Remote with location restrictions
São Paulo - SP
Salary Range
R$3,000.00 - R$4,000.00 / month
Experience Level
Junior
Requirements
Desired Skills
Tasks and Responsibilities
Show originalAbout Us
Infoprotect has been operating in the cybersecurity market for 19 years and is part of the Tyler Group, a technology holding company that integrates cybersecurity, marketing, and innovation firms. Founded by six partners with extensive market experience, the group develops intelligent solutions, automations, and data-driven and artificial intelligence-based technologies. Focused on leadership, transformation, and future vision, the Tyler Group drives business through continuous innovation.
About the Role
We are looking for a professional with solid experience in Information Security, with a proven focus on GRC, to help us strengthen our cybersecurity structure.
Responsibilities
• Support the implementation and maintenance of security frameworks (ISO 27001, NIST, CIS, etc.);
• Perform analysis and management of information security risks;
• Develop BIA, PDSI, and PCN;
• Conduct and support internal and external audits, monitoring action plans and risk treatment;
• Support the management of policies, standards, and procedures, aiming for governance and compliance;
• Act in regulatory compliance management (LGPD, contracts, internal requirements);
• Support security awareness initiatives;
• Work together with technical areas (SOC, Infra, Cloud) for risk assessment;
• Monitor risk and maturity indicators (KPIs/KRIs).
Requirements
• Experience in Information Security with a focus on GRC;
• Knowledge of frameworks such as ISO 27001, NIST, or CIS;
• Experience with risk management;
• Understanding of LGPD and regulatory compliance;
• Experience with audits and controls;
• Good communication with technical and business areas;
• Analytical thinking and risk vision;
• Ability to communicate with non-technical areas;
• Organization and tracking of action plans;
• Critical posture (not just operational);
• Business vision and impact awareness;
• Desirable certifications such as ISO 27001 Lead Implementer/Auditor, CRISC, or CISM;
• Desirable experience in regulated or corporate environments;
• Desirable knowledge in GRC tools.
Benefits
Hybrid work model (1 day per week in-person);
Contract under the PJ (Legal Entity) model;
PDI (Individual Development Plan);
24h Telemedicine;
Online Psychology (4 free monthly sessions);
Wellhub.
Does this sound like you? Come join our team!
Share job:
Share job: