Não envies um currículo genérico — gera um currículo e uma carta de apresentação adaptados a esta função específica.
Jobtailor is seeking a senior information security leader in São Paulo to coordinate governance and promote a culture of security. The role focuses on regulatory alignment, resilience of critical environments, and audit readiness across ISO standards.
You will drive third-party risk management, engage stakeholders, and oversee security analytics and budgeting. The ideal candidate has advanced English, a Bachelor’s degree, and hands-on experience with ISO management systems.
Coordinate effective information security governance, promoting an integrated and holistic view of corporate risks while ensuring alignment with regulatory requirements and the resilience of critical environments.
Promote employee and third-party training through the Security Culture Program.
Support employee engagement and retention, as well as executive relations, through reports and dashboards.
Manage security and business continuity risks integrated with business operations.
Establish, together with the security pillars, appropriate controls for each business unit’s operating model and document potential exceptions.
Ensure regulatory compliance, adherence to best practices, and audit readiness, including engagement with regulators, external audits, ISO 27001 and ISO 22301 certification audits, industry frameworks, and supplier and customer due diligence.
Manage the Security Culture Program by defining critical audiences, targeted tests, and a schedule to increase maturity and reduce social engineering and data leakage risks.
Support other Information Security pillars, risk management, policy updates, the operating model, the control catalog, and budget management.
Demonstrates expertise in Information Security Risk Management, ensuring compliance with ISO 27001 and ISO 22301 standards while promoting a robust Security Culture Program. Capable of managing third-party risks and engaging with stakeholders to enhance organizational resilience and audit readiness.