6 дней назад
Security Compliance Analyst (AI)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Security Compliance Analyst (AI): Running security control processes, third-party risk reviews, compliance registers, customer questionnaires, and audit evidence for a global fare collection platform with an accent on information security, risk management, and regulatory compliance. Focus on improving repeatable controls, tracking remediation, supporting ISO 27001, SOC 2, PCI DSS, and Cyber Essentials audits, and using automation and AI to make compliance workflows more reliable.
Location: Fully remote, available only to candidates based in Colombia
Company
develops the Justride mobile ticketing and fare collection platform used by public transport authorities and agencies worldwide.
What you will do
- Own assigned security control processes from planning and evidence collection through findings resolution.
- Perform manual and tool-based controls, including user access reviews, and document results and follow-up actions.
- Run the Third-Party Risk Management process by assessing suppliers, tracking risks, and scheduling reassessments.
- Maintain supplier, risk, asset, and data processing registers.
- Support bids, tenders, customer security questionnaires, audits, and certifications including ISO 27001, SOC 2, PCI DSS, and Cyber Essentials.
- Improve and automate control processes using scripting, low-code tools, and AI.
Requirements
- Hands-on experience in information security, IT compliance, internal control, audit, or a similar field.
- Working knowledge of access control, risk management, and data protection.
- Curiosity about systems, cloud services, and SaaS tools.
- Strong writing, documentation, organisation, and prioritisation skills.
- Ability to take ownership of recurring tasks, deadlines, and control processes.
- Must be based in Colombia to work remotely.
Nice to have
- Experience with Third-Party Risk Management or vendor security assessments.
- Knowledge of ISO 27001, SOC 2, PCI DSS, GDPR, or NIST.
- Experience supporting RFPs, tenders, or customer security questionnaires.
- Experience with compliance automation or GRC platforms.
- Experience with Jira, Confluence, scripting, n8n, Make, or AI workflow tools.
Culture & Benefits
- Fully remote work with the ability to work from any country for up to three months per year.
- 15 days of paid vacation and 18 public holidays.
- Private healthcare and menopause support.
- Monthly team bonding allowance and a choice of workstation.
- Annual training allowance of up to $750 USD and home office allowance of $250 USD.
- Open, collaborative, and inclusive environment focused on learning and accessibility.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
10 дней назад
Security Assurance Manager
11 дней назад
Associate Cybersecurity Analyst - Bilingual (Cybersecurity)
12 дней назад
Security & Compliance Analyst
80 000 - 90 000MXN
12 дней назад
Chief Information Security Officer (AI Security)
6 дней назад
GRC Security Analyst (AI Governance)
114 000 - 139 000$
Asana
10 дней назад
Security Risk Manager (Cybersecurity)
194 000 - 220 000$