Mid Level IT GRC Analyst/ITGC & Audit | Supero Outsourcing

Grupo Supero

Brasil

Presencial

BRL 120 000 - 160 000

Tempo integral

14 dias+

Recebe mais respostas dos empregadores

Envia um currículo específico para a oferta em poucos minutos.

Resumo da oferta

Grupo Supero is seeking a Mid Level IT GRC Analyst/ITGC & Audit to ensure ITGC and QMS controls are tested, evidence is solid, and audits run smoothly across a globally distributed environment.

You will test ITGC across access, change, cybersecurity operations, databases, and resilience; support QMS testing; coordinate audits; manage evidence; and help teams apply standards. Excellent English communication is expected as you engage with product teams and senior leadership.

Qualificações

  • Experience in compliance, IT audit, ITGC testing, or risk management.
  • Hands-on testing of ITGC controls across domains.
  • Strong understanding of SOC 2, ISO 27001, and 7216.
  • Ability to translate standards into actionable guidance.
  • Proficiency with evidence management platforms and dashboards.
  • Excellent written and verbal English communication.

Responsabilidades

  • Test and validate ITGC controls across key domains: Access Management, Change Management, Cybersecurity Operations, Database & Network Controls, and Resilience.
  • Support QMS control testing for Global and Territory-specific controls — walkthroughs, sample testing, re-performance, and inspection.
  • Coordinate internal and external audits (SOC 2, ISO 27001, 7216) — evidence requests, auditor inquiries, and audit lifecycle execution.
  • Collect, review, and validate audit evidence for completeness and accuracy.
  • Field inquiries from product teams and translate standards into practical guidance.
  • Document remediation plans for audit findings and track through closure.
  • Prepare compliance status reports and maintain dashboards for CPL and senior management.
  • Support quarterly and ad-hoc access reviews aligned with access control standards.
  • Flag compliance risks and control weaknesses proactively.

Conhecimentos

ITGC testing
QMS testing
Risk management
SOC 2
ISO 27001
7216
Access management
Change management
Cybersecurity operations
SDLC
Resilience
GRC tools
Compliance dashboards
Policy interpretation
Microsoft Office
Evidence management

Ferramentas

GRC tools
Evidence management platforms
Microsoft Office

Descrição da oferta de emprego

The Mid Level IT GRC Analyst/ITGC & Audit is a critical member of that program reporting directly to the Compliance Program Lead and is the person who makes sure ITGC and QMS controls are tested, evidence is solid, and auditors never catch the team off guard. You will work across a globally distributed environment, partnering with IT product teams, security, risk management, and internal/external auditors operating in multiple jurisdictions.

Main responsibilities
  • Test and validate ITGC controls across key domains: Access Management, Change Management, Cybersecurity Operations, Database & Network Controls, and Resilience;
  • Support QMS control testing for both Global and Territory-specific controls — walkthroughs, sample testing, re-performance, and inspection;
  • Facilitate internal and external audits (SOC 2, ISO 27001, 7216) — coordinate evidence requests, field auditor inquiries, and ensure smooth audit lifecycle execution;
  • Collect, review, and validate audit evidence for completeness, accuracy, and alignment to control requirements;
  • Field compliance-related inquiries from product teams and stakeholders; translate standards into actionable guidance;
  • Document remediation plans for audit findings and ITGC/QMS deficiencies; track progress through closure;
  • Prepare compliance status reports and maintain dashboards and monitoring tools for the CPL and senior management;
  • Support and coordinate quarterly and ad-hoc access reviews aligned with access control standards;
  • Proactively flag compliance risks and control weaknesses before they surface as audit findings.
What experience we expect from you
  • Experience in compliance, IT audit, ITGC testing, QMS testing, or risk management in a regulated IT environment;
  • Demonstrated experience validating ITGC controls (access management, change management, SDLC, cybersecurity operations, and resilience);
  • Strong understanding of SOC 2, ISO 27001, and 7216 frameworks — with hands‑on audit facilitation experience;
  • Working knowledge of information security policies (ISP) and control frameworks; ability to interpret standards and help teams apply them;
  • Proficiency in Microsoft Office, evidence management platforms, GRC tools, and compliance dashboards;
  • Excellent written and verbal communication in English — ability to engage technical teams and senior leadership;
  • Ability to manage multiple concurrent audits, testing cycles, and reporting deadlines simultaneously.
Nice to have
  • CISA (Certified Information Systems Auditor) — strongly preferred;
  • CRISC, ISO 27001 Lead Auditor, or QMS-related certifications;
  • Experience with QMS testing across Global and Territory specific control frameworks;
  • Familiarity with vulnerability scanning tools and penetration testing evidence review;
  • Experience supporting or executing remediation tracking programs.
Obtém a tua avaliação gratuita e confidencial do currículo.
ou arrasta e larga o ficheiro aqui.
Similar jobs

Ofertas semelhantes que vale a pena comparar

SR ISO Assessment Consultant IRC295881
SR ISO Assessment Consultant IRC295881

GlobalLogic • Buenos Aires

Híbrido
BRL 110 000 - 160 000
Tech Compliance Pleno II
Tech Compliance Pleno II

AB InBev • Campinas

Presencial
BRL 80 000 - 120 000
SOC 2 Staff IT Auditor- LATAM
SOC 2 Staff IT Auditor- LATAM

Insight Assurance • Brasil

Teletrabalho
BRL 311 000 - 467 000
100% Remote
Flexible Paid Time Off
Performance-Based Bonuses
+1
Especialista de ITGC (IT General Controls)
Especialista de ITGC (IT General Controls)

ASAAS • Joinville

Híbrido
BRL 260 000 - 380 000
Home Office
CLT contrato
SR SOC Assessment Consultant IRC297086
SR SOC Assessment Consultant IRC297086

GlobalLogic • Buenos Aires

Presencial
BRL 100 000 - 120 000
Information Technology Auditor
Information Technology Auditor

Insight Global • São Paulo

Presencial
BRL 80 000 - 120 000
Compliance Analyst (Compliance Testing)
Compliance Analyst (Compliance Testing)

Tata Consultancy Services • São Paulo

Presencial
BRL 90 000 - 150 000
Health Insurance
Life Insurance
TotalPass
+6
Grupo QuintoAndar | Information Security Manager - GRC
Grupo QuintoAndar | Information Security Manager - GRC

QuintoAndar • São Paulo

Híbrido
BRL 350 000 - 750 000
Competitive salary
Profit sharing
Health insurance
+5
Analista de Programa de Compliance PL (IDR-04325)
Analista de Programa de Compliance PL (IDR-04325)

Winnin • São Paulo

Híbrido
BRL 100 000 - 167 000
Senior Cybersecurity Consultant
Senior Cybersecurity Consultant

BDO LLP • Região Norte

Presencial
BRL 150 000 - 210 000