Cybersecurity Auditor

🔥 0 minutes ago

🇧🇷 Brazil – Remote

⏰ Full Time

🟡 Mid-level

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer

👻 Ghost score 11%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Kyndryl

Kyndryl

10,000+ employees

Founded 2021

💼 Consulting

📦 Logistics

🏥 Healthcare

Consulting • Logistics • Healthcare

Kyndryl is a leading IT infrastructure services provider, serving thousands of enterprise customers worldwide. The company specializes in designing, building, managing, and modernizing complex, mission-critical information systems. Kyndryl offers a range of services including IT consulting, cloud services, cybersecurity, data and AI solutions, and digital workplace transformation. With a strong focus on innovation, partnerships, and co-creation, Kyndryl helps businesses tackle IT complexity and drive operational excellence. The company operates across various industries such as automotive, healthcare, banking, and more, providing expertise and solutions to address industry-specific challenges. Kyndryl's global network and strategic alliances empower enterprises to adapt to the evolving technology landscape, ensuring their essential systems are reliable and efficient.

📋 Description

• Execute risk-based audits by defining objectives and evaluating processes and related risks • Design and perform control testing • Assess whether controls effectively mitigate risks • Communicate impacts on objectives • Develop recommendations • Prepare final reports stating control effectiveness for each identified risk • Communicate issues, risks, and technical information to technical and non-technical audiences • Lead teams of IT auditors on assigned audit engagements • Conduct or support cybersecurity audits, security assessments, risk reviews, and compliance activities • Work with controls, processes, and security configurations including change, incident, access, patch, API, inventory, vulnerability, operations, database, and risk management • Assess authentication and authorization, secure configurations, data integrity and protection, business continuity, and disaster recovery

🎯 Requirements

• 5+ years of professional experience in Information Technology, Cybersecurity, Information Security, Technology Risk, IT Operations, Application Development, Cloud Technologies, or a related technical field • Experience in Cybersecurity, SOX, Risk Management, or IT auditing • Strong knowledge of Cybersecurity laws, regulations, and standards • Familiarity with COBIT, ISO 27001/27002, NIST, COSO, and general security practices • Ability to execute risk-based audits and report control effectiveness • Strong knowledge of cybersecurity processes and concepts, including incident response, secure software development, security governance, cloud computing, SDLC, third-party risk management, penetration testing, vulnerability management, disaster recovery, segregation of duties, audit logging, physical security, access management, and configuration management • Experience conducting or supporting cybersecurity audits, security assessments, risk reviews, or compliance activities for a large or global organization • Excellent time-management skills • Ability to communicate issues, risks, and technical information clearly and professionally in English to technical and non-technical audiences • At least one relevant professional certification, such as CISA, CISM, CISSP, or PCIP • Preferred: 7+ years of professional experience in relevant technology governance and assurance functions • A bachelor’s or master’s degree in information security, Information Systems, Computer Science, or a related field is preferred • Preferred relevant professional certifications, such as CISA, CISM, CISSP, PCIP, Security+, or CC

🏖️ Benefits

• Flexible, supportive environment • Well-being support through Be Well programs • Financial, mental, physical, and social health programs • Personalized development goals and continuous feedback • Certifications with Microsoft, Google, and Amazon • Coaching and hands-on learning experiences • Cutting-edge learning opportunities • Employee referral program

Apply Now

Similar Jobs

🔥 3 minutes ago

ROIT

51 - 200

💼 Consulting

⚖️ Legal

☁️ SaaS

Especialista em Application Security e DevSecOps na ROIT, empresa de tecnologia. Estruturando segurança de aplicações, Secure SDLC e controles CI/CD.

🗣️🇧🇷🇵🇹 Portuguese Required

AWS

Azure

Cloud

Google Cloud Platform

Kubernetes

SDLC

🔥 10 hours ago

DOMVS iT

51 - 200

💼 Consulting

🏥 Healthcare

🏢 Enterprise

Engenheiro Sênior de Segurança da Informação na DOMVS iT, liderando ISO 27001, plataformas de segurança e testes de vulnerabilidade. Governança de riscos de IA, cloud e compliance regulatório.

🗣️🇧🇷🇵🇹 Portuguese Required

Cloud

🔥 10 hours ago

DOMVS iT

51 - 200

💼 Consulting

🏥 Healthcare

🏢 Enterprise

Engenheiro sênior de segurança da informação definindo guardrails e práticas secure-by-design. Protegendo desenvolvimento de software e produtos de IA da DOMVS iT contra vulnerabilidades e ataques emergentes.

🗣️🇧🇷🇵🇹 Portuguese Required

Open Source

🔥 18 hours ago

Digibee

51 - 200

💼 Consulting

📣 Marketing

📦 Logistics

Cloud Security Engineer integrando segurança a pipelines CI/CD e infraestrutura GCP na Digibee. Protegendo imagens de containers e governando vulnerabilidades na plataforma iPaaS cloud-native low-code.

🗣️🇧🇷🇵🇹 Portuguese Required

Cloud

Docker

Google Cloud Platform

Jenkins

Kubernetes

Open Source

Python

SDLC

Terraform

🕒 3 days ago

Deliverit

1 - 10

🛍️ eCommerce

📦 Logistics

Engenheiro Full-Stack Sênior corrigindo vulnerabilidades em aplicações React e Node.js na Deliver IT. Analisando código, executando scans e fortalecendo práticas DevSecOps.

🗣️🇧🇷🇵🇹 Portuguese Required

JavaScript

Node.js

NoSQL

React

SQL

TypeScript