Information Security Analyst

Há 4 dias


São Paulo, São Paulo, Brasil Botcity Tempo inteiro

Company Overview

BotCity is building the future of automation with the Governance Platform for Python automations and AI Agents. We empower enterprises to innovate at scale, bringing governance, control, and observability to every automation project. Our philosophy is simple: automation is software, and software deserves the same high-code standards that drive innovation in AI and machine learning.

We recently raised a $12M Series A, led by Four Rivers with participation from Y Combinator, SoftBank, and top industry leaders such as Lew Cirne (New Relic), Rod Johnson (Spring Source), and Walter Kortschak (Summit Partners | Firestreak Ventures). With 1,000+ customers in 70+ countries, including Bayer and LG, and recognition by G as one of the world's top 25 emerging platforms, BotCity is scaling fast.

We're a global remote company with teams across the US and LATAM, united by a shared vision to redefine how enterprises build and manage automation. If you're looking for an environment that values impact, autonomy, and excellence, we'd love for you to join us on this journey.

Role Overview

The Information Security Analyst will lead BotCity's security compliance and governance efforts, ensuring adherence to international standards such as ISO 27001 and SOC 2. This professional will act as the main liaison for customer security inquiries, audits, and internal training efforts, collaborating closely with cross-functional teams to maintain a robust security posture. We are looking for a proactive and collaborative professional with solid experience in information security governance, fluency in English, and strong organizational skills to manage audits, questionnaires, and cross-team initiatives. This role will report directly to the VP of Engineering.

Responsibilities

  • Complete and respond to customer security questionnaires, ensuring accurate and timely submissions.
  • Ensure company-wide adherence to information security frameworks such as ISO 27001, SOC 2, and LGPD (Lei Geral de Proteção de Dados).
  • Manage internal training sessions to ensure the entire team is aware, engaged, and compliant with information security policies.
  • Serve as the primary point of contact for client security inquiries, providing detailed responses based on internal security protocols and participating in relevant meetings.
  • Maintain and update security documentation, including security policies, processes, and audit logs.
  • Collaborate with internal teams such as IT, Engineering, and Product to ensure security controls are
  • implemented and maintained in alignment with regulatory requirements.
  • Assist in internal and external security audits by gathering and organizing required documentation and evidence, and interfacing with consulting and auditing firms.
  • Recommend and implement improvements to the organization's security posture based on customer feedback and audit outcomes, working closely with the Engineering team.

Requisitos:

Required Qualifications

  • Degree in Information Security, Cybersecurity, Information Technology, or a related field.
  • Experience (3+ years) with information security governance, focusing on security compliance, questionnaires, and audits.
  • Strong knowledge of security frameworks such as ISO 27001 and SOC 2, as well as LGPD (Lei Geral de Proteção de Dados).
  • Hands-on experience responding to security audits and completing customer security checklists.
  • Familiarity with cloud provider technologies such as AWS, Azure, and GCP.
  • Knowledge of computer networks and firewalls.
  • Excellent written and verbal communication skills, with a keen attention to detail.
  • Experience working with MS Office/Excel, Google Suite, Notion, Slack.
  • Ability to travel as needed to support events and meet the team.
  • Portuguese - Fluent.
  • English - Fluent.

Preferred Qualifications

  • Certifications related to Cybersecurity, Information Security or AWS Associate.
  • Active membership in a recognized security association.
  • Hands-on experience with security compliance management tools such as Vanta, Drata, or OneTrust.
  • Experience working in Information Security roles within product-first companies.
  • Prior experience in an early-stage, high-growth, and fast-paced startup environment or technology companies.
jobs #hiring #security #iso #soc #governance
  • Security Analyst

    1 semana atrás


    São Paulo, São Paulo, Brasil Bunge Tempo inteiro R$60.000 - R$120.000 por ano

    A Bunge (NYSE: BG) é líder mundial em abastecimento, processamento e fornecimento de produtos e ingredientes de grãos e sementes oleaginosas. Fundada em 1818, a Bunge alimenta um mundo em crescimento, criando produtos e oportunidades sustentáveis para mais de agricultores e seus consumidores em todo o mundo. A empresa está sediada em St. Louis,...


  • São José dos Campos, São Paulo, Brasil Johnson & Johnson Tempo inteiro R$90.000 - R$120.000 por ano

    At Johnson & Johnson, we believe health is everything. Our strength in healthcare innovation empowers us to build a world where complex diseases are prevented, treated, and cured, where treatments are smarter and less invasive, and solutions are personal. Through our expertise in Innovative Medicine and MedTech, we are uniquely positioned to...


  • São Paulo, São Paulo, Brasil UBS Tempo inteiro R$120.000 - R$240.000 por ano

    BrazilInformation Technology (IT)Group FunctionsJob Reference #325213BRCitySao PauloJob TypeFull TimeYour roleDo you thrive in a fast paced, dynamic environment that helps protect firm and client data? Are you someone who can make the right call in challenging situations? Are you a shrewd evaluator of the risks in cyber and data protection? Can you navigate...

  • Cyber Security Engineer

    1 semana atrás


    São Paulo, São Paulo, Brasil ODATA - An Aligned Data Centers Company Tempo inteiro R$80.000 - R$120.000 por ano

    We are seeking a highly skilled Information & Cyber Security Engineer to join our team in São Paulo, Brazil, working closely with the Director, Information & Cyber Security. The ideal candidate will have extensive expertise in information security domains, with a strong emphasis on security operations, threat hunting, incident response, and vulnerability...

  • Analyst, Account Management

    1 semana atrás


    São Paulo, São Paulo, Brasil Mastercard Tempo inteiro R$40.000 - R$80.000 por ano

    Our PurposeMastercard powers economies and empowers people in 200+ countries and territories worldwide. Together with our customers, we're helping build a sustainable economy where everyone can prosper. We support a wide range of digital payments choices, making transactions secure, simple, smart and accessible. Our technology and innovation, partnerships...

  • Information Security Leader

    1 semana atrás


    São Paulo, São Paulo, Brasil Gerdau Tempo inteiro R$80.000 - R$150.000 por ano

    Com 124 anos de história, a Gerdau é a maior empresa brasileira produtora de aço e uma das principais fornecedoras de aços longos nas Américas e de aços especiais no mundo. No Brasil, também produz aços planos, além de minério de ferro para consumo próprio. Além disso, possui uma divisão de novos negócios, a Gerdau Next, com o objetivo de...


  • São Paulo, São Paulo, Brasil UltraCon Consultoria Tempo inteiro R$8.000 - R$20.000 por ano

    Business Information Security Officer (BISO Tempo de Alocação: indeterminadoLocal de Trabalho: São Paulo/SP @ Henri Dunant (Híbrido: 3x/sem presencial)Horário de Trabalho: 9h00 às 18h00 (5x2)Contratação PJ ou CooperativaDescrição do Cargo:O BISO atua como o elo entre a área de Segurança da Informação e as unidades de negócio da empresa. Seu...


  • São Paulo, São Paulo, Brasil Questrade Financial Group Tempo inteiro R$90.000 - R$120.000 por ano

    Company DescriptionQuestrade is an award-winning low-cost digital alternative to traditional banks that is transforming the Canadian financial services industry. We empower Canadians with innovative products and cutting-edge technology, offering easier ways to invest in securities and foreign currency. Our diverse and collaborative team is committed to...

  • IT Security Supervisor

    1 semana atrás


    São Paulo, São Paulo, Brasil Samsung Electronics Tempo inteiro R$104.000 - R$156.000 por ano

    Who are we?Samsung Electronics has grown into one of the world's leading technology companies, recognized as one of the top 5 global brands. As a global leader in technology, we are transforming the world with the creativity and diversity of our talented people who drive this transformation.Our company's success reflects the determination and talent of our...

  • Senior Security Engineer

    1 semana atrás


    São Paulo, São Paulo, Brasil Nubank Tempo inteiro R$120.000 - R$150.000 por ano

    About NubankNubank was founded in 2013 to free people from a bureaucratic, slow, and inefficient financial system. Since then, through innovative technology and outstanding customer service, the company has been redefining people's relationships with money across Latin America. With operations in Brazil, Mexico, and Colombia, Nubank is today one of the...