GRC, Cybersecurity, and Compliance Professional

Visa Hunt

Colombia

Presencial

COP 120.000.000 - 200.000.000

Jornada completa

14 días+
Generador de candidaturas

No envíes un currículum genérico: crea un currículum y una carta de presentación adaptados a este puesto concreto.

Supera los filtros ATS

Descripción de la vacante

Yuxi Global, powered by Veritas Automata, is a technology consulting and software development company dedicated to delivering innovative security and compliance solutions. The role leads cybersecurity compliance initiatives, aligning stakeholders, auditing activities, and governance programs across the organization.

The ideal candidate combines strong compliance and audit experience with excellent program management and stakeholder skills, while maintaining a solid cybersecurity foundation.

Formación

  • Bachelor's degree in a relevant field is required.
  • 10+ years in Cybersecurity, IT Audit, GRC, Compliance, or related fields.
  • Experience supporting SOC 2 and ISO 27001 programs.
  • Strong program and project management skills.
  • Ability to coordinate audits and cross-functional stakeholders.
  • Excellent written and verbal English communication.

Responsabilidades

  • Manage SOC 2 and ISO 27001 compliance initiatives.
  • Drive audit readiness activities and remediation tracking.
  • Coordinate cross-functional stakeholders and control owners.
  • Organize meetings and track action items and deadlines.
  • Support internal and external audit activities and certifications.
  • Track risks, findings, KPIs, and program status.

Conocimientos

Program management
Project management
Audit coordination
Stakeholder management
Cybersecurity
GRC
Communication (English)

Educación

Bachelor's degree in Cybersecurity or related

Herramientas

Jira
Confluence
Drata
Vanta
AuditBoard
ServiceNow GRC

Descripción del empleo

We are seeking a GRC, Cybersecurity, and Compliance Professional to lead and coordinate cybersecurity compliance initiatives focused on SOC 2, ISO 27001, audit readiness, and security governance.

This is not a highly technical engineering role. The ideal candidate will act as the driving force behind compliance programs, ensuring stakeholders remain aligned, audit activities stay on track, and security initiatives are successfully executed across the organization.

The selected candidate will work closely with the organization's Cybersecurity Subject Matter Expert (SME), supporting the coordination, operationalization, and continuous improvement of security and compliance programs.

Key Responsibilities
  • Manage and coordinate SOC 2 and ISO 27001 compliance initiatives.
  • Drive audit readiness activities, including evidence collection, documentation management, and remediation tracking.
  • Coordinate cross-functional stakeholders and control owners to ensure timely completion of security and compliance requirements.
  • Organize meetings, maintain action-item tracking, and follow up on deliverables and deadlines.
  • Support internal and external audit activities and certification efforts.
  • Track risks, findings, remediation plans, KPIs, and program status reporting.
  • Partner closely with cybersecurity leadership and technical teams to translate compliance requirements into actionable tasks.
  • Help promote security awareness and governance best practices throughout the organization.
  • Maintain compliance documentation, policies, procedures, and evidence repositories.
Requirements
  • 10+ years of experience in Cybersecurity, IT Audit, GRC, Compliance, Risk Management, or related fields.
  • Experience supporting or managing SOC 2 and/or ISO 27001 programs.
  • Strong Program Management and Project Management skills.
  • Experience coordinating audits, compliance initiatives, and cross-functional stakeholders.
  • Ability to communicate effectively with both technical and non-technical teams.
  • Experience managing action plans, timelines, risks, dependencies, and compliance deliverables.
  • Strong written and verbal English communication skills.
  • Bachelor's degree in Cybersecurity, Information Systems, Computer Science, Business, Risk Management, or related discipline.
Preferred Qualifications
  • Experience with cybersecurity governance and security maturity programs.
  • Experience supporting SOC 2 Type II audits and ISO 27001 certification efforts.
  • Familiarity with NIST CSF, CIS Controls, HIPAA, PCI-DSS, GDPR, or similar frameworks.
  • Experience using Jira, Confluence, Drata, Vanta, AuditBoard, ServiceNow GRC, or similar platforms.
  • Relevant certifications such as CISA, CISM, CISSP, CRISC, ISO 27001 Lead Auditor, or equivalent.
Ideal Candidate

We're looking for a professional who combines:

  • Strong compliance and audit experience.
  • Excellent program management and stakeholder management skills.
  • A solid cybersecurity foundation without needing to be deeply hands-on technically.
  • The ability to drive initiatives, remove blockers, and ensure successful execution across multiple teams.
  • Core Skills: SOC 2, ISO 27001, Program Management, Audit Coordination, Compliance, Governance, Risk Management, Stakeholder Management, Security Documentation, Jira, Confluence, GRC Tools.

Yuxi Global, powered by Veritas Automata, is a technology consulting and software development company dedicated to delivering innovative solutions that drive business success. Through our strategic partnership with Veritas Automata, we combine expertise in automation, AI, and advanced technology to enhance operational efficiency and streamline complex processes. Our collaboration ensures we provide tailored, cutting-edge solutions to address evolving business challenges. At Yuxi Global, we are committed to mutual assistance, support, and collaboration with Veritas Automata to create high-impact solutions that empower our clients and drive continuous improvement.

Consigue la evaluación confidencial y gratuita de tu currículum.
o arrastra y suelta tu archivo aquí
Similar jobs

Puestos de trabajo similares que vale la pena comparar

GRC & Security Compliance Lead (SOC 2, ISO 27001)
GRC & Security Compliance Lead (SOC 2, ISO 27001)

Visa Hunt • Colombia

Presencial
COP 120.000.000 - 200.000.000
Ingeniero/a de senior de GRC
Ingeniero/a de senior de GRC

GMV • Bogotá

Híbrido
Hybrid working model
8 weeks remote work per year
Flexible working hours
+3
Senior Cloud DevSecOp Engineer IRC303764
Senior Cloud DevSecOp Engineer IRC303764

GlobalLogic • Medellín

Presencial
COP 248.463.000 - 372.694.000
Hands-On Security Compliance Analyst – Audits & Assurance
Hands-On Security Compliance Analyst – Audits & Assurance

Sur Global • Colombia

Presencial
COP 69.321.000 - 103.982.000
Healthcare reimbursement after 90 days
Device stipend up to $1,500
Flexible U.S. business hours
Senior Cloud DevSecOp Engineer IRC303764
Senior Cloud DevSecOp Engineer IRC303764

GlobalLogic • Bogotá

Presencial
COP 120.000.000 - 240.000.000
Competitive salary
Medical insurance
Annual bonuses
+1
Sr Associate, Information Security Governance, Policy & Control
Sr Associate, Information Security Governance, Policy & Control

Auxis • Bogotá ciudad

Presencial
COP 200.880.000 - 334.800.000
CyberSecurity Manager
CyberSecurity Manager

Lean Solutions Group • Colombia

Presencial
COP 120.000.000 - 200.000.000
Business Operations & GRC Coordinator
Business Operations & GRC Coordinator

Solvd, Inc. • Colombia

Presencial
COP 18.000.000 - 30.000.000
Software Engineer III
Software Engineer III

PartnerOne • Colombia

Presencial
COP 93.805.000 - 150.089.000
Remote Security Compliance Engineer – ISO/SOC2 Focus
Remote Security Compliance Engineer – ISO/SOC2 Focus

Yuno • Bogotá

Presencial
COP 291.658.000 - 421.285.000
Competitive Compensation
Remote Work – you can work from from-e
Home Office Bonus – a one‑time
+5