Information Security Risk Management Lead

2 semanas atrás


São Paulo, São Paulo, Brasil Bitso Tempo inteiro

As an Information Security Lead, you will be a key player in the planning, design, implementation, operation and maintenance of the organization's Information Security Risk Management program, guaranteeing that it complies with the legal and regulatory requirements, as well as implementing and promoting the adoption of security and risk standards such as ISO27000-series, NIST 800-53, FAIR, etc.
The Information Security Lead will also work closely with the global and local Risk, Compliance and Legal teams to establish a risk program for information security aligned to the Corporate Risk strategy and continuously monitor any non-conformity with current regulations as well as address any risk that could impact the organization significantly.
**Your impact**:
- Have clear accountability and ownership to drive and maintain an information security risk management program around people, processes and technology.
- Develop a Security Risk Management Program with the support of stakeholders and in accordance with applicable laws and regulations, as well as with the Corporate Risk framework
- Develop methods to monitor and measure risk, compliance, and assurance efforts.
- Support the definition and formalization of the risk tolerance levels for the organization.
- Provide input to the Corporate Risk team on security and technical risks, mitigation, operational procedures and other processes.
- Ensure that plans of actions or remediation plans are in place for vulnerabilities identified during risk assessments, audits, inspections, etc.
- Develop and manage procedures to investigate and audit vendors for compliance with privacy and data security policies and legal requirements.
- Monitor the external threat environment for emerging threats and advise relevant stakeholders on the appropriate courses of action.
- Perform Vendor Risk assessments, including due diligence and third-party security audits
- Contribute to the design and implementation of risk and security solutions, processes or policies requiring a general understanding of risk and security practices and procedures.
**Who you are**:
- 5+ years of experience in a security management role
- Strong leadership skills and the ability to work effectively with business managers, IT engineering and IT operations staff
- Proficiency in information security domains, including policies and standards, risk and control assessments, risk and control governance and metrics, incident management, secure systems development lifecycle, vulnerability management, and data protection
- Demonstrated technical expertise in development and management of BCMS documentation, including Business Impact Analysis, Business Continuity Incident Management and Business Continuity planning.
- Demonstrable experience of using data analysis tools and techniques to support the timely and accurate provision of risk and/or resilience information.
- Security certifications including but not limited to CISSP, CISA, ISO27001 Lead Auditor, CRISC or any other technical certification.
- Well organized, able to prioritize workload in line with tight deadlines, be highly numerate, with excellent analytical and problem solving skills and strong attention to detail.
- Excellent written and verbal communication skills.
- English language proficiency.
LI-Remote
LI- JI1
**About Bitso**:
Bitso is Latin America's leading cryptocurrency platform.
Our goal is to evolve how we think about and use money.
We believe that we should all have the opportunity to use our money whenever we want it, and how we want it, without boundaries or schedules.
To achieve this, we provide individuals with fast, cheap, seamless and user-friendly financial services powered by blockchain technology.
Cryptocurrencies do not rely on intermediaries to give them legitimacy or value.
Instead, they are valuable because of the peer-to-peer technology that powers them.
We firmly believe in crypto and the use cases it has.
It's time for the world to upgrade to a fair, open, transparent, and global financial system for all.
**#makecryptouseful.
**
Bitso promotes an environment where people are treated fairly and with respect, free of discrimination, bullying, harassment, violence or threats.
**Compensation and Benefits**:
- **Purpose**: You'll be part of something bigger, working towards financial disruption and inclusion across Latin America.
- **Culture**: You'll work in a thriving, friendly, and fun environment that promotes open discussions, jokes, learning, video games, and lots of fun.
- **People**: You'll work with some of the most driven and intelligent people in the crypto space, engaging with a network of diverse talent from 25+ nationalities bound by our quest to #makecryptouseful.
- **Salary**: We pay competitively in the countries where we operate.
- **Venue**:Work from wherever you want, work asynchronously; this role is fully remote to give you maximum freedom.
- **Unlimited Paid Time-Off**: You choose your number of day



  • São Paulo, São Paulo, Brasil Iqvia Tempo inteiro

    **Job Overview**- Leading risk-related projects- Maintaining ongoing testing and development of Information Security Risk Management framework, liaising with senior stakeholders and providing regular updates to stakeholders.- Producing risk reports when required- Working closely with other senior leaders within the team regarding training and guidance to...


  • São Paulo, São Paulo, Brasil beBeeSecurity Tempo inteiro R$90.000 - R$120.000

    Job OverviewWe are seeking a Human Resources Information Security Lead to play a crucial role in enabling and securing our HR systems and tools. This is an exciting opportunity for a security specialist passionate about Human Resources security and looking to make a difference in a dynamic team.This position will support the development and implementation of...


  • São Paulo, São Paulo, Brasil UBS Tempo inteiro

    Latin America CISO, Cyber and Information Security Lead Join to apply for the Latin America CISO, Cyber and Information Security Lead role at UBS Latin America CISO, Cyber and Information Security Lead Join to apply for the Latin America CISO, Cyber and Information Security Lead role at UBS Job Reference # BRJob TypeFull TimeYour roleDo you thrive in a...


  • São Paulo, São Paulo, Brasil Bitso Tempo inteiro

    As an Information Security Lead, you will be a key player in the planning, design, implementation, operation and maintenance of the organization's Information Security Governance model, guaranteeing that it complies with the legal and regulatory requirements, as well as implementing and promoting the adoption of high security standards such as ISO27001, PCI,...


  • São Paulo, São Paulo, Brasil beBeeCybersecurity Tempo inteiro R$90.000 - R$120.000

    About the Role:We are seeking an experienced Information Security Analyst to join our team. As a key member of our cybersecurity group, you will be responsible for supporting the execution of our cybersecurity strategy and developing a mature cyber risk management framework.Responsibilities:Support the development of a comprehensive cyber risk management...


  • São Paulo, São Paulo, Brasil DLL Group Tempo inteiro

    Do you believe businesses should have a bigger ambition than short term profit? If you do, join DLL's mission to 'See what counts'. You'll be part of a team that gets the right tools into the right hands. A team that understands the heart and soul of our partners' business. A team that provides original financial solutions to sustain success for...


  • São Paulo, São Paulo, Brasil beBeeCompliance Tempo inteiro R$90.000 - R$120.000

    Job Overview:The Technical Manager role plays a critical part in identifying security and compliance challenges affecting business operations across various accounts.This involves executing controls to deter, detect, and mitigate security risks, including monitoring and auditing information and data protection for clients.Key Responsibilities:Promote...

  • AI Risk Management Lead

    2 semanas atrás


    São Paulo, São Paulo, Brasil Nubank Tempo inteiro US$90.000 - US$120.000 por ano

    About NubankNubank is one of the largest digital financial services platforms in the world, empowering millions of customers across Latin America to take control of their financial lives. We're driven by an "AI-First" vision, leveraging cutting-edge technology to redefine financial services and deliver exceptional experiences. Our commitment to responsible...


  • São Paulo, São Paulo, Brasil Kroll Tempo inteiro

    In a world of disruption and increasingly complex business challenges, our professionals bring truth into focus with the Kroll Lens.Our sharp analytical skills, paired with the latest technology, allow us to give our clients clarity—not just answers—in all areas of business.We embrace diverse backgrounds and global perspectives, and we cultivate...


  • São Paulo, São Paulo, Brasil DLL Tempo inteiro

    **Information Security Officer**Do you believe businesses should have a bigger ambition than short term profit? If you do, join DLL's mission to 'See what counts'. You'll be part of a team that gets the right tools into the right hands. A team that understands the heart and soul of our partners' business. A team that provides original financial solutions to...