Producing risk reports when required
- Working closely with other senior leaders within the team regarding training and guidance to support the business.
- Working with Business Units and stakeholders to ensure adequate, cost effective and timely protection/risk transfer for business activities.
- Creating a Supplier Risk Management Framework

**Key Responsibilities**:

- Own the development and integration of the Information Security Risk Management Framework, Risk Appetite Statements, and Risk Policies and Procedures across the organization.
- Work closely with business and senior management to identify and manage risks aligned with the organization’s strategy and risk appetite.
- Provides strategic and tactical guidance to business decision-makers.
- Contribute to a strong governance structure and risk management across all business entities.
- Assess the impact of emerging risks and regulations, providing input and support for pragmatic solutions.
- Establish a comprehensive risk reporting system and process.
- Assist to remediate risks identified through established processes and procedures.
- Provides recommendations for remediation based on the reviews and risk assessments performed.
- Assist key business stakeholders in identifying and responding effectively to risk.
- Define key risk and performance indicators (KRIs/KPIs) for evaluating risk management performance.
- Integrate business continuity and crisis management into the organization's risk management strategies.
- Support the configuration of the TPRM & Risk Management solution for consistency with local processes.
- Assist in reviewing third parties, including due diligence reviews.
- Perform review of vendor engagements, understanding the functions of effective third-party risk.

**Qualifications**:

- Bachelor's Degree Computer Science, a related field, or equivalent experience required.
- 10 years of experience within the information security domain managing Risk frameworks.
- Deep understanding and demonstrated experience of end-to-end risk management lifecycle, including key components and their relationships with internal and external stakeholders.
- Experience in non-financial/operational risk - developing and implementing risk frameworks, policies, and procedures.
- Demonstrated experience leading risk management workshops, obtaining and synthesizing inputs from technical and non-technical stakeholders throughout the enterprise.
- Experience in conducting Third Party reviews is advantageous.
- Experience operating as a part of a GRC program in alignment with common information technology management frameworks such as NIST, ITIL, ISO 27001 etc.
- Security-related qualifications such as CISM or CISSP, CRISC are a plus.


  • Risk Management Consultant

    4 semanas atrás


    São Paulo, São Paulo, Brasil Munich Re Tempo inteiro

    Risk Management Consultant (m/f/d*) Munich Re has been present in the Brazilian insurance market for over 30 years. With the reinsurance market opening in April 2008, we were the first foreign reinsurer to be registered as a local company, consolidating our operation and becoming one of the leaders in the Brazilian reinsurance industry. As a subsidiary of...


  • Sao Paulo, Brasil Mastercard Tempo inteiro

    Our Purpose We work to connect and power an inclusive, digital economy that benefits everyone, everywhere by making transactions safe, simple, smart and accessible. Using secure data and networks, partnerships and passion, our innovations and solutions help individuals, financial institutions, governments and businesses realize their greatest potential. Our...


  • Sao Paulo, Brasil FM Global Tempo inteiro

    Build and entrench credibility with clients on matters of cyber security. - Work directly with clients through the process of assessing and understanding their cyber risk. - Work directly with clients in interpreting risk assessment results and validation of plans to address specific cyber risk issues. - Provide expertise to account managers and engineers as...


  • São Paulo, Brasil JP & F Consultoria Tempo inteiro

    Lead or participate in ensuring the stability of security products designed for the Unix/Linux platform and helping connect tools and processes. Understand business processes and requirements and then provides consulting and solutions design to enable risk mitigation across the UNIX/Linux distributed platform Provide security consulting on medium projects...


  • São Paulo, Brasil IQVIA Tempo inteiro

    At IQVIA, we look for the very best people, and then give them meaningful work to do. We don’t simply think about careers, we think about contributions. Those who choose to work with us are joining a recognized global leader – a company uniquely positioned to help clients make the most of market opportunities and respond to challenges that affect global...


  • São Paulo, Brasil IQVIA Tempo inteiro

    Role As Information Security Program Manager at IQVIA, you will play a critical role in safeguarding our digital assets, ensuring the confidentiality, integrity, and availability of sensitive information. You’ll lead manage security programs, and drive compliance with industry standards and regulations. You’ll govern project scope, plans and...


  • São Paulo, Brasil IQVIA Tempo inteiro

    Role As Information Security Project Manager at IQVIA, you will play a critical role in safeguarding our digital assets, ensuring the confidentiality, integrity, and availability of sensitive information. You’ll lead manage security programs, and drive compliance with industry standards and regulations. You’ll govern project scope, plans and...


  • São Paulo, Brasil World Resources Institute Tempo inteiro

    This position will be hybrid requiring a few days per week and can be based the WRI office in Brazil, Colombia or Mexico. Existing work authorization is required at the time of application submission. WRI is unable to sponsor any visa work sponsorship for this position. About the Program: Our Operations Department strives to assist our global offices in...

  • Cyber Security Consultant

    4 semanas atrás


    São Paulo, Brasil FM Global Tempo inteiro

    Overview FM Global is a leading commercial insurance company that provides risk management and loss prevention services through a unique combination of engineering, underwriting and claims. We work to ensure business continuity and safeguard our clients’ properties with seamless, worldwide coverage and property loss prevention engineering solutions....


  • São Paulo, Brasil IQVIA Tempo inteiro

    Role: As a Senior Information Security Metrics Analyst, you will play a crucial role in ensuring the security and compliance of our organization. You’ll be responsible for analyzing, measuring, and reporting on various security metrics to enhance our overall security posture. Your expertise will guide decision-making and risk management efforts. ...


  • Sao Paulo, Brasil Mastercard Tempo inteiro

    Our Purpose We work to connect and power an inclusive, digital economy that benefits everyone, everywhere by making transactions safe, simple, smart and accessible. Using secure data and networks, partnerships and passion, our innovations and solutions help individuals, financial institutions, governments and businesses realize their greatest potential. Our...


  • Sao Paulo, Brasil Coodesh Tempo inteiro

    **Descrição**: A **KLB Group** busca IT Governance and Information Security Analyst para compor seu time! A KLB Group é especializada na implementação de projetos em empresas públicas e privadas. Seja em projetos de desenvolvimento, produção ou transformação, a KLB Group assegura a implementação eficaz, mobilizando rapidamente uma equipe de...


  • São Paulo, Brasil BeiGene Tempo inteiro

    BeiGene continues to grow at a rapid pace with challenging and exciting opportunities for experienced professionals. When considering candidates, we look for scientific and business professionals who are highly motivated, collaborative, and most importantly, share our passionate interest in fighting cancer. Essential Functions of the Job: Provides...


  • Sao Paulo, Brasil Blaze Tempo inteiro

    Blaze is a leading IT company with a fully remote workforce. We are committed to leveraging technology to deliver top-quality services to our clients. We are currently seeking an experienced IT Systems Security Administrator to join our team. **Responsibilities**: - Set up, configure, and manage the company's VPN - Implement and maintain software and...

  • Manager, Security Architect

    3 semanas atrás


    São Paulo, Brasil IQVIA Tempo inteiro

    At IQVIA, we look for the very best people, and then give them meaningful work to do. We don’t simply think about careers, we think about contributions. Those who choose to work with us are joining a recognized global leader – a company uniquely positioned to help clients make the most of market opportunities and respond to challenges that affect global...


  • Sao Luis, Brasil LHR Saudi Arabia Tempo inteiro

    **Who is our Client and your future employer?**: Ranked among the world’s largest petrochemicals manufacturers, it is a public company based in Riyadh, Saudi Arabia. With operations in around 50 countries, The Company has a global workforce of over 31,000 talented individuals. The company operates through three strategic Business Units - Petrochemicals,...


  • São Paulo, Brasil Vestas Tempo inteiro

    Responsibilities: Overall contracts administration activities ( contracts deconstruct, contract kick-off meeting, routine notices, claims, variation orders and amendments, liaison with stakeholders)​ Advisory role (counselling to project team, assessment of rights, obligations, risk and disputes, highlight major commercial and contractual risks,...


  • São Paulo, Brasil Nuvei Tempo inteiro

    The world of payment processing is rapidly evolving, and businesses are looking for loyal and strategic partners, to help them grow.WE ARE NUVEI. Nuvei (NASDAQ: NVEI) (TSX: NVEI) the Canadian fintech company accelerating the business of clients around the world. Nuvei’s modular, flexible and scalable technology allows leading companies to accept next-gen...

  • IP Latam

    4 semanas atrás


    São Paulo, Brasil JPMorgan Chase & Co. Tempo inteiro

     Employer Description Our Infrastructure Platform (IP) group is a team rewarded with innovators who love technology as much as you do. Together, you will use a disciplined, innovative and a business focused approach to develop a wide variety of high-quality products and solutions. You will work in a stable, resilient and secure operating environment...

  • AWS Security Engineer

    2 semanas atrás


    São Paulo, Brasil LabVantage Solutions LATAM Tempo inteiro

    QUALIFICATIONS:Advanced EnglishBachelor’s degree in Computer Science, Information Security, or related field. ; ;AWS certifications: AWS Certified Security - Specialty, ; ;Proficient in AWS security services and features of services to provide a secure production environment. ; ;Knowledge of scripting or programming languages (e.g., Python, Bash) for...