Назад
Company hidden
6 дней назад

Cybersecurity Auditor (Remote)

Формат работы
remote (только Brazil)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
Brazil
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Cybersecurity Auditor (Remote) (Cybersecurity/Risk Management): Executing risk-based audits of cybersecurity, IT controls, processes, and security configurations with an accent on control testing, risk assessment, and audit reporting. Focus on leading IT audit teams, evaluating control effectiveness, and communicating technical risks and recommendations to technical and non-technical audiences.

Location: Brazil (remote), Hortolandia, São Paulo. Working hours are 8:00 AM to 5:00 PM, Monday to Friday.

Company

hirify.global operates and modernizes mission-critical technology systems for leading businesses, with a focus on technology services and cybersecurity.

What you will do

  • Execute risk-based cybersecurity and IT audits by defining objectives, assessing risks, testing controls, and evaluating control effectiveness.
  • Review IT controls, processes, security configurations, access management, vulnerability management, cloud environments, and business continuity capabilities.
  • Communicate audit findings, risks, technical information, impacts, and recommendations clearly to technical and non-technical audiences.
  • Prepare final audit reports with clear conclusions on control effectiveness for each identified risk.
  • Lead teams of IT auditors on assigned audit engagements.

Requirements

  • At least 5 years of professional experience in IT, cybersecurity, information security, technology risk, IT operations, application development, cloud technologies, or a related technical field.
  • Experience with cybersecurity, SOX, risk management, IT auditing, security assessments, risk reviews, or compliance activities.
  • Knowledge of cybersecurity laws, regulations, standards, and frameworks including COBIT, ISO 27001/27002, NIST, and COSO.
  • Knowledge of incident response, secure software development, security governance, cloud computing, SDLC, third-party risk, penetration testing, vulnerability management, disaster recovery, segregation of duties, audit logging, physical security, access management, and configuration management.
  • Professional English communication skills are required for communicating risks and technical information to technical and non-technical audiences.
  • Strong analytical, critical-thinking, and time-management skills.

Nice to have

  • 7+ years of experience in IT, cybersecurity, technology risk, IT compliance, ITGCs, cloud technologies, security operations, IAM, or technology governance and assurance.
  • Bachelor’s or master’s degree in information security, information systems, computer science, or a related field.
  • Professional certification such as CISA, CISM, CISSP, PCIP, Security+, or CC.
  • SOX or PCI DSS experience.

Culture & Benefits

  • Remote work arrangement in Brazil.
  • Flexible, supportive, and inclusive working environment.
  • Programs supporting financial, mental, physical, and social well-being.
  • Career development through personalized goals, continuous feedback, coaching, hands-on experience, and certification learning opportunities.
  • Focus on empathy, inclusion, continuous learning, and shared success.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →