Назад
Company hidden
6 дней назад

Security Compliance Analyst (AI)

Формат работы
remote (только Colombia)
Тип работы
fulltime
Грейд
middle
Английский
b2
Страна
Colombia
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Security Compliance Analyst (AI): Running security control processes, third-party risk reviews, compliance registers, customer questionnaires, and audit evidence for a global fare collection platform with an accent on information security, risk management, and regulatory compliance. Focus on improving repeatable controls, tracking remediation, supporting ISO 27001, SOC 2, PCI DSS, and Cyber Essentials audits, and using automation and AI to make compliance workflows more reliable.

Location: Fully remote, available only to candidates based in Colombia

Company

hirify.global develops the Justride mobile ticketing and fare collection platform used by public transport authorities and agencies worldwide.

What you will do

  • Own assigned security control processes from planning and evidence collection through findings resolution.
  • Perform manual and tool-based controls, including user access reviews, and document results and follow-up actions.
  • Run the Third-Party Risk Management process by assessing suppliers, tracking risks, and scheduling reassessments.
  • Maintain supplier, risk, asset, and data processing registers.
  • Support bids, tenders, customer security questionnaires, audits, and certifications including ISO 27001, SOC 2, PCI DSS, and Cyber Essentials.
  • Improve and automate control processes using scripting, low-code tools, and AI.

Requirements

  • Hands-on experience in information security, IT compliance, internal control, audit, or a similar field.
  • Working knowledge of access control, risk management, and data protection.
  • Curiosity about systems, cloud services, and SaaS tools.
  • Strong writing, documentation, organisation, and prioritisation skills.
  • Ability to take ownership of recurring tasks, deadlines, and control processes.
  • Must be based in Colombia to work remotely.

Nice to have

  • Experience with Third-Party Risk Management or vendor security assessments.
  • Knowledge of ISO 27001, SOC 2, PCI DSS, GDPR, or NIST.
  • Experience supporting RFPs, tenders, or customer security questionnaires.
  • Experience with compliance automation or GRC platforms.
  • Experience with Jira, Confluence, scripting, n8n, Make, or AI workflow tools.

Culture & Benefits

  • Fully remote work with the ability to work from any country for up to three months per year.
  • 15 days of paid vacation and 18 public holidays.
  • Private healthcare and menopause support.
  • Monthly team bonding allowance and a choice of workstation.
  • Annual training allowance of up to $750 USD and home office allowance of $250 USD.
  • Open, collaborative, and inclusive environment focused on learning and accessibility.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →