Global Security Policy Lead

Mars

Guararema

Presencial

BRL 300 000 - 480 000

Tempo integral

há 46 horas
Torna-te num dos primeiros candidatos
Gerador de candidaturas

Não envies um currículo genérico — gera um currículo e uma carta de apresentação adaptados a esta função específica.

Ultrapassa os filtros ATS

Resumo da oferta

Mars seeks a seasoned Global Security Policy Lead to safeguard the policy repository, drive lifecycle management, and ensure attestations across the organization. You will own development, accessibility, and maintenance of security policies and standards, coordinating with legal, privacy, and other compliance functions.

The role requires a decade of information security governance experience, strong writing and communication skills, and the ability to plan and execute projects independently in a

Qualificações

  • Bachelor's degree in information security, IT, or a similar field or equivalent work experience.
  • Minimum 10+ years in Information Security GRC or IT Risk with focus on policy and standards lifecycle management.
  • Experience leading full lifecycle of security policies from creation to maintenance.
  • Familiarity with NIST/ISO frameworks and translating requirements into policy.
  • Excellent writing skills; technical editing or comms experience is a plus.
  • CGEIT/CRISC or similar governance certs are a plus.

Responsabilidades

  • Lead and own the Global Information Security policy and standards lifecycle, including initiation, maintenance, and revision.
  • Govern the organizational policy structure with legal, privacy, and compliance partners.
  • Identify and analyze functional policy requirements.
  • Develop processes to monitor regulatory changes and perform gap assessments then update policy lifecycle.
  • Collaborate with security awareness and privacy teams to communicate policies and programs.
  • Operate the Policy Exception Management Process with risk-based evaluation of exceptions.
  • Execute policy attestation process and investigate non-compliance.
  • Develop KPIs, report trends, and maintain policy-related metrics.

Conhecimentos

Policy lifecycle
Policy attestations
Interpersonal skills
Communication
Project management
Documentation
Digital culture awareness
Policy standards relationship
Priority setting
Writing skills

Formação académica

Bachelor's degree in information security/IT or equivalent

Descrição da oferta de emprego

Job Description

The role of the Global Security Policy Lead is to safeguard the security document repository, lead the policy lifecycle, and execute targeted policy attestations. The role will focus on the accessibility, development, and maintenance of security policies and standards, and the environment in which they are stored.

What are we looking for?
  • Strong understanding of document lifecycle and policy attestations
  • Strong understanding of the relationship between policies, standards, and procedures as they relate to information security
  • Strong interpersonal, organizational, and documentation skills
  • Have exposure and good comprehension of digital culture
  • Excellent communication skills and ability to work across several teams within the organization to get security behaviors embedded across the entire business landscape
  • Ability to plan and execute projects independently
  • Excellent priority-setting capability
  • Strong project management skills
  • Excellent writing skills
What will be your key responsibilities?
  • Lead and own the Global Information Security policy and standards lifecycle, including initiation, maintenance, and revision.
  • Govern the organizational policy structure, ensuring alignment with key partners in legal, privacy, and other compliance functions.
  • Identify and analyze functional policy requirements.
  • Develop and implement processes to ensure organizational compliance by monitoring changes to external regulations and standards, performing periodic gap assessments, and integrating necessary updates into the policy lifecycle.
  • Partner with the security awareness program & privacy teams to communicate new policies, procedures, and programs as well as any supporting regulations, guidelines, procedures, and programs.
  • Operate the Policy Exception Management Process, aligning with key technical and business teams to evaluate and decide on exception requests using a formal, risk-based approach.
  • Execute the policy attestation process and investigate non-compliance.
  • Develop and maintain KPIs and metrics and report trends.
Qualifications
  • Bachelor's degree in information security, IT, or a similar field or equivalent work experience
  • Minimum of 10+ years in Information Security GRC or IT Risk role, with a primary focus on policy and standards lifecycle management.
  • Expertise in leading the full lifecycle of security policies and standards, from creation and stakeholder review to publication and ongoing maintenance.
  • Familiarity with common security frameworks (NIST, ISO) and experience translating their requirements into organizational policy.
  • Excellent writing skills (prior experience as a technical editor or communications specialist is a plus).
  • CGEIT, CRISC, or similar governance-focused certification is a plus.

#TBdigital

Obtém a tua avaliação gratuita e confidencial do currículo.
ou arrasta e larga o ficheiro aqui.
Similar jobs

Ofertas semelhantes que vale a pena comparar

Security Governance Coordinator – Affirmative Action Position for Women
Security Governance Coordinator – Affirmative Action Position for Women

Jobtailor • São Paulo

Presencial
BRL 180 000 - 300 000
Global Information Risk Analyst
Global Information Risk Analyst

Mars • São Paulo

Presencial
BRL 700 000 - 900 000
null
Global Information Risk Lead
Global Information Risk Lead

Mars • Guararema

Presencial
BRL 300 000 - 520 000
Tech Compliance Pleno II
Tech Compliance Pleno II

AB InBev • Campinas

Presencial
BRL 80 000 - 120 000
Information Security Analyst
Information Security Analyst

Jobtailor • Maringá

Presencial
BRL 150 000 - 230 000
Infrastructure and Digital Security Manager
Infrastructure and Digital Security Manager

Jobtailor • São Paulo

Presencial
BRL 320 000 - 460 000
Grupo QuintoAndar | Information Security Manager - GRC
Grupo QuintoAndar | Information Security Manager - GRC

QuintoAndar • São Paulo

Híbrido
BRL 350 000 - 750 000
Competitive salary
Profit sharing
Health insurance
+5
Cloud Security Architect – Governance (Mid-Level)
Cloud Security Architect – Governance (Mid-Level)

Jobtailor • Belo Horizonte

Presencial
BRL 180 000 - 300 000
GRC Product Analyst
GRC Product Analyst

Mars • Arujá

Presencial
BRL 120 000 - 180 000
Product Manager
Product Manager

USER EXPERIENCE RESEARCHERS PTE. LTD • Região Norte

Presencial
BRL 120 000 - 180 000