Cyber Security Governance, Risk, And Compliance Analyst

hace 4 días


Bogotá, Bogotá D.E., Colombia J.S. Held Llc A tiempo completo

Job Description The Cyber Security Governance, Risk, and Compliance Analyst Will Support The Cyber Security Team To Drive The Design, Implementation, And Ongoing Delivery Of Formal Cyber Security Risk Management.
Cyber Security Policies.
Cyber Security Compliance.
Participate in the review and assessment of third-party vendor security controls to ensure compliance with Cyber Security standards.
Third Party Risk Assessments.
M&A Cyber Security Due Diligence.
Disaster Recovery/Business Continuity Planning (DR/BCP).
Help monitor and ensure compliance with relevant regulatory requirements, such as GDPR, HIPAA, ISO 27001, CMMC, NIST CSF, Cyber Essentials+ among others.
Support the development of training and awareness programs for employees to promote a security-conscious culture and adherence to J.S.
Held.
Assist in coordinating internal and external audits and examinations related to Compliance and Cyber Security.
Aid in the preparation and presentation of GRC reports, metrics, and key performance indicators as needed.
Coordinate annual external penetration test and security assessments utilizing 3rd party.
Contribute to incident response activities, including updating the directory, documenting and reporting security incidents, and participating in post-incident analysis to identify areas of improvement.
Stay updated on emerging Cyber Security trends, regulatory changes, and industry standards to assist in keeping the organization's GRC practices current and effective.
Establishing a process for continuous improvement of the Cyber Security program based on lessons learned from incidents, audits, and assessments.
Qualifications Required Qualifications Professional Level / English Fluency (B2).
Experienced building and executing technology risk frameworks, assessments, reports, metrics, KRIs, and utilizing risk management tools to analyze and model risk.
Ability to align frameworks and policies to address requirements from frameworks like COBIT, NIST CSF and ISO, and regulations such as GDPR, HIPAA NY-500, and CCPA.
Experience designing and evaluating Cyber Security processes, risks, and controls.
Technical knowledge of Azure, Azure AD, O365, Windows 10/11, iOS, and technical controls us to secure Technology assets (Data, Client and Server OS, Network, Applications, SaaS, IaaS, etc.)
Hands-on Cyber Security compliance program, ensuring IT activities, processes, and procedures meet defined requirements, policies, and regulations.
Strong oral and written communications skills appropriate for interacting with all levels of staff, vendors, and other stakeholders.
Ability to develop security standards and guidelines based on best practices and industry standards.
Excellent interpersonal, communication, and presentation skills, including formal report writing experience.
Proficiency in analyzing security risks, vulnerabilities, and controls within an IT environment.
Capability to work on multiple tasks with shifting and sometimes conflicting priorities.
Able to work effectively with other departments to develop effective and efficient solutions.
Experience designing and implementing information technology processes.
Demonstrated experience successfully collaborating with remote colleagues.
Experience working with vendors or managing vendor relationships.
Experience collaborating with Compliance, Legal, Infrastructure, HR, and Security teams.
Ability to deal with ambiguity and flexibility to work collaboratively with others in a dynamic environment.
Preferred Qualifications Bachelor's degree in Computer Science or similar.
Minimum 8 years of experience in IT Audit, Risk Management or Compliance 5+ years (Required) Cyber Security 3+ years (Required) Cyber Security - Governance, Risk and Compliance (GRC) Professional certifications such as CISA, CompTIA Security+, COBIT, CISM are a plus.
Additional Information We welcome applications from individuals with disabilities.  If you are an individual with a disability and would like to request a reasonable adjustment in relation to any of the above, please email  ******  and include "Applicant Adjustment" within the subject line with your request and contact information.
Some of the Benefits We Have Include J.S.
Held understands all of our employees are people and sometimes life needs flexibility.  We work to always provide an environment that best supports and suits our team's needs.
Our flexible work environment allows employees to work remotely when needed.
Generous Annual Leave Policy.
Comprehensive Medical Insurance.
Other Duties Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties, or responsibilities required of the employee for this job.
Duties, responsibilities, and activities may change at any time with or without notice.
By submitting your application, you acknowledge that you have read the  J.S.
Held Online Privacy Notice  and hereby freely and unambiguously give informed consent to the collection, processing, use, and storage of your personal information as required and described therein.
Please explore what we're all about at  www.jsheld.com.
EEO and Job Accommodations We embrace diversity and our commitment to building a team and environment that fosters professional and personal enrichment is unwavering.
We are greater when we are equal
J.S. Held is an equal opportunity employer that is committed to hiring a diverse workforce. All qualified applicants will receive consideration for employment without regard to sex, gender identity, sexual orientation, race, color, religion, national origin, disability, protected Veteran status, age, or any other characteristic protected by law.
#LI-SC1



  • Bogotá, Bogotá D.E., Colombia J.S. Held LLC A tiempo completo

    Cyber Security Governance Risk and Compliance ManagerJ.S. Held LLC is a global consulting firm providing expert advice to organizations navigating complex situations. Our professionals serve as trusted advisors, offering technical scientific financial and strategic expertise to advise clients seeking to realize value and mitigate risk.The company provides a...


  • Bogotá, Bogotá D.E., Colombia J.S. Held Llc A tiempo completo

    Cyber Security Governance, Risk, and Compliance Analyst Company Description J.S.Held is a global consulting firm that combines technical, scientific, financial, and strategic expertise to advise clients seeking to realize value and mitigate risk.Our professionals serve as trusted advisors to organizations facing high stakes matters demanding urgent...


  • Bogotá, Bogotá D.E., Colombia J.S. Held LLC A tiempo completo

    Cyber Security Governance, Risk and ComplianceJ.S. Held LLC is a global consulting firm that provides technical financial and strategic expertise to advise clients on complex high-stakes matters demanding urgent attention integrity experience analysis and understanding of tangible and intangible assets.The company provides a comprehensive suite of services...


  • Bogotá, Bogotá D.E., Colombia J.S. Held LLC A tiempo completo

    Cyber Security Governance, Risk, and Compliance Analyst Company Description J.S. Held is a global consulting firm that combines technical, scientific, financial, and strategic expertise to advise clients seeking to realize value and mitigate risk. Our professionals serve as trusted advisors to organizations facing high stakes matters demanding urgent...


  • Bogotá, Bogotá D.E., Colombia J.S. Held LLC A tiempo completo

    Cyber Security Governance, Risk, and Compliance AnalystCompany DescriptionJ.S. Held is a global consulting firm that combines technical, scientific, financial, and strategic expertise to advise clients seeking to realize value and mitigate risk. Our professionals serve as trusted advisors to organizations facing high stakes matters demanding urgent...


  • Bogotá, Bogotá D.E., Colombia J.S. Held LLC A tiempo completo

    Cyber Security Governance and RiskJ.S. Held LLC provides expert advice to clients navigating complex high-stakes matters requiring urgent attention integrity experience analysis and understanding of tangible and intangible assets.The company delivers a comprehensive suite of services products and data to help clients overcome complex...


  • Bogotá, Bogotá D.E., Colombia J.S. Held LLC A tiempo completo

    Risk Management Cyber Security AnalystWe are looking for a Risk Management Cyber Security Analyst to join our team at J.S. Held LLC. As a Risk Management Cyber Security Analyst you will be responsible for supporting the Cyber Security team to drive the design implementation and ongoing delivery of formal Cyber Security Risk Management Cyber Security Policies...


  • Bogotá, Bogotá D.E., Colombia J.S. Held LLC A tiempo completo

    Cyber Security Governance Risk ManagementJ.S. Held LLC combines technical scientific financial and strategic expertise to provide expert advice to clients seeking to realize value and mitigate risk.The company delivers a comprehensive suite of services products and data to enable clients to navigate complex high-stakes matters demanding urgent attention...


  • Bogotá, Bogotá D.E., Colombia J.S. Held LLC A tiempo completo

    Cyber Security Governance Risk and ComplianceJ.S. Held LLC offers expert advice to clients navigating complex high-stakes matters requiring urgent attention integrity experience analysis and understanding of tangible and intangible assets.The company provides a comprehensive suite of services products and data to help clients overcome complex situations.Key...


  • Bogotá, Bogotá D.E., Colombia Alexandra Lozano Immigration Law PLLC A tiempo completo

    Overview We are seeking a bilingual, experienced, and highly skilled Cybersecurity Governance, Risk, and Compliance (GRC) Lead. Experience managing security awareness and training programs is also required. The ideal candidate will have a deep understanding of cybersecurity frameworks, risk management strategies, and compliance with laws, regulations, and...


  • Bogotá, Bogotá D.E., Colombia Teletech Holdings, Inc. A tiempo completo

    Job Description - Compliance and Cyber Remediation Analyst (03ZVY)Compliance and Cyber Remediation Analyst Be the spark that brightens days and ignite your career with TTEC's award-winning employment experience.As a Compliance and Cyber Remediation Analyst working remotely in Colombia, you'll be a part of bringing humanity to business.#experienceTTECOur...


  • Bogotá, Bogotá D.E., Colombia TeleTech Holdings, Inc. A tiempo completo

    Job Description: We are looking for a highly motivated and experienced Compliance and Cyber Remediation Analyst to join our team. The successful candidate will have a strong background in cybersecurity, risk management, and compliance.Your Key Responsibilities: Identify and track remediation progress, including potential risks and roadblocks. Develop and...


  • Bogotá, Bogotá D.E., Colombia J.S. Held LLC A tiempo completo

    Information Technology Cyber Security SpecialistJ.S. Held LLC offers expert advice to organizations navigating complex situations. Our professionals provide technical scientific financial and strategic expertise to advise clients seeking to realize value and mitigate risk.We are looking for an Information Technology Cyber Security Specialist to join our...


  • Bogotá, Bogotá D.E., Colombia TeleTech Holdings, Inc. A tiempo completo

    Job Description - Compliance and Cyber Remediation Analyst (03ZVY) Compliance and Cyber Remediation Analyst Be the spark that brightens days and ignite your career with TTEC's award-winning employment experience. As a Compliance and Cyber Remediation Analyst working remotely in Colombia, you'll be a part of bringing humanity to business. #experienceTTEC Our...


  • Bogotá, Bogotá D.E., Colombia TeleTech Holdings, Inc. A tiempo completo

    Job Description - Compliance and Cyber Remediation Analyst (03ZVY) Compliance and Cyber Remediation Analyst Be the spark that brightens days and ignite your career with TTEC's award-winning employment experience. As a Compliance and Cyber Remediation Analyst working remotely in Colombia, you'll be a part of bringing humanity to business. #experienceTTEC...


  • Bogotá, Bogotá D.E., Colombia Emmes A tiempo completo

    Job Description:We are seeking a highly skilled Information Security Analyst to join our team. The successful candidate will be responsible for supporting and reinforcing our technical capabilities for compliance with governance frameworks and policies.Main Responsibilities:Identify cybersecurity architecture, goals, objectives, and metrics.Propose program...


  • Bogotá, Bogotá D.E., Colombia Scotiabank A tiempo completo

    Job Description: We are seeking a highly experienced Lead Information Security Governance Professional to join our team at ScotiaTech, a business unit within ScotiaGBS, a Scotiabank Group company located in Bogota, Colombia. As a key member of our Technology Control Testing team, you will play a crucial role in ensuring the effectiveness of our information...


  • Bogotá, Bogotá D.E., Colombia Amadeus IT Group, S.A. A tiempo completo

    Job DescriptionThe Cybersecurity Governance Risk Manager will be responsible for aligning with Amadeus Hospitality missions and objectives, ensuring relationships with customers and vendors with respect to laws, security, and data privacy authorities.This role involves reporting to the director of security program management of the Amadeus Hospitality CISO...


  • Bogotá, Bogotá D.E., Colombia TeleTech Holdings, Inc. A tiempo completo

    About This Opportunity: TTEC is seeking a skilled Risk Management Professional to join our cybersecurity team. As a key member of our team, you will be responsible for managing risk and ensuring the security and compliance of our systems.Your Key Responsibilities: Track and report on weaknesses, risks, and areas of concern that negatively impact security...


  • Bogotá, Bogotá D.E., Colombia Control Risks A tiempo completo

    Control Risks is a global leader in risk management and cyber security consulting. We are seeking an experienced Cyber Security Consultant to join our team.About the RoleThis role will involve supporting senior staff in delivering strategic and technical cyber security consulting to clients. The successful candidate will have experience in information...