Cyber Security Governance

hace 3 días


Desde casa, Colombia J.S. Held A tiempo completo

and The Company

**Are you looking to join an organization that is growing and dynamic? What about a high-energy, collaborative environment that rewards hard work?**

J.S. Held is a global consulting firm providing technical, scientific, and financial expertise across all assets and value at risk. Our professionals serve as trusted advisors to organizations facing high-stakes events demanding urgent attention, staunch integrity, clear-cut analysis, and an understanding of both tangible and intangible assets. The firm provides a comprehensive suite of services, products, and data that enable clients to navigate complex, contentious, and often catastrophic situations**. **We have over 100 locations worldwide. We are highly committed to all members of our community, both employees and clients. Our organization focuses on promoting a sense of community and inspiring our people to achieve results that exceed goals.

The Team and Job Summary

**_ Please submit your resume in English._**

Job Responsibilities

The Cyber Security Governance & Risk Analyst will support the GRC Team to drive the design, implementation, and ongoing delivery of:

- Formal Cyber Security Risk Management.
- Cyber Security Policies.
- Cyber Security Compliance.
- Participate in the review and assessment of third-party vendor security controls to ensure compliance with Cyber Security standards.
- Third Party Risk Assessments.
- DR/BCP.
- Help monitor and ensure compliance with relevant regulatory requirements, such as GDPR, HIPAA, ISO 27001, CMMC, NIST CSF.
- Support the development of training and awareness programs for employees to promote a security-conscious culture and adherence to J.S. Held
- Assist in coordinating internal and external audits and examinations related to Compliance and Cyber Security
- Aid in the preparation and presentation of GRC reports, metrics, and key performance indicators as needed.
- Coordinate annual external penetration test and security assessments utilizing 3rd party.
- Contribute to incident response activities, including updating the directory, documenting and reporting security incidents, and participating in post-incident analysis to identify areas of improvement.
- Stay updated on emerging Cyber Security trends, regulatory changes, and industry standards to assist in keeping the organization's GRC practices current and effective.
- Asset Compliance Management.

Required Qualifications
- Professional Level / Full English Fluency (B2).
- Experienced building and executing technology risk frameworks, assessments, reports, metrics, KRIs, and utilizing risk management tools to analyze and model risk. Ability to align frameworks and policies to address requirements from frameworks like COBIT, NIST CSF and ISO, and regulations such as GDPR, HIPAA NY-500, and CCPA.
- Experience designing and evaluating Cyber Security processes, risks, and controls.
- Technical knowledge of Azure, Azure AD, O365, Windows 10/11, iOS, and technical controls us to secure Technology assets (Data, Client and Server OS, Network, Applications, SaaS, IaaS, etc.)
- Hands-on Cyber Security compliance program, ensuring IT activities, processes, and procedures meet defined requirements, policies, and regulations.
- Strong oral and written communications skills appropriate for interacting with all levels of staff, vendors, and other stakeholders.
- Ability to develop security standards and guidelines based on best practices and industry standards.
- Excellent interpersonal, communication, and presentation skills, including formal report writing experience.
- Proficiency in analyzing security risks, vulnerabilities, and controls within an IT environment.
- Capability to work on multiple tasks with shifting and sometimes conflicting priorities.
- Able to work effectively with other departments to develop effective and efficient solutions.
- Experience designing and implementing information technology processes.
- Demonstrated experience successfully collaborating with remote colleagues.
- Experience working with vendors or managing vendor relationships.
- Experience collaborating with Application, Infrastructure, Network, HelpDesk, and Security teams.
- Ability to deal with ambiguity and flexibility to work collaboratively with others in a dynamic environment.

Preferred Qualifications
- Bachelor’s degree in Computer Science or similar.
- Minimum 8 years of experience in IT Audit, Risk Management or Compliance
- 5+ years (required) Cyber Security
- 3+ years (required) Cyber Security - Governance, Risk and Compliance (GRC)
- Professional certifications such as CISA, CompTIA Security+, COBIT, CISM are a plus.

Physical and Mental Job Qualifications
- Prolonged periods sitting at a desk and working on a computer.

J.S. Held is dedicated to becoming the global leader in providing multi-disciplinary consulting services to the construction, government, healthcare, industrial, insurance, energy, legal, and technology, communities. We have diver


  • Cyber Security Analyst

    hace 6 días


    Desde casa, Colombia TheHive A tiempo completo

    **POSITION**:Cyber Security Analyst **SECTION/UNIT**:Technology Team **Reports to**: Chief Technology Officer **Supervises**:N/A **JOB PURPOSE** The Cyber Security Analyst will be responsible for protecting all of the companys hardware, software, and networks from cybercriminals. The analyst's primary role will be to understand the company IT...


  • Desde casa, Colombia Teleperformance A tiempo completo

    Overview: The GSM Analyst shall identify, collect, and analyze host and user data, and report and track events or incidents that occur or might occur within a network to mitigate immediate and potential network and host threats. **Responsibilities**: - Review security focused events or alerts within the Teleperformance environment. - Receive and analyze...


  • Desde casa, Colombia Zayo Group A tiempo completo

    Company Description Zayo provides mission-critical bandwidth to the world’s most impactful companies, fueling the innovations that are transforming our society. Zayo’s 141,000-mile network in North America and Europe includes extensive metro connectivity to thousands of buildings and data centers. Zayo’s communications infrastructure solutions include...

  • Cloud Security Engineer

    hace 1 semana


    Desde casa, Colombia Koombea Inc A tiempo completo

    **Remote, Latam | Full Time | 5+ years experience | English (B2) | Competitive Salary** Did you know that Koombea is one of Latin America's fastest-growing software development companies? We help our clients all over the world build digital products that make users' lives better. By joining our team, you will not only receive amazing benefits and become...


  • Desde casa, Colombia AspenView Technology Partners A tiempo completo

    Build the Future with AspenView Technology PartnersAt AspenView, we are passionate about transforming the way organizations approach technology. We specialize in creating high-performing, nearshore IT teams to help North American clients innovate faster and more efficiently. As we continue to grow, we're looking for exceptional people to join our team and...

  • Security Analyst

    hace 6 días


    Desde casa, Colombia Zoom Video Communications, Inc. A tiempo completo

    About This Role About the Team The Security Operations Center (SOC) team at Zoom is the first line of defense for security incidents and threats to Zoom. This team is vital to ensuring a safe and secure experience for Zoom customers. About The Role As a Security Analyst reporting to our SOC Manager, you’ll assist in leading a team in response as you...

  • Senior Security Engineer

    hace 2 semanas


    Desde casa, Colombia EPAM Systems A tiempo completo

    We are seeking a highly skilled Senior Security Engineer to lead and strengthen the security posture of our AWS and GCP environments. You will play a pivotal role in designing and implementing robust security solutions for cloud-based infrastructure. This position offers the opportunity to work with advanced technologies and collaborate with cross-functional...


  • Desde casa, Colombia AspenView Technology Partners A tiempo completo

    Build the Future with AspenView Technology PartnersAt AspenView, we are passionate about transforming the way organizations approach technology. We specialize in creating high-performing, nearshore IT teams to help North American clients innovate faster and more efficiently. As we continue to grow, we're looking for exceptional people to join our team and...

  • Senior Sales Engineer

    hace 1 semana


    Desde casa, Colombia Proofpoint A tiempo completo

    It's fun to work in a company where people truly BELIEVE in what they're doing! - We're committed to bringing passion and customer focus to the business._ - At Proofpoint, the members of our Sales Engineering team are highly valued business partners that play a critical role in our sales process every single day.- You will get to develop and tell a...

  • Senior Data Engineer

    hace 6 días


    Desde casa, Colombia Provectus A tiempo completo

    We are seeking a talented and experienced** Senior Data Engineer** to join our team at Provectus. You will encounter numerous technical challenges and have the opportunity to contribute to exciting open-source projects (e.g., ODD, UI for Kafka), build internal solutions, and engage in R&D activities, providing an excellent environment for professional...