Senior GRC Security Specialist

Job not on LinkedIn

🔥 0 minutes ago

🇨🇴 Colombia – Remote

⏰ Full Time

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer

👻 Ghost score 10%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of CI&T

CI&T

5001 - 10000 employees

Founded 1995

💼 Consulting

🏥 Healthcare

📣 Marketing

💰 $5.5M Venture Round on 2014-04

Consulting • Healthcare • Marketing

CI&T is a global tech transformation specialist focusing on helping organizations navigate their technology journey. With services spanning from application modernization and cloud solutions to AI-driven data analytics and customer experience, CI&T empowers businesses to accelerate their growth and maximize operational efficiency. The company emphasizes digital product design, strategy consulting, and immersive experiences, ensuring a robust support system for enterprises in various industries.

📋 Description

• Continuously identify, log, and analyze control nonconformities and unresolved/high-risk vulnerabilities across different sources. • Maintain the Risk Registry and deliver timely risk treatment updates and reports to stakeholders. • Execute annual third-party cybersecurity risk assessments, ensuring alignment with internal risk standards and external compliance requirements. • Maintain and enhance the cybersecurity control framework by mapping existing controls, collecting evidence of execution, identifying gaps or nonconformities, and aligning overlapping requirements under a unified structure. • Ensure adherence to frameworks such as HITRUST, HIPAA, and Spain ENS certification. • Create and maintain cybersecurity-related policies and procedures. • Ensure documentation complies with regulatory and contractual standards.

🎯 Requirements

• Advanced english for communication with international clients • Excellent communication skills, with the ability to collaborate effectively with technical and non-technical stakeholders. • Strong analytical and problem-solving skills, with the ability to make informed decisions in high-pressure situations. • Conduct cybersecurity risk assessments, identify potential vulnerabilities, and recommend strategies to mitigate risks. • Collaborate with cross-functional teams to ensure that GRC policies, procedures, and controls are effectively communicated and implemented. • Lead efforts to maintain and update documentation related to GRC processes, including risk assessments, policies, and procedures. • Participate in internal and external audits, providing support and documentation as needed to demonstrate compliance. • Strong understanding of GRC frameworks, industry standards, and regulatory requirements. • Excellent analytical skills, attention to detail, and the ability to work independently and in cross-functional teams.

🏖️ Benefits

• Premium Healthcare • Meal voucher • Maternity and Parental leaves • Mobile services subsidy • Sick pay-Life insurance • CI&T University • Colombian Holidays • Paid Vacations • And many others

Apply Now

Similar Jobs

🕒 2 days ago

Truelogic Software

501 - 1000

☁️ SaaS

🤝 B2B

🏢 Enterprise

ColdFusion Developer maintaining and modernizing legacy web applications for Truelogic’s technology clients. Debugging production issues, optimizing SQL, and integrating web services.

JavaScript

SOAP

SQL

🕒 2 days ago

Gorilla Logic

501 - 1000

💼 Consulting

📣 Marketing

📦 Logistics

Cloud security engineer owning AWS cloud operations, incident response, vulnerability management, and SOC 2 support. Securing AI intelligence and document-analysis products for commercial and U.S. government customers.

AWS

Azure

Cloud

Kubernetes

Packer

Python

Terraform

🕒 August 26

GFT Technologies

10,000+ employees

💼 Consulting

🛡️ Insurance

🔒 Cybersecurity

Cloud Security Engineer securing GCP modernization programs for GFT’s finance, insurance, and industrial clients. Implementing FedRAMP High and IL4 controls across cloud landing zones.

🗣️🇪🇸 Spanish Required

Cloud

Cyber Security

Google Cloud Platform

🕒 August 26

GFT Technologies

10,000+ employees

💼 Consulting

🛡️ Insurance

🔒 Cybersecurity

Cloud security engineer securing GCP landing zones and compliance for GFT Technologies’ digital transformation clients. Implementing FedRAMP High and IL4 controls before production handover.

🗣️🇪🇸 Spanish Required

Cloud

Cyber Security

Google Cloud Platform

🕒 August 20

Bold

1001 - 5000

💳 Fintech

💸 Finance

🤝 B2B

Especialista en seguridad de aplicaciones para Bold, fintech colombiana de pagos y banca para MiPymes. Diseñando controles AppSec, automatizaciones con IA y SDLC seguro.

🗣️🇪🇸 Spanish Required

AWS

Cloud

Java

JavaScript

Kotlin

Python

Ruby

SDLC

TypeScript

Go