Global Information Risk & Governance Lead

Mars

São Paulo

Presencial

BRL 250 000 - 450 000

Tempo integral

14 dias+
Gerador de candidaturas

Uma candidatura completa num minuto — currículo personalizado e carta de apresentação, prontos a enviar.

Ultrapassa os filtros ATS

Resumo da oferta

Mars is seeking a Global Information Risk & Governance Lead to manage the end-to-end risk management program and policy lifecycle. You will lead risk assessments, govern identification, assessment, and response to security risks, and ensure compliance of security policies and standards.

You will collaborate with risk owners across the business to document, assign, and track remediation plans, apply formal risk rating methodologies, and drive continuous improvement in risk management services and

Qualificações

  • 7+ years of experience in Information Security GRC or IT Risk or Governance role.
  • Strong knowledge of risk assessment methodologies and policy lifecycle management.
  • Excellent written and verbal communication with executive audiences.

Responsabilidades

  • Lead execution of Information Security risk assessments and business risk reviews.
  • Partner with risk owners to document, assign, and track remediation plans.
  • Apply formal risk rating methodology for consistent prioritization.
  • Maintain and govern the policy lifecycle and regulatory alignment.
  • Develop analytics on risk data and provide executive insights.
  • Monitor KRIs/KPIs and report risk trends to leadership.

Conhecimentos

Information Security GRC
Risk Management
Policy Development
Executive communication
Stakeholder management

Formação académica

Bachelor’s degree in information security, IT, or a similar field

Descrição da oferta de emprego

Job Description:

As the Global Information Risk & Governance Lead, you will manage the end-to-end risk management program and policy lifecycle. In this role, you will lead risk assessments and govern the identification, assessment, and response to security risks. Additionally, you will be responsible for the development, maintenance, and compliance of security policies and standards.

What will be your key responsibilities?
  • Independently lead execution of Information Security risk assessments and business risk reviews.
  • Partner with risk owners across the business to document, assign, and track risk remediation plans through their lifecycle.
  • Apply formal risk rating methodology to ensure consistent, accurate, and repeatable risk prioritization.
  • Embed and support end-to-end risk management services in assigned area of the business (risk identification, assessment, and issue management).
  • Deliver comprehensive analysis of risk data to generate actionable insights.
  • Drive process optimization by identifying continuous improvement opportunities and leading initiatives from concept to execution.
  • Lead and own the Global Information Security policy and standards lifecycle, including initiation, maintenance, and revision.
  • Develop and implement processes to ensure organizational compliance by monitoring changes to external regulations and standards, performing periodic gap assessments, and integrating necessary updates into the policy lifecycle.
  • Operate the Policy Exception Management Process, aligning with key technical and business teams to evaluate and decide on exception requests using a formal, risk-based approach.
  • Execute the policy attestation process and investigate non-compliance.
  • Maintain and monitor KRI/KPIs to reflect risk trends, policy compliance, and executive-level reporting.
What are we looking for?
  • 1. Education & Professional Qualification
    • Bachelor’s degree in information security, IT, or a similar field, or equivalent work experience
    • 7+ years of experience in Information Security GRC or IT Risk or Governance role
  • 2. Knowledge/Experience
    • Technical experience in Risk Management, Issue Management, Information Security, and GRC practices.
    • Strong follow-through, execution, and attention to detail within a complex environment across multiple, diverse stakeholders.
    • Excellent communication, writing, and presentation skills, with a proven ability to create executive-level materials.
    • Familiarity with the NIST Cybersecurity Framework (CSF) or other industry-standard security frameworks.
    • Expertise in business process design and workflow optimization.
    • Proven ability to set and achieve goals and manage multiple projects and priorities.
    • Expertise in leading the full lifecycle of security policies and standards, from creation and stakeholder review to publication and ongoing maintenance.

#TBdigital

Obtém a tua avaliação gratuita e confidencial do currículo.

ou arrasta e larga o ficheiro aqui.

Similar jobs

Ofertas semelhantes que vale a pena comparar

Global Information Risk & Governance Lead
Global Information Risk & Governance Lead

Mars • Guararema

Presencial
BRL 320 000 - 420 000
Global Information Risk & Governance Analyst
Global Information Risk & Governance Analyst

Mars • Arujá

Presencial
BRL 90 000 - 150 000
Global Information Risk & Governance Analyst
Global Information Risk & Governance Analyst

Mars • Guararema

Presencial
BRL 120 000 - 180 000
Technical Security Governance Lead - Identity
Technical Security Governance Lead - Identity

Wpp • São Paulo

Presencial
BRL 167 400 - 279 000
Tech Compliance Pleno II
Tech Compliance Pleno II

AB InBev • Campinas

Presencial
BRL 80 000 - 120 000
Internal Controls Senior Manager
Internal Controls Senior Manager

Glory Global • São Paulo

Híbrido
BRL 320 000 - 520 000
Business Information Security Officer Senior
Business Information Security Officer Senior

Equifax, Inc. • Barueri

Presencial
BRL 180 000 - 280 000
Project Manager, GRC Technology
Project Manager, GRC Technology

Mars • Arujá

Presencial
BRL 120 000 - 180 000
Technical GRC Analyst (Compliance & Assurance)
Technical GRC Analyst (Compliance & Assurance)

Tessera Labs • Brasil

Presencial
BRL 180 000 - 300 000
Project Manager, GRC Technology
Project Manager, GRC Technology

Mars • Guararema

Presencial
BRL 180 000 - 240 000