Security Operations Officer

hace 2 semanas


Colombia FullStack Labs A tiempo completo

FullStack Labs is the fastest-growing software consultancy in the Americas. We help organizations like Uber, GoDaddy, MGM, Siemens, Stanford University, and the State of California, build distributed software development teams, and deliver transformational digital solutions. As an employee-first company, we focus on hiring the most talented software designers and developers in the western hemisphere, by creating a positive, respectful, and supportive work environment where they can achieve their greatest potential.

We’re most proud of:

- Offering life-changing career opportunities to talented software professionals across the Americas.
- Building highly-skilled software development teams for hundreds of the world’s greatest companies.
- Having delivered hundreds of successful custom software solutions, which have positively impacted the lives and careers of millions of users.
- Our 4.5-star rating on GlassDoor.
- Our client Net Promoter Score of 68, twice the industry average.

**The Position**:
We're looking to hire a professional who has deep experience with Security and Compliance for Software Services. Primary responsibilities will include:

- Develop internal company policies and controls and track compliance.
- Achieve certifications and pass audits for standards such as SOC 2, ISO 27001, HIPAA among others.
- Work with auditors to ensure certifications are properly achieved year over year.
- Report to management concerning the organization’s compliance with laws and regulations.
- Take action in dealing with noncompliance situations, creating realistic plans to overcome them.
- Conduct regular internal audits to identify potential weaknesses and noncompliance situations.
- Communicate with employees and make sure everyone is aware of what they need to do to comply with internal and external laws and regulations.
- Make sure the organization has a clearly defined program for complying with each country’s information security laws.
- Analyze management and technical controls to ensure that specific security and compliance requirements are met through the verification of documented processes, procedures and standards in order to validate maintenance of secure configurations.
- Monitor third-party risk assessments and assist in performing internal risk assessments.
- Monitor, track and remediate security incidents, and incorporate the lessons learned into ongoing policies and standards, with the goal of preventing such incidents.
- Collaborate on critical IT projects to ensure that security policy/risk issues are addressed throughout the project life cycle for FSL’s clients.
- Develop key performance metrics to track and ensure compliance with established policies and standards.
- Support development of security processes and procedures and support service-level agreements to ensure that security controls are managed and maintained.
- Participate in the development of security and privacy awareness training in conjunction with other members of the Security Compliance group.
- Collaborate with Operations Team members to obtain and review comprehensive background checks of potential company personnel.
- Respond to client and prospective client inquiries regarding security policies and procedures.
- Work with the Logistics Team to ensure that company equipment meets applicable security safeguards.
- On-boarding and Off-boarding tasks for team members and clients.
- Overall improvement of company processes and procedures.

**What We're Looking For**:
Must-Have:

- Bachelor's degree in business, with IT audit or compliance experience, or computer science, with business and IT audit or compliance experience desired
- Knowledge and understanding of SOC-2, FISMA and NIST and information security standards
- Working knowledge of common IT security-related regulations and/or standards such as Sarbanes-Oxley, ISO, HIPAA and PCI highly desired
- Minimum five years' experience conducting security control assessments or audits
- Minimum two years' experience developing or managing a security awareness program
- SOC-2 audit experience from a major professional services firm highly desired
- At least one industry certification (e.g. CISA, CISM, CRISC, CISSP, ISAAP) highly desired
- Strong oral and written communication skills
- Ability to maintain security documentation and manuals
- Must have strong analytical and critical-thinking skills
- High-level of attention to detail and be a self-starter with ability to work independently, multi-task and adjust to shifting priorities

**Benefits**:

- Competitive Salary.
- Paid Time Off (vacation, sick leave, maternity and paternity leave, holidays).
- 100% remote work.
- The ability to work with leading startups and Fortune 500 companies.
- Health policy with Sura 100% for you and up to 4 primary family members.
- English Classes.
- Sodexo food card.
- Virtual company events each month.
- Ample opportunity for career advancement.
- Continuing education opportunitie



  • Colombia Jobgether A tiempo completo

    This position is posted by Jobgether on behalf of a partner company. We are currently looking for an Information Security Analyst in Colombia. In this role, you will play a critical part in protecting a large-scale, globally distributed technology platform by strengthening its security operations and threat detection capabilities. You will work at the core...

  • Compliance Officer

    hace 2 semanas


    Colombia Jobgether A tiempo completo

    This position is posted by Jobgether on behalf of a partner company. We are currently looking for a Compliance Officer in Colombia. This role plays a critical part in ensuring that business operations meet the highest legal, ethical, and regulatory standards in Brazil. You will lead compliance and AML/CTF initiatives in a highly regulated, fast-evolving...


  • Colombia, Huila Médecins Sans Frontierès A tiempo completo

    **E-HEALTH MEDICAL OFFICER-TRAINING AND KNOWLEDGE MANAGEMENT (BASED IN ANY MSF OCBA HUB)**: ES Full Time Medical **GENERAL CONTEXT** Médecins Sans Frontières is an international independent medical-humanitarian organization, which offers assistance to populations in distress, to victims of natural or man-made disasters and to victims of armed conflict,...

  • Security Analist H/M

    hace 2 semanas


    funza-bogota - America, Colombia Geodis A tiempo completo

    Información general Entidad adjunta GEODIS es un proveedor logístico líder a nivel mundial reconocido por su experiencia en todos los aspectos de la cadena de suministro. Como socio de crecimiento de sus clientes, GEODIS se especializa en cinco líneas de negocio: Supply Chain Optimization, Global Freight Forwarding, Global Contract Logistics,...

  • Senior Analyst

    hace 2 semanas


    Colombia, Huila BCD A tiempo completo

    **Start your journey with BCD: Grow, connect, collaborate and celebrate with our global team** **Senior Security Audit & Assurance Analyst PCI ISA QSA Remote** - Full time, Colombia, Costa Rica_ The Senior Audit Assurance team member will support the organization’s PCI compliance program by leveraging a strong background in PCI as a current or former PCI...


  • Colombia Scotiabank A tiempo completo

    A leading bank in the Americas is seeking a Cybersecurity Investigator in Bogota, Colombia. This role involves detecting and investigating security threats, requiring at least a year in a Security Operations Centre and strong communication skills in English (Spanish is an asset). The ideal applicant will understand cybersecurity basics and be passionate...

  • Cybersecurity Architect

    hace 2 semanas


    Colombia Hatch A tiempo completo

    **Requisition ID**:87922 **Job Category**:Information Technology **Location**:Medellin, Antioquia, Colombia Join a company that is passionately committed to the pursuit of a better world through positive change. With more than 65 years of business and technical expertise in mining, energy, and infrastructure, our 10,000 colleagues in 150 countries...


  • Colombia, Huila Chubb A tiempo completo

    Responsible of support the Latam IBMi operations projects and daily tasks, with a focus on agility, security, and compliance with service levels agreements, observing alignment and compliance with policies and procedures. - Ensuring security and efficiency of IT infrastructure - Support the analsys, remediation implemeniion of vulnerabilities. - Support the...

  • Head of Infrastructure

    hace 2 semanas


    Colombia J.S. Held A tiempo completo

    **Role**:Head of Infrastructure **Job Location**:Remote **Are you looking to join an organization that is growing and dynamic? What about a high-energy, collaborative environment that rewards hard work?** J.S. Held is a global consulting firm providing technical, scientific, and financial expertise across all assets and value at risk. Our professionals...

  • Cybersecurity Analyst

    hace 2 semanas


    Colombia Hatch A tiempo completo

    **Requisition ID**:87924 **Job Category**:Information Technology **Location**:Medellin, Antioquia, Colombia Join a company that is passionately committed to the pursuit of a better world through positive change. With more than 65 years of business and technical expertise in mining, energy, and infrastructure, our 10,000 colleagues in 150 countries...